Sign in to view Jared’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Jared’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Los Angeles Metropolitan Area
Sign in to view Jared’s full profile
Jared can introduce you to 10+ people at Security Journey
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
9K followers
500+ connections
Sign in to view Jared’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Jared
Jared can introduce you to 10+ people at Security Journey
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Jared
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Jared’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
About
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Articles by Jared
-
Top 6 Application Security Must Dos with Limited Resources
Top 6 Application Security Must Dos with Limited Resources
The vast majority of application security teams are under resourced, if resourced at all. Application security (AppSec)…
25
2 Comments -
When should I launch a bug bounty program?May 2, 2018
When should I launch a bug bounty program?
Bug bounty programs - where individuals can receive recognition and compensation for reporting security vulnerabilities…
29
1 Comment -
Happy to be part of the AirMap team: AirMap Security Experts Usher in a Safe Future for DronesFeb 4, 2016
Happy to be part of the AirMap team: AirMap Security Experts Usher in a Safe Future for Drones
SANTA MONICA, Calif., Feb.
24
2 Comments
Activity
9K followers
-
Jared Ablon reposted thisJared Ablon reposted thisA client's ChatGPT visibility was quietly sliding for weeks. A chart caught it before anyone felt it. 🔎 We track this client's AI visibility with Halogen Presence. Gemini kept climbing. Then ChatGPT broke off on its own and started dropping. That discrepancy really stood out to me. When one platform sinks and the others hold, it's usually a technical issue, not a content one. So I dug in. ChatGPT's search runs on Bing, not Google. Every page on the site had a canonical tag, the piece of code that tells search engines which page counts, pointing to the homepage instead of itself (this is the root cause). Google let it slide. But Bing did not, and quietly dropped most of the site. The numbers said it clearly. 3% on ChatGPT (down from 12%), 47% on Gemini (up from 18%). Same content, one strict engine. The fix is one small change. Spotting it was the hard part. You cannot fix what you cannot see. If you are investing in AI visibility, how do you actually know it is working? We built a free AI Visibility audit that surfaces exactly this kind of hidden issue. Comment "audit" and I'll send it over. 👇 #SmallBusiness #AnswerEngineOptimization #Halogen
-
Jared Ablon reposted this💡Aspen: Guardian is now live - a lightweight, privacy‑first layer that prevents AI coding assistants from generating insecure code. It learns directly from your scanner findings, not your source code, and updates your AI assistant’s rule file automatically through pull request. In five minutes, teams get a continuous feedback loop that stops repeated vulnerabilities and adapts as the codebase evolves. Fewer vulnerabilities. No developer friction. Zero code access. Real security impact. Building secure software in the age of AI, with Security Journey 🚀Full Video with Noah Morse and Michael Burch in the comments.
-
Jared Ablon reposted this🚀 Introducing Security Journey + GitHub Deliver the right secure‑coding training at exactly the right time down to the individual developer based on what each developer is actually committing. 🔍 How it works Our integration connects directly to your GitHub repositories and: ✅ Detects CWE‑based weaknesses in real commits ✅ Surfaces findings inside Security Journey for easy triage and prioritization ✅ Maps each finding to the exact training needed—instantly ✅ Helps teams continuously train on CWEs actively appearing in their codebase 💡 Why it matters 🔸Relevance — Developers get training aligned to real issues 🔸Timing — Reinforce skills at the moment they matter most. 🔸Scale — Admins can assign targeted paths in minutes, not hours. 🔸Zero developer friction — No PR spam. No workflow disruption.
-
Jared Ablon reposted thisJared Ablon reposted thismost teams know they’re using AI to write code. very few actually know how it’s shaping their codebase. how much code is AI generated. is it any good. which tools and models are doing the writing. how things change as usage grows. instead, AI coding gets discussed through anecdotes and Gut Feel. Strong Opinions. very little data. If your goal is to have AI write meaningful parts of your codebase, you need to understand what’s actually happening. not guesses. real context. curious how this looks in your org. hit me up.
