kenzie dolan

security engineer ๐Ÿ”’
seattle, wa

senior security engineer with 6+ years in penetration testing, cloud security, and iot. i build security tools in rust, lead assessments for fortune 500s, mentor engineers, and present at defcon.

work

senior security engineer
security innovation ยท jan 2022 โ€“ jan 2026

lead penetration tests on web apps, cloud (aws/azure), and iot devices for fortune 500 clients
โ€•
built rust-based static analysis tool for terraform that detects privilege escalation chains
โ€•
created 'bluezer', a ble security tool with gatt connection management
โ€•
design threat models, research and present novel vulnerabilities, and mentor junior engineers
โ€•
onboarded company to ioxt alliance as authorized test lab

security engineer
security innovation ยท aug 2018 โ€“ jan 2022

executed penetration tests on web apps and cloud infrastructure
โ€•
built python automation tooling for enterprise security testing
โ€•
performed red team simulations and static/dynamic analysis

skills

security testing

burp suite, metasploit, wireshark, nmap, gdb, radare2, pwntools

programming

rust, python, c/c++, java, solidity

cloud

aws, azure, terraform, iac security

iot & embedded

ble/gatt, gatttool, firmware analysis

projects & talks

defcon: house of heap workshop
august 2021, 2022
co-facilitated hands-on workshop on heap exploitation for 100+ attendees
bluetooth low energy research
december 2021
independent security research on ble protocol weaknesses, discovered vulnerabilities in consumer iot devices

education

b.s. computer and information science

university of oregon ยท 2018 ยท security concentration



🔒🖥️