Lawrence, Kansas · Open to offensive security opportunities

Offensive security work
you can inspect.

I’m Jacob Hill. I validate vulnerabilities, trace attack paths, build practical security tooling, and turn the evidence into reporting teams can act on.

Evidence-led work across

Azure / Entra ID Active Directory Web Applications AI / LLM Security Networking Automation

01 / SELECTED EVIDENCE

Explore the work.

Filter by discipline or search for a technique, tool, or topic. Every item links to published work or source code.

0 artifacts

Report Project Article

02 / CAPABILITY + RESUME

From finding to fix.

I focus on reproducible evidence, business impact, and specific remediation—not tool output without context.

ASSESSMENT LOOP

  1. 01

    Map the surface

    Enumerate identities, services, permissions, trust relationships, and exposed application behavior.

  2. 02

    Validate the path

    Reproduce vulnerabilities in authorized environments and connect individual weaknesses into defensible attack paths.

  3. 03

    Communicate the risk

    Document evidence, impact, CVSS/CWE context, reproduction steps, and actionable remediation guidance.

Domains

Azure & Entra ID · Active Directory & Kerberos · Web & API · Network · AI/LLM · Containers

Tooling

Nmap · Burp Suite · BloodHound · Impacket · CrackMapExec · Metasploit · Wireshark · RoadRecon · GraphRunner · SQLMap

Build

Bash · Python · PowerShell · Terraform · Git · Docker · structured agent workflows

RESUME SNAPSHOT

Jacob Hill

Offensive Security Practitioner

Lawrence, KS
2024—NOW

Contract Offensive Security Consultant

Elevate Cyber · assessments spanning web, API, Active Directory, network, Azure cloud, and AI environments.

2023—NOW

Security Researcher & Builder

TrillCyber · technical research, assessment reports, lab write-ups, and open-source security projects.

CURRENT

A.A.S. Networking & IT

Johnson County Community College · expected January 2027.

CompTIA Security+ CVSS v3.1 OWASP NIST

A current role-specific résumé is available on request.

03 / FREELANCE SERVICES

Selected security work.

I take on carefully scoped, authorized projects where the objective, environment, and rules of engagement are clear. These services reflect work already documented in my reports and public projects.

WEB APPLICATIONS

Targeted web application testing

Manual and tool-assisted validation of common web risks, with reproduction steps, impact, and remediation guidance.

Evidence: 29-page web assessment

NETWORK + IDENTITY

Network and Active Directory assessments

Scoped enumeration and attack-path validation across exposed services, permissions, Kerberos, and identity controls in authorized environments.

AI + LLM

AI / LLM security reviews

Focused testing for prompt injection, insecure output handling, excessive agency, and related control gaps.

Evidence: 26-page AI assessment

SECURITY AUTOMATION

Reconnaissance and workflow automation

Bash or Python tooling that organizes repeatable enumeration, evidence collection, and reporting for defined security workflows.

Evidence: recon report generator

04 / CONTACT

Looking to hire—or
scope a project?

I’m open to select freelance engagements and offensive security opportunities where evidence, clear communication, and practical reporting matter.