-
Jared Ablon reposted thisJared Ablon reposted this🚀 Today marks a milestone we've been working toward for months… We're officially launching Halogen's first product: a go-to-market toolset that transforms how businesses build and customize their growth strategies. Here's what makes us different: ✨ Cut your strategy development time by 70% ✨ Get enterprise-quality recommendations without enterprise costs ✨ Customize every element to fit YOUR unique business Whether you're a founder racing to launch, a CMO planning your next big move, or an agency scaling client success, we built this for you. 👉 Check out what we've built at https://www.halo-gen.ai/ Drop a comment below - what's your biggest go-to-market challenge right now? We're here to help solve it. #GoToMarket #StartupLaunch #MarketingStrategy #GTM #B2BMarketing #ProductLaunch #MarketingTools #StartupGrowth #MarTech #BusinessGrowth #SaaS #MarketingInnovation
-
Jared Ablon reposted thisJared Ablon reposted this🚀 Fresh AI/LLM content just launched on the Security Journey Platform! 🚀 With AI and LLMs rapidly reshaping software development, the stakes for secure coding have never been higher. While AI can streamline tasks, it can also introduce unseen vulnerabilities. 🛡️ Our training gives developers the essential skills and insights to code securely in this AI-driven landscape. To make getting started easier, we’ve organized three targeted AI/LLM learning paths: ✨ OWASP Top 10 for AI/LLM (Video Only) 🌟 HackEDU: OWASP Top 10 for LLM Applications (Hands-On Only) ⭐ AI/LLM Security (Video & Hands-On Lessons) Try our AI/LLM training for free today! 🔗 https://hubs.ly/Q02XLxRD0
-
Jared Ablon shared thisJared Ablon shared this🤝 I am excited to announce the Security Journey Case Study with Zoom! This study examines their need for compliant and consistent secure coding practices as the organization grew and how Security Journey helped them achieve success. These are the best practices found when secure coding training: 📚 Foundational Training before shipping code 🔒 🔄 Yearly refresher for up-to-date skills 📆 🎯 Relevant training for project success 💻 Take a look: https://lnkd.in/eHKtd6ie Discover how our partnership fortified Zoom's platform with compliance achievements and a culture of secure coding. Join the movement towards a safer digital future - explore the case study now! 💡 #SecurityJourney #SecureCoding #CyberResilience #TechPartnership #SecureCodingCulture #ApplicationSecurity
-
Jared Ablon shared thisJared Ablon shared thisAnd now we support #Fortify also. Hey OpenText Cybersecurity customers, now you can also leverage Mobb to automatically remediate your #SAST findings. #devsecops #morethanscanning
-
Jared Ablon posted thisToday is my last day at HackEDU. It has been an incredible journey building HackEDU. It started in 2017 with the idea that developers could best learn secure coding skills through hands-on, interactive means. We steadily grew from a team of 2 then, to now a ~70 person company with more than 300 customers from startups to the Fortune 5, and with tens of thousands of developers using our platform. I am beyond proud of what my co-founder Matt Koskela and I created, and am thankful for having such a trustworthy and hard-working partner by my side. We set out with goals of where we wanted to grow the company: It’s easy to put numbers on paper, but I learned how much grit it takes to stay scrappy, tenacious, and focused in order to make - and surpass - our goals. I’m fortunate to have built up and worked with an extraordinary and dedicated team, who helped take HackEDU beyond where we originally set out. Thank you to everyone who has contributed to HackEDU’s success to date, and continued success going forward! HackEDU will continue to grow at an amazing speed. I’ll remain a board member, and look forward to guiding the company to even greater heights. My immediate next steps are to take a break and spend time with my family. I’ll also try not to think too much about business, but with my list of business ideas growing I’m sure I’ll be at it again before too long.
-
Jared Ablon liked thisJared Ablon liked thisA client's ChatGPT visibility was quietly sliding for weeks. A chart caught it before anyone felt it. 🔎 We track this client's AI visibility with Halogen Presence. Gemini kept climbing. Then ChatGPT broke off on its own and started dropping. That discrepancy really stood out to me. When one platform sinks and the others hold, it's usually a technical issue, not a content one. So I dug in. ChatGPT's search runs on Bing, not Google. Every page on the site had a canonical tag, the piece of code that tells search engines which page counts, pointing to the homepage instead of itself (this is the root cause). Google let it slide. But Bing did not, and quietly dropped most of the site. The numbers said it clearly. 3% on ChatGPT (down from 12%), 47% on Gemini (up from 18%). Same content, one strict engine. The fix is one small change. Spotting it was the hard part. You cannot fix what you cannot see. If you are investing in AI visibility, how do you actually know it is working? We built a free AI Visibility audit that surfaces exactly this kind of hidden issue. Comment "audit" and I'll send it over. 👇 #SmallBusiness #AnswerEngineOptimization #Halogen
-
Jared Ablon liked thisJared Ablon liked thisI’m excited to announce I’ve accepted a position as a senior cybersecurity engineer with the Aerospace Corporation. I start next week. I’m ecstatic to start the next phase of my career with one of the best respected FFRDCs.
