
Jevin Eskridge
Capture-the-flag Player

Connect with Jevin Eskridge to Send Message
Connect
Connect with Jevin Eskridge to Send Message
ConnectTimeline
About me
Offensive Security Consultant | Penetration Tester | Technical Writer
Education

Sentinel High School
2016 - 2019Certificate in Computer Science 9th–11thTraining Programs:• Juniper Networks Academic Alliance Academy• Cisco Networking AcademyAcademics:• Computer Science Pathway (PLTW)• Advanced Placement Courses• Honors ClassesActivities:• Computer Science Club• Model Aeronautics Club• High School Esports League

Penn Foster Group
2019 - 2020High School Diploma 11th–12thAcademics:• Information Technology Career Pathway

Western Governors University
-I plan on attending WGU in the future, specifically because of their innovative learning model. Their programs leverage competency-based assessment and are completely self-paced, meaning that I will be able to progress at an extremely accelerated rate without being encumbered by material that I have already mastered. This is not a traditional school by any means, but in essence my intent is to triple major in cybersecurity, computer science, and network security. Because I am already… Show more I plan on attending WGU in the future, specifically because of their innovative learning model. Their programs leverage competency-based assessment and are completely self-paced, meaning that I will be able to progress at an extremely accelerated rate without being encumbered by material that I have already mastered. This is not a traditional school by any means, but in essence my intent is to triple major in cybersecurity, computer science, and network security. Because I am already comfortable with much of the material, I believe it is reasonable to expect that I will be able to complete each of the programs in less than a year. Show less

University of Montana
2016 - 2018Non-major Dual EnrollmentTranscript:• Enterprise Security• CCNA Exploration• Fundamentals of Computer Science I• Introduction to Computer Science

Khan Academy
2014 -Enrichment General EducationAcademics:• Lifelong Learning
Experience

Extracurriculars
Oct 2016 - nowCapture-the-flag PlayerI was a young high school student when I found my passion for programming; I enjoy the problem solving and I have always found the algorithmic thinking involved to be intuitive. In order to develop my competence as a programmer beyond an intermediate level, I started participating in computer science competitions that challenged me to produce elegant solutions to increasingly complex problems. I did not continue much further down that track, however, because I became far more enthralled by security CTFs. Cybersecurity competitions almost universally implement a flag-based scoring mechanism, so they are aptly dubbed capture-the-flags in most contexts. These activities still include various elements of computer science, but the more applied objective is to invent elegant exploits for a myriad of vulnerabilities.As an avid capture-the-flag player, I have an extensive history participating in cybersecurity competitions both individually and as captain of the team that I founded. My proven ability to accomplish a wide variety of tasks—even without prior knowledge or experience—demonstrates that I am capable of operating under self-direction and that I can be relied on to persevere through research and persistence. In addition to public competitions, I have also conducted several simulated penetration testing engagements as part of professional training programs.• Competed in picoCTF 2016, CP-X, EasyCTF-IV, PACTF 2018, CP-XI, HSCTF 5, PACTF 2019, NCL Fall 2019, CP-XII, NCL Spring 2020, DamCTF 2020, MetasploitCTF 2020, Tenable CTF 2021, CarolinaCon 2023, HTB Operation Cybershock, and RTV CTF 2023.• Actively working through boot-to-root pentesting labs offered on platforms such as Hack The Box, Proving Grounds, Virtual Hacking Labs, Snap Labs, and AttackDefense.• Reached the top 0.5% of ~560,000 users on a cybersecurity training platform called TryHackMe by completing approximately one hundred practical labs and fully compromising two full-scale vulnerable networks. Show less

