Phillip Wylie Show

Andrew Lemon: Engineering Your Own Opportunities


Listen Later

About the Guest: 

Andrew Lemon is a seasoned offensive security professional and founder of Red Threat, a cybersecurity consulting firm focused on pentesting, red teaming, and ransomware readiness assessments. With a wealth of experience from working at Boeing, Dell, and other tech corporations, Andrew has become a respected figure in the cybersecurity community, known for his contributions to physical security, social engineering, and AI pentesting. Andrew is also an advocate for transparency and community support within the cybersecurity industry. 


Episode Summary: 

Welcome to another episode of the Phillip Wylie Show, where host Phillip Wylie dives into the fascinating journey of his friend and cybersecurity expert, Andrew Lemon. Andrew shares his unique hacker origin story, from tech-savvy childhood and learning from his Novell admin dad to becoming the founder of Red Threat. With an emphasis on practical, hands-on experience, Andrew discusses how he has approached building a successful career in offensive security and what it takes to start a thriving consulting business. 

In this comprehensive conversation, Andrew explains the strategies and technologies he employs in his assessments, the importance of tailoring services to client maturity levels, and insights into some of his latest research, including traffic control system vulnerabilities and AI pentesting. Phillip and Andrew also explore the critical nature of crafting a personal brand and the value of community-driven networking in cybersecurity. These engaging insights make this a must-listen episode for anyone interested in the inner workings of professional hacking and security consulting. 

Key Takeaways: 

  • Starting a cybersecurity consulting business: Andrew highlights the importance of financial planning, brand recognition, and maintaining integrity in service offerings. 

    • Ransomware readiness assessments: A key focus for Andrew’s company, Red Threat, is preparing organizations for ransomware attacks by simulating real-world scenarios and actor techniques. 

      • Physical security and social engineering: Despite the transition to remote work, physical security assessments remain a crucial part of Andrew's toolkit, demonstrating easy-to-understand vulnerabilities. 

        • AI pentesting: Andrew talks about the emerging field of AI pentesting, shedding light on the unique challenges and methodologies, including leveraging the OWASP Top Ten for AI. 

          • Career advice: Emphasizing the importance of networking and creating opportunities, Andrew shares actionable tips on how to navigate and succeed in the cybersecurity industry. 

          • Notable Quotes: 

            • "Growth begins at the edge of your comfort zone." 
            • "If you want to see an area mature, look at it through the lens of an attacker." 
            • "My main goal has been transparency." 
            • "For me, it's all about delivering the highest integrity I can." 
            • "There's no rulebook in the job market—you can always re-engineer your career path." 

            • Resources: 

              • Andrew Lemon on LinkedIn 

                • Red Threat 

                  • Defcon 

                    • OWASP Top Ten for AI 

                    • For more in-depth insights and to hear the full conversation, be sure to listen to the complete episode. Stay tuned for more engaging discussions on the Phillip Wylie Show, where you get a behind-the-curtain look at the world of professional hacking. 

                       

                      ...more
                      View all episodesView all episodes
                      Download on the App Store

                      Phillip Wylie ShowBy Phillip Wylie

                      • 5
                      • 5
                      • 5
                      • 5
                      • 5

                      5

                      16 ratings


                      More shows like Phillip Wylie Show

                      View all
                      Risky Business by Patrick Gray

                      Risky Business

                      362 Listeners

                      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

                      SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

                      634 Listeners

                      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

                      Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

                      368 Listeners

                      Hacked by Hacked

                      Hacked

                      173 Listeners

                      CyberWire Daily by N2K Networks

                      CyberWire Daily

                      1,011 Listeners

                      Smashing Security by Graham Cluley & Carole Theriault

                      Smashing Security

                      305 Listeners

                      Click Here by Recorded Future News

                      Click Here

                      386 Listeners

                      Malicious Life by Malicious Life

                      Malicious Life

                      919 Listeners

                      Darknet Diaries by Jack Rhysider

                      Darknet Diaries

                      7,847 Listeners

                      Cybersecurity Today by Jim Love

                      Cybersecurity Today

                      143 Listeners

                      CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

                      CISO Series Podcast

                      183 Listeners

                      Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

                      Defense in Depth

                      71 Listeners

                      Cyber Security Headlines by CISO Series

                      Cyber Security Headlines

                      117 Listeners

                      Risky Bulletin by risky.biz

                      Risky Bulletin

                      33 Listeners

                      Hacker And The Fed by Chris Tarbell & Hector Monsegur

                      Hacker And The Fed

                      149 Listeners