-
Jared Ablon liked thisJared Ablon liked this18 years at Amazon gave me a Swiss Army knife. Now I finally know which blade to use. As a tenured Amazonian, I was always asked about my favorite Leadership Principles. My answer usually reflected my strengths: Ownership, Hire and Develop the Best, and Deliver Results. But building my own startup? That knife looks completely different now. Bootstrapping an early-stage company forces you to reach for blades you rarely touched before. Time is short. Resources are tight. And the margin for error is thin. Here are the three LPs I think about practically every day: 🎯 Customer Obsession - I can't rely on a team to gather insights anymore. I have to get close to customers myself, listen hard, and understand their real needs before I build anything. 📚 Learn and Be Curious - I'm learning skills that were never in my job description. Marketing. Finance. Product. At Amazon, curiosity was a trait people noticed. Out here, it's the only reason I'm keeping up. ⚖️ Right A Lot - With limited time and money, good judgment isn't a nice-to-have. It's the difference between momentum and spinning your wheels. Amazon trained me to be strong across all 16 LPs. I just didn't know how much I'd need the ones I once took for granted. If you're an Amazonian thinking about going out on your own, that foundation is more valuable than you realize. Amazonians and ex-Amazonians: which LPs matter most to you at this stage in your career? #Leadership #AmazonLeadershipPrinciples #HalogenAI
-
Jared Ablon liked this💡Aspen: Guardian is now live - a lightweight, privacy‑first layer that prevents AI coding assistants from generating insecure code. It learns directly from your scanner findings, not your source code, and updates your AI assistant’s rule file automatically through pull request. In five minutes, teams get a continuous feedback loop that stops repeated vulnerabilities and adapts as the codebase evolves. Fewer vulnerabilities. No developer friction. Zero code access. Real security impact. Building secure software in the age of AI, with Security Journey 🚀Full Video with Noah Morse and Michael Burch in the comments.
-
Jared Ablon liked this🚀 Introducing Security Journey + GitHub Deliver the right secure‑coding training at exactly the right time down to the individual developer based on what each developer is actually committing. 🔍 How it works Our integration connects directly to your GitHub repositories and: ✅ Detects CWE‑based weaknesses in real commits ✅ Surfaces findings inside Security Journey for easy triage and prioritization ✅ Maps each finding to the exact training needed—instantly ✅ Helps teams continuously train on CWEs actively appearing in their codebase 💡 Why it matters 🔸Relevance — Developers get training aligned to real issues 🔸Timing — Reinforce skills at the moment they matter most. 🔸Scale — Admins can assign targeted paths in minutes, not hours. 🔸Zero developer friction — No PR spam. No workflow disruption.
-
Jared Ablon liked thisMost secure coding training misses the mark not because teams don’t care, but because it’s too generic, too late, or too disruptive. That leads to busywork instead of real security improvement. Our new GitHub integration at Security Journey fixes that by connecting real commits to real training, detecting CWE patterns in live code and instantly mapping them to the right learning modules. The result: Relevant Timely Non-disruptive Measurable impact Less noise. More signal. Better outcomes for security and engineeringJared Ablon liked this🙌 We’re excited to introduce Security Journey's new 𝗚𝗶𝘁𝗛𝘂𝗯 𝗜𝗻𝘁𝗲𝗴𝗿𝗮𝘁𝗶𝗼𝗻, designed to make secure code training more 𝗿𝗲𝗹𝗲𝘃𝗮𝗻𝘁, 𝘁𝗶𝗺𝗲𝗹𝘆, and 𝘀𝗰𝗮𝗹𝗮𝗯𝗹𝗲. The integration connects live GitHub activity to targeted training by detecting CWE patterns in real commits and surfacing those insights directly in the Security Journey platform. ➡️ Admins get a clear view of where skill reinforcement matters, and can assign the exact modules that address those gaps in minutes. ⏰ It’s non-disruptive, prioritized, and admin-directed. The result: noisy scanner output becomes a focused learning engine that drives measurable, secure coding improvement. 📖 Learn more: https://ow.ly/yGBG50Y4QA9 #GitHub #appsec #securecode #CWE #devsecops #productannouncement
Experience & Education
-
Security Journey
****** ***** ** *********
-
*******
****** ***** ** *********
-
*******
********** * *********
-
********** ** *********** ********
******** ** **** ******* ************ *********** ******** ******* undefined
-
*** ***** ******* **********
****** ** ******* ******* *** ************* ***********
View Jared’s full experience
See their title, tenure and more.