Missoula County Public Schools
Sept 2019 - Sept 2021The National Youth Cyber Education Program, a.k.a. CyberPatriot, was created by the Air Force Association to inspire the next generation of cybersecurity professionals. The organization is best known for hosting the nation's largest cyber defense competition, an event which regularly attracts several thousand teams of high school and middle school students. Right before the pandemic hit, I successfully pitched a plan to establish CyberPatriot as a new extracurricular activity at Meadow Hill Middle School.As the coach of their CyberPatriot teams, I was the administrative lead of the program and the main point of contact for competition-related correspondence. My responsibilities included recruiting students, communicating with parents, establishing and maintaining relationships with industry professionals who were willing to volunteer, working with the district's network coordinators to ensure that all technical requirements were met, and creating procedures for future coaches.Most importantly, it was also my responsibility to prepare our competitors for CyberPatriot's cyber defense competition. COVID-19 safety guidelines introduced many logistical challenges to the program's initial introduction, chief among which being that my original lesson plan had to be adapted for remote delivery. After careful consideration, I decided that the best course of action would be to create a video training series for my current and future competitors. Although the circumstances did not allow for the spectacular experience that I had hoped our rookie season would offer, our award-winning performance in CyberPatriot-XIII did prove that we adapted far better than most teams. Later during the preseason of CyberPatriot-XIV, I was finally able to lead a weekly in-person class for competitors that introduced them to careers in cybersecurity, taught them foundational concepts, and helped them improve their practical skills. Show less My part-time role as an aide at Meadow Hill played a strategic role in support of my educational goals. In order to maintain an optimal work-to-study ratio, I sought out a role that provided both consistently minimal hours and sufficient income to purchase my desired training materials. This position was one of the few that offered ten-hour workweeks, and that fulfilled my needs perfectly. My purposeful undertaking of this job's responsibility was a major step in my plan to enter the cybersecurity industry, and ultimately it indeed enabled me to achieve that ambition both in a forthright manner and at a very early age. Show less
CyberPatriot Coach
Aug 2020 - Sept 2021Recess Monitor and Cafeteria Aide
Sept 2019 - Aug 2021

HackerOne
Sept 2021 - nowSecurity ResearcherAs an independent security researcher, I put my knowledge of web application security testing to use by hunting for security flaws that are within the scope of vulnerability disclosure and bug bounty programs.I have also stumbled upon and directly reported a variety of findings that were not within the scope of established disclosure programs.Below is a running list of vulnerabilities that I have responsibly disclosed:• Authentication Bypass by Primary Weakness (CWE-305) 𝘅𝟭• Cross-site scripting (CWE-80) 𝘅𝟮• Improper Access Control (CWE-284) 𝘅𝟭• Plaintext Storage of a Password (CWE-256) 𝘅𝟭• Insertion of Sensitive Information Into Sent Data (CWE-201) 𝘅𝟭 Show less

Soteria - Security Solutions & Advisory
Feb 2022 - nowSoteria is a trusted cybersecurity firm that provides its clients with a wide variety of tailored security services and solutions. Our primary professional service offerings fall under the umbrella categories of offensive security, security assessment and advisory, IT security policies and training, and security incident response. Additionally, we provide custom enterprise-scale security solutions, such Soteria Defense MDR, Soteria Inspect, and Soteria Defense Domain Watch. For more information on how Soteria can meet the needs of your organization, visit our official website and consider meeting with our team of distinguished industry experts.Soteria's consulting practice is a mature provider of offensive security services, including vulnerability assessments, full-spectrum penetration testing, and red/purple team exercises. As a member of the offensive security team, the focus of my efforts is typically planning and executing client engagements. I have experience executing and managing a variety of engagement types in diverse environments, both in the technical capacity of an offensive cyber operator and in the client-focused capacity of a professional security advisor.The types of engagements that I work on and my roles in projects each vary throughout the year depending on scheduling and resource assignment. Typically, I am a lead penetration tester independently performing web, network, and cloud assessments. I have also conducted open-source intelligence investigations, worked collaboratively with teammates on application security assessments, and supported red team operations. Additionally, I am a delivery engineer for Soteria's managed vulnerability scanning services.Internally, I am also involved in a number of company processes; these efforts include leading process improvement meetings, taking ownership of innovation initiatives, contributing to documentation, and performing quality assurance reviews of security assessment reports and deliverables. Show less For a period of a nine months, in addition to my existing responsibilities as a full-time offensive security consultant, I was also a member of an internal task force that was created to assist the Soteria Defense team. This task force was responsible for operating the Domain Watch solution and providing associated advisory services to clients.My involvement pertained both to domain threat analysis and to domain takedowns. We conducted hundreds of proactive investigations into suspicious domain registrations and, in some cases, we monitored domains that were determined to be high-risk. When we identified domains as being malicious or infringing upon our clients' rights, we provided detailed alerts and actionable recommendations to our clients' security teams. Domain takedown efforts included compiling evidence for registrar abuse centers, drafting and delivering cease and desist letters, and filing paralegal complaints to domain name dispute arbitration centers. In domain takedowns cases that escalated to Uniform Domain-Name Dispute-Resolution Policy (UDRP) actions, I worked directly with legal case managers from the WIPO Arbitration and Mediation Center and acted as clients' authorized representative in case proceedings. Show less
Offensive Security Consultant
Jan 2022 - nowDomain Security Analyst
Feb 2022 - Oct 2022
Licenses & Certifications

