Introduction
Brad Voris has been working in Information Technology and Cybersecurity for over 25 years. He began his career in 1999 where he spent 15 years building a solid foundation in the IT field. In 2016, thanks to the suggestion of a colleague, Brad began studying to attain his CISSP Security Certification.
After passing the exam and officially entering the Security field, Brad continued his upward trend through the acquisition of an array of certifications: CISSP, CISM, CCSP, CCSK, Network+, MCP, MTA, VCA-DCV, NSE1, NSE2, NSE3, ACE, 100W – OPSEC, Trustee, AZ900, SC900, and Licensed Private Investigator for the State of Texas. Brad completed an Cybersecurity degree program with Wilmington University.
Continued knowledge and high-level performance has led him to work with a list of enterprise organizations including United Airlines, Texas Children’s Hospital, and Walmart.
He was quoted in the August 2017 issue of IS Decisions magazine, commenting on the insecurities of Microsoft Active Directory, stating: “Audit logs are in the form of event logs with specific error messages, some of which require Group Policy configuration changes on the Domain Controller Default Policy. Initially, there is VERY limited logs and in order to get more data you have to make a fair amount of changes to Group Policy. Very important.”
Brad’s accomplishments don’t end in the workplace though. He has co-authored two books in his field: Intrusion Detection Guide (Chapter 10: Compliance Frameworks), and Essentials of Cybersecurity (Chapter 8: Understanding Central Areas of Enterprise Defense).
Brad continues to work in IT and Cybersecurity while also sharing his knowledge and experience with others through a mentorship program where he gives guidance to up-and-comers seeking counsel in the field.
Brad graduated from Wilmington University with a degree in Cybersecurity in 2024.
Before his IT and Security journey, Brad served in the US Army.
I am starting to shift my focus away from PowerShell scripting to Python development. I will still support my larger PowerShell projects but newer projects will be in Python.
My HOU.SEC.CON 2024 Presentation on MITRE ATT&CK Framework Threat Modeling
My HOU.SEC.CON 2025 Presentation on Mentorship
Public Speaking & Collective Works
Description: My public speaking events and published articles, books, and online content throughout my career.
- My Blog
- Publications
- Articles
- TechNet: Active Directory_ migrating from 2003 to 2012 R2 enterprise multi-site single forest domain - TechNet Articles - United States (English) - TechNet Wiki.pdf
- Article: OT: The Dangers and Technical Security Challenges for the Internet Of Things
- Article: Mental Health Resource for Technology and Security Professionals - Peerlyst
- Article: SettingContent-MS File Execution Vulnerability Exploit - Peerlyst
- Article: SettingContent-MS lets run PowerShell code and bypass the execution policy
- Article: Social Engineering - Information Gathering via Social Media and other online sources
- Article: Building Better Queries in Shodan.io For Better Reporting
- Article: PowerShell Script Execution via Cmd.exe Relative Path PoC
- Article: Security RSS Feeds
- Article: If you don't take your own company's cyber security seriously, someone else will.
- Article: HTTP Headers for the Security Professional
- College Publications
- Collaborative Works
- Peer Review and Content Editor
- Quotes and References
- Public Presentations
- Presentation: HOU.SEC.CON 2024 Threat Modeling with MITRE ATT&CK Framework
- Presentation: HOU.SEC.CON 2025 - Mentorship When certifications, experience, a degree, and skills are not enough...
- Public Appearance: HOU.SEC.CON 2025 - CISO Series (Quick couple of seconds @about 98 seconds into it) "They don't test their plans..."
- Presentation: InfraGard April 2025 Cloud Security
- Podcasts
- Guides
Security Scripts and Applications
Description: Security scripts, applications, and security guides.
- PowerShell: Webserver Security Report - An advanced PowerShell version of a report that will test and validate webserver configuration settings.
- Python: Webserver Security Report - An advanced Python version of a report that will test and validate webserver configuration settings.
- Python: OSINTProfiler - Open Source Intelligence Profiler develops a profile on a target
- PowerShell: SettingContent-MS-File-Execution - Proof of concept for exploitation of SettingContent-MS file format in PowerShell
- PowerShell: LNK Exploit - Embeddinbg PowerShell in an LNK file
- PowerShell: CMD Execution Relative Path PoC - a Command Execution on relative path proof of concept
- PowerShell: base64 Obfuscation - How to obfuscate processes and date in base64 from PowerShell
- PowerShell: AbuseODBChecker - PowerShell Script that queries an IP address from user input and exports the search results from AbuseIPDB.com
- HyperText Application: HTA Arbitrary Code Framework - Hypertext Application Arbitrary Code Execution Framework is a proof of concept / framework for running malicious code in a "trusted" Hypertext application.