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
or
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Licenses & Certifications
Publications
-
Robust and Scalable UAS Registration: Key Technology Issues and Recommendations
-
See publicationAccountability of UAS operators, availability of airspace, and security of communications are critical for the growing UAS ecosystem. Ensuring this requires a registration system that considers solutions for organization, registration information, queries, and security. It is imperative to select the right technologies to build a robust system that scales with the UAS ecosystem.
Honors & Awards
-
CISO of the Year
Los Angeles Business Journal
The Los Angeles Business Journal CTO Awards honor Chief Information and Technology Officers and, more broadly, those in the top information technology positions within their organizations. The goal of these awards is to recognize these important individuals and the vital roles they play in making Los Angeles a hub for innovation, and in making its businesses, institutions, and nonprofits successful.
Recommendations received
-
LinkedIn User
“Jared is results driven, team oriented, and brings a high level of ingenuity and initiative. He demonstrates a high degree of integrity and builds deep trust with others; he seeks out mentoring opportunities and gladly shares his knowledge and expertise with all. He is passionate about his work and in many cases develops creative solutions to challenging problems. Jared executed multiples roles while under my management that required deep technical expertise in cyber security, software assurance, and reverse engineering. These roles required sophisticated leadership to include management of staff and of complex relationship with customers and competing organizations. Often working on a compressed schedule, Jared drafted software assurance requirements and evaluated progress on a number of developmental contractors –saving the U.S. Government at $25 million and years of time and was recognized by top leadership at MITRE. Jared has always been recognized as a leading subject matter expert and trusted colleague. His technical vision and management acumen was exceptional and he always went above and for this job.”
2 people have recommended Jared
Join now to viewView Jared’s full profile
-
See who you know in common
-
Get introduced
-
Contact Jared directly
Other similar profiles
-
Amit Yoran
Amit Yoran
Calling it like I see it on all issues cyber. Views expressed are my own. They have and will continue to get me in hot water from time to time. Oh well. <br><br>On the work front leading Tenable which empowers organizations to understand and reduce their cyber exposures and risk. We employ some of the greatest minds in security to provide our customers the agility they require.
39K followersReston, VA
Explore more posts
-
Am Dum Dee
AmDumDee • 22 followers
Most security systems don’t fail because AES is broken. They fail because teams don’t understand what actually makes crypto secure. The real foundation isn’t an algorithm. It’s the Pseudorandom Function (PRF). A PRF is what turns a small secret key into something that behaves like a universe-sized random table. Not by storing randomness. But by creating it only when queried. That “lazy sampling” trick is the secret sauce behind modern encryption, authentication, and key derivation. Here’s the uncomfortable part. We keep building systems assuming things “look random.” Then we remove the secret key. That’s how people misuse block ciphers as hash functions. Once the key is public, the PRF property disappears. What looked like a wall becomes a curtain. This matters right now. March is when security standards get locked for the year. Post-quantum planning is forcing hard questions about crypto agility. If your design is built on PRFs and PRPs, you can swap algorithms later. If it isn’t, you’ll rewrite everything when the math changes. I learned this the hard way. Early on, I derived multiple keys from one secret without a proper KDF. One leak didn’t break one system. It broke the entire family tree. This week’s action: Audit your key derivation. If it’s “hash + salt,” stop. Use a PRF-based KDF like HKDF. Hard question for today: If PRFs require secret keys, what happens when we embed those keys in software and call it “secure”? #Cryptography #ApplicationSecurity #PostQuantum #CryptoAgility #SecurityEngineering
-
Abhisek Datta
SafeDep • 7K followers
26.1% of Agent Skills contain security vulnerabilities. That's from a study of 31,000+ skills in the wild. But here's what is concerning: existing supply chain security frameworks don't fully cover these threats. Agent Skills are markdown files with instructions, packaged with scripts and resources for AI coding assistants. They look like documentation. But when an agent reads them, those instructions execute with full permissions, accessing files, running scripts, installing packages. Agent skills are the new "dependencies" in the era of AI Coding agents and we need a new threat model for it. Here is our attempt at describing the threat model for Agent Skills. Full blog: https://lnkd.in/gr7C23PB