Cisco Certified Entry Networking Technician (CCENT)
CiscoJan 2020
CompTIA Network Vulnerability Assessment Professional (CNVP)
CompTIAApr 2023
CompTIA Cybersecurity Analyst+ (CySA+)
CompTIAJan 2020- View certificate

Digital Badging Manager
Acclaim Badging - View certificate

Certificate Manager 🔥
Accredible .webp)
ELearnSecurity Certified Professional Penetration Tester (eCPPTv2)
INE Security (FKA eLearnSecurity)Oct 2021
Certified Cloud Security Specialist: Azure Offensive
Hack The BoxAug 2023
CompTIA Security Analytics Professional (CSAP)
CompTIAApr 2023
CompTIA PenTest+
CompTIAJun 2021.webp)
ELearnSecurity Web Application Penetration Tester (eWPT)
INE Security (FKA eLearnSecurity)Apr 2024.webp)
ELearnSecurity Junior Penetration Tester (eJPTv2)
INE Security (FKA eLearnSecurity)Dec 2022.webp)
ELearnSecurity Junior Penetration Tester (eJPTv1)
INE Security (FKA eLearnSecurity)Dec 2020
Certified Cloud Security Specialist: GCP Offensive
Hack The BoxJul 2023
Blue Team Junior Analyst (BTJA)
Security Blue TeamJul 2020
CompTIA Network Security Professional (CNSP)
CompTIAApr 2023
CompTIA Security+
CompTIAApr 2023
Certified Cloud Security Specialist: AWS Offensive
Hack The BoxMay 2023- View certificate

