Ex-fed hacker turned startup guy. co-founder & CEO at @sevcosec; previously CTO/COO @jasklabs and founding team @CarbonBlack_Inc

Joined November 2008
41 Photos and videos
Pinned Tweet
18 May 2017
This is the essence of being a hacker.
1
6
27
27 Oct 2025
News flash: your top security priorities in a world where attackers move faster thanks to AI tooling are... ...the exact same as they are today. CIS Top 20 is still the CIS Top 20. Execute those well, you'll be better prepared than your peers. And remember: attackers are lazy.
People shouldn’t be scared by this CrowdStrike report. I don’t even know why they added the “AI-enabled ransomware” part -probably a PR idea that nobody stopped The real issue is wrong risk perception. CISOs worry about what sounds new instead of what actually causes incidents. AI-enabled ransomware” isn’t really a thing. Maybe an AI written phishing email here and there, but the rest is still human work. Meanwhile, most orgs lack asset visibility, detection on legacy or OT systems, have exposed RDP without 2FA and poor monitoring. Yet somehow this gets less attention than a buzzword in a report. It’s like when everyone panicked about tracking pixels in emails around 2018–2021 simply because PR people pushed it as a serious issue. It generates distorted perception of risks. Our job as a community is to make people aware of this distortion. csoonline.com/article/407591…
3
163
6 Dec 2024
.@SevcoSec product reviews meet generative AI. 🔥 Get the full track list at songmyreview.com
3
214
3 Oct 2024
Hey @LinkedIn - your newly aggressive notification preferences are so loud and your UX for disabling the types so tedious I am on the precipice of turning off all notifications from everywhere. That’ll make my experience worse, but right now lesser of two evils. Please fix.
1
3
265
6 Sep 2024
A preview of what's coming soon from @SevcoSec. SO MUCH fascinating and never before seen data to dig through!
6 Sep 2024
Replying to @jeremiahg @SevcoSec
I was wrong. At least in this [one, small] sample it is ~25% differing results: One org, ~10k devices, ~21k total CVEs, two sources of CVEs. ~75% of those CVEs reported by both. More to come soon!
4
244
J.J. Guy retweeted
📣 @jjguy will be talking Vulnerability Management & Asset Inventory at #ThursdayDefensive tomorrow. We hope to see you there! reconinfosec.com/thursday-de… #cybersecurity
4
5
550
13 Oct 2023
Fixing this is @SevcoSec‘s mission.
13 Oct 2023
In six months of working for an MDR that services all manner of industries, I feel like any time I see an incident occurring it started on an asset that didn't have EDR installed.
1
592
J.J. Guy retweeted
2 Oct 2023
🧙‍♀️ CISO Story Time This is not exaggeration. I have a good friend. He's a CISO of a multinational organization in the technology sector. We talk often. Market trends, sales, and business regulations had the business decide to open an facility in China. a 🧵 👇
26
239
985
487,197
29 Sep 2023
CISO: How many windows hosts do we have? Sevco admin: "9,618 between EC2, AD and S1. That good or do you need something more specific, boss?"
1
5
412
J.J. Guy retweeted
Hey #cybersecurity companies, send us your tagline and we’ll write/record an acoustic jingle for your company. Here’s one I just did for @SevcoSec
1 Apr 2023
Better data, Better decisions, Sevco Security ❤️
1
2
663
1 Apr 2023
🔥🔥🔥❤️
3
361
8 Mar 2023
Congrats @mauderestaurant - you win the prize for being the first restaurant _ever_ to tell me “we can not accommodate your food allergy.” @CurtisStone you have work to do if you want to keep that new @MichelinUSA Star. That is not PF Changs-caliber service, much less Michelin
3
184
J.J. Guy retweeted
6 Jun 2022
Up next, @SevcoSec! #RSAC
2
9
13 Jan 2022
Mad respect for @aionescu. Having gone from three letter agency to security vendor myself, I am stoked and humbled to see a senior former @CrowdStrike’er go the other direction - our community needs more of this!
Today, CSE welcomes @aionescu as Technical Director, Platform Operations and Research. Alex's world-class operating system expertise will help advance CSE's cyber security interests both at home and abroad, and promote cyber-safe practices for all Canadians. Welcome Alex!
5
J.J. Guy retweeted
"If the CISO is responsible for the security of the industry, it stands to reason that same person should be responsible for both security and the IT infrastructure," writes J.J. Guy (@jjguy), CEO and Co-Founder at @SevcoSec: informatech.co/3HA417z
2
4
4
J.J. Guy retweeted
Not easy, but so important...
10
209
1,108
18 Nov 2021
Working on the statistically relevant dataset, but I’ll give you the anecdata: 10-20%. Your security and patch endpoint agents are under deployed by 10-20%. Let me say that another way: an attacker has to send just 5-10 emails to hit a user missing those protections.
1
J.J. Guy retweeted
As one of my last doctoral coursework presentations, I spent time talking to my colleagues about the ethical dilemmas surrounding offensive security tool release. The outsider input was fascinating. Here's a thread to share some of that... 1/
10
58
130
J.J. Guy retweeted
13 Nov 2021
Alright, here is a thread about why it’s appropriate for Red Teams to use 0day. The misunderstandings surrounding this topic seem extremely prolific both outside and inside the professional infosec industry. This not only holds the customers back, but has a high risk of 1/11
9
40
167