13
3 Comments -
Alon Gal
Hudson Rock • 21K followers
"Hudson Rock suggests that attackers breached ShareFile, Nextcloud, and ownCloud environments used by organizations across multiple sectors, including aviation, defense, healthcare, utilities, mass transit, telecommunications, legal, real estate, and government." via BleepingComputer https://lnkd.in/dkTnGv-N
25
1 Comment -
Daniel Young
Circadian Risk Inc. • 9K followers
One of the most common comments I hear from security leaders: “We can’t justify spending on another platform.” Fair. Budgets are tight. Every dollar is scrutinized. Security rarely gets excess funding. But here’s the tension. The same teams that hesitate to invest in better visibility are often operating without clear insight into: Analytics based procurement decisions Duplicate vendor spend Inconsistent purchasing Low-impact risks consuming high-impact dollars Remediation that never gets verified In other words, they’re trying to protect the budget… Without full visibility into how the budget is performing. That’s not a criticism. It’s structural. When risk data is fragmented across spreadsheets, PDFs, and local processes, you can’t see patterns. And if you can’t see patterns, you can’t optimize spend. So money leaks quietly. Not because the team is careless. Because the system doesn’t surface inefficiencies. What’s interesting is this: The cost of consolidation feels visible and immediate. The cost of fragmentation feels invisible and ongoing. Most leaders only see one of those line items. The best security programs I’ve seen don’t just reduce risk. They make every dollar traceable to a prioritized outcome. If you’re overseeing a multi-site environment, it’s worth asking: Do you truly know where your security dollars are working hardest? Or are you defending a budget you can’t fully see?
6
2 Comments -
Wanderson Castilho
LoginLock • 6K followers
Privacy isn’t automatic — you have to turn it on. These six Safari settings block fingerprinting, stop hidden tracking scripts, and wipe stored data that follows you across apps. Two minutes of setup can dramatically reduce how much of your life gets collected.
8
-
Colton Porter
SAINT Technology Services • 2K followers
Your security contractor says compliance is at 98%. Your actual audit results tell a different story. I've observed this pattern repeatedly: organizations rely on vendor self-reporting for security performance metrics, only to discover significant gaps during independent assessments. The challenge isn't dishonesty - it's perspective. Contractors naturally view their performance through the lens of effort and intent. But compliance requires measurable outcomes aligned with your specific risk tolerance and contractual obligations. Independent oversight creates accountability without vendor conflict. It validates that your security investments deliver the protection you're paying for, not just the protection they think you need. When performance visibility becomes vendor-neutral, compliance becomes measurable. GreyShield Group provides intelligence-driven oversight that ensures contractual alignment. Contact us at intelligence@greyshieldgroup.com #VendorOversight #ThirdPartyRisk #SecurityOperations #ContractCompliance
3
-
Colton Porter
SAINT Technology Services • 2K followers
Most CEOs think security leadership is binary: either hire a full-time CSO or manage the risk internally. There's actually a third option that's transforming how mid-market companies approach security governance. I've been working with boards who recognize they need executive-level security oversight but can't justify the $300K+ investment for a full-time role. The math rarely works when you factor in benefits, equity, and the 18-month average search timeline. Fractional security leadership changes this equation entirely. You get C-suite level strategic guidance, board reporting, vendor oversight, and risk governance for a fraction of the cost. No recruitment fees. No onboarding delays. No equity dilution. The companies implementing this model aren't cutting corners on security - they're optimizing their leadership investment while maintaining enterprise-grade oversight. For more insights on fractional security leadership models: intelligence@greyshieldgroup.com #SecurityLeadership #FractionalCSO #ExecutiveSecurity #CorporateSecurity
-
Do Van Son
SecurityOnline • 392 followers
A newly disclosed high-severity security flaw in the widely used W3 Total Cache (W3TC) plugin is putting more than 1 million WordPress websites at risk. Tracked as CVE-2025-9501, the vulnerability carries a CVSS score of 9.0 and allows unauthenticated command injection, making it one of the most severe issues ever identified in the performance-optimization plugin.
2
Explore top content on LinkedIn
Find curated posts and insights for relevant topics all in one place.
View top content