Reading Tracker
Libib
Honors & Awards
- Awarded to Jevin EskridgeDependability Award Missoula Robotics Team May 2020 "For always being there ... even when everyone else had left."
- Awarded to Jevin EskridgeMember of Honor Cybercademy May 2020 "It is with a heavy heart that I must announce the departure of Jevin from the Community Team. [This change is] due to him being unable to focus fully on his own studies while also helping out here. We completely understand his decision, your [education] should always come first. On behalf of the community, I'd like to take this opportunity to thank [him] for everything [he's] done for us and all the answers [that he's] provided for over a year already. [He has] been one of our most active… Show more "It is with a heavy heart that I must announce the departure of Jevin from the Community Team. [This change is] due to him being unable to focus fully on his own studies while also helping out here. We completely understand his decision, your [education] should always come first. On behalf of the community, I'd like to take this opportunity to thank [him] for everything [he's] done for us and all the answers [that he's] provided for over a year already. [He has] been one of our most active members and therefore Grant (owner) and I have decided to award [him] with our first ever Member of Honor designation, earned because of [his] willingness to share knowledge with others and because [he's] an inspiration to us all." - Community Mgr. Kevin Voorn Show less
- Awarded to Jevin EskridgeAppreciation Award Cybercademy Apr 2019 "A decoration given to a select amount of users who show active participation, engagement, and involvement in the community."
- Awarded to Jevin EskridgeCP-XI, National Semifinalist and Best-In-State CyberPatriot 2019 As a competitor in the CyberPatriot-XI Cyber Defense Competition, I demonstrated an advanced ability to securely configure Cisco networking products, conduct host-based threat hunting, handle computer security incidents, perform digital forensics, remediate vulnerabilities in computer systems, and implement security controls across various operating systems.
- Awarded to Jevin EskridgeState Programming Competition, 5th Place Rocky Mountain College March 1, 2017 Rocky Mountain College hosts annual programming contests for Montana high schoolers. As a freshman at Sentinel High School, I traveled to Helena for the western competition.
Volunteer Experience
Software Engineer | Missoula Robotics Team (FRC 3216)
Issued by FIRST on Sept 2019
Associated with Jevin EskridgeCyberPatriot Technical Mentor
Issued by Air Force Association on Dec 2020
Associated with Jevin EskridgeCommunity Team Staffer
Issued by Cybercademy on Sept 2019
Associated with Jevin EskridgeCommunity Moderator
Issued by Pwned Community on Sept 2020
Associated with Jevin Eskridge
Recommendations

Andres herrera rodriguez
Principal Chief Executive Officer en BioEsfera.coCalarcá, Quindío, Colombia
Gandush gantumur
Infrastructure Team Manager at DataBank LLCMongolia
Martin mentell widolf
CEO & Founder at Eljest AgencyStockholm, Stockholm County, Sweden
Joe park
Product Manager | Technical Program Manager | Customer Experience | Accounting | AI | Automation | D...New York, New York, United States
Abdulrahman bin rushud
Software Developer @ Tahakom | Software Engineer | Full-Stack EngineerRiyadh, Saudi Arabia.webp)
Devbrat kumar(ph.d.)
Researcher at the Intersection of Biophysics, Structural Biology, and Cell Biology/ Educator/Consult...New Delhi, Delhi, India
Hannah sample
MD/MLS student (c/o 2025) at UCLALos Angeles, California, United States
Precious ologunore
HR enthusiast||Customer Experience Expert||ACIHRM|| EducatorLagos State, Nigeria
Yasir ishtiyaq
HR Manager (IT & Admin) at Broad Band ServicesBengaluru, Karnataka, India
Ofek shtibel
Integration Engineer at Nova Ltd.Tel Aviv-Yafo, Tel Aviv District, Israel
Valentýna ondřejová
Pracovník prezentace a vztahů k veřejnostiOstrava-město, Moravskoslezský, Česko
Somanath kar
Agile BI Project Manager - Tech Mahindra for Optus ClientParramatta, New South Wales, Australia
Esmael t. ali
Country Director at Tierärzte ohne Grenzen / Vétérinaires sans Frontières GermanyKhartoum, Khartoum State, Sudan
Smriti jain
Software Engineering leader | AWS Certified | CSPO CertifiedLafayette, Colorado, United States
Jesica a. martin garaicoechea
Performance Sr. Manager at Coca-Cola European PartnersBarcelona, Cataluña, España
Roland süess
Team Leader & Senior Cloud Architect bei CrayonLucerne, Lucerne, Switzerland
Cristiano löwenhaupt seibert
Empreender Dinheiro / Owner LW Educação Financeira /Co Fundador Grupo 2TCapital / Professor Pós Grad...Balneário Camboriú, Santa Catarina, Brazil
Ranjit radhakrishnan
Vice President - Standard Chartered Bank - Core Banking | Technical Project ManagementChennai, Tamil Nadu, India
Panayiotis hambalis
Civil Engineer and Limassol's Manager at Relax Pools & Gardens LtdCyprus
A. a.e
Proces regisseurGouda, South Holland, Netherlands
...