- DOS CLI: Red Team Recon - Red team utility to export sensitive configuration data of a domain and systems to a file.
- Bash: RaspberryPiZeek - Raspberry Pi Zeek/Bro Network Security Monitor Project
- RSSFeeds - Security Feeds in an OPML file format
- Guide: Mitreattackthreatmodeling - MITRE ATT&CK Framework Threat Modeling
- Guide: Building a Threat Modeling Program
- Guide: Building an Information Security Program
Active Directory Domain Services (ADDS) Scripts and Apps
Description: PowerShell Active Directory Domain Services Scripts and Apps that have various functions..
- Powershell: PSUserSecurityReport - Export all users from ADDS to a CSV file for auditing.
- Powershell: ADPAMReport - Export all privileged access management groups in ADDS to HTML report for auditing.
- Powershell: ADDSPasswordExpirationReport - Report in ADDS to verify password expiration
- Powershell: addslastlogonreport - Report in ADDS on last time users logged in
- Powershell: PoShSearchADonEmail
- Powershell: SID-from-Active-Directory-Name-or-Group-Name
- Powershell: PoShExportADOUStructure - PowerShell Export Organizational Unit export from Active Directory Domain Services (ADDS)
- Powershell: PSBulkOUImport - PowerShell Bulk Organizational Unit Import into Active Directory Domain Services (ADDS)
- Powershell: ActiveDirectoryReports - PowerShell Active Directory Report Web Application
Domain Naming Service (DNS) Scripts and Apps
Description: Powershell Domain Naming Service (DNS) scripts and apps
- PowerShell: PoShDNSHealthReport - PowerShell Script to generate an HTML DNS Health Report
- PowerShell: PoShDNSScavenging1day - PowerShell Script to set DNS Scavenging to 1 day
- PowerShell: PoShDNSScavenging7days - PowerShell Script to set DNS Scavenging to 7 days
MS Exchange Scripts and Apps
Description: PowerShell Microsoft Exchange Scripts and Apps
- PowerShell: MS Exchange Scripts and Applications Exchange-2010-Clear-Poison-messages-from-the-queue - PowerShell script that clears messages stuck in the messaging queue
- PowerShell: Exchange-database-replication-report - PowerShell script that generates an HTML based Exchange database replication report
- PowerShell: PoSHExchangeHideUserGAL - PowerShell script to hide users from the Global Address List in Exchange
Various Scripts and Apps
Description: Various scripts and apps in Bash, PowerShell, Python, etc.
- Powershell: PSNetMon Network Resource Monitoring Utility for Windows
- Powershell: CurrentWeatherConditions - PowerShell Script that scrapes Weather.com to get current weather conditions.
- Powershell: NoSleepTillBrooklyn - PowerShell script that keeps your screensaver / screen lock from running.
- Powershell: PoShSpeechSynth - PowerShell Speech Synthesizer
- HyperText Application: LANMonkey - HyperText Application with some web based tools for networking
- PowerShell: SysInfo - PowerShell Script that generates an HTML System Information report
- Bash: LinuxScriptRepo - Generic Linux shell scripts, config files and penetration testing application scripts
- Powershell: PSNetMon Linux - PSNetMon Network Resource Monitoring Utility for Linux (conversion)
- Bash: Sunfounder NAS Kit Fix - walkthrough for NAS Kit hat installation
- Powershell: YT-DLP PoSh GUI - Frontend GUI for YT-DLP written and compiled in PowerShell for Windows
- C64: Commodore64 content and guides
- Bash & Python: RaspberryPi Night Vision Goggles enables night vision and screen capabilities on a RaspberryPi Zero
- PowerShell: ClickClicky PoSh Scripe to left click the mouse a given number of times
- Python - Python Font Colors on Screen
- Python - SEC290 Python Class Notes & Content
Certification, Training, & Career Resources
Description: Certification, Training, and Career Planning Resources
- TrainingResources - My repo for Training & Career Planning Resources
- CISSPTraining - My repo for CISSP Training Material
- CISM Training - My repo for CISM Training Material
- CCSK Training - My repo for CCSK Training Material
- ITIL Training - My repo for ITIL Training Material
- MSSC-900 - My repo for MS SC-900 Training Material
Victim Of Technology