
Daniel’s
Digital lab
Cybersecurity and Compliance
Cybersecurity requires both technical depth and disciplined governance. My technical focus includes attack surface management, reconnaissance, vulnerability assessment, penetration testing, network segmentation, Zero Trust networks, Active Directory security, endpoint hardening, identity and access management, SIEM analysis, security telemetry, incident response, and control validation. My work clearly identifies how an environment can be compromised, where defensive assumptions fail, and what weaknesses create meaningful risk.
My GRC focus connects those findings to CMMC, NIST 2.0, CSF, RMF, risk assessments, system security plans, policies, evidence collection, POA&Ms, and continuous monitoring. Technical findings need prioritization, remediation, and documentation; compliance controls need the technical proof that they work. I focus on the space between those two disciplines which is where security stops being a checklist item, or a one-time test
-
RF File Exfiltration Research Project
This project was inspired by some lunchtime jokes and I ended up examining whether an air-gapped computer could create a detectable radio-frequency signal without using any kind of network connection, Wi-Fi, or Bluetooth. The concept relies on controlled changes in CPU workload. I actually found some previous work on this topic here. The basic premise…
-
Finished 3 month Internship with SecureWon
Recently I took on a 3 month long internship with an MSSP called SecureWon. I really enjoyed the company and the work that we were doing. SecureWon’s main goal was to assist organizations such as school and educational facilities with tech management and Cybersecurity. My role was that of a Network Security Engineer and I…
-
AI Enabled Security Camera System
With Deepseek popping into the market I decided to make an offline Deepseek server that I could access without any internet connection. Think of it like an offline AI Terminal. You can find more info on what I did for that here. After I was done with that, I decided to continue working on this…
RFID MANipulation
I used an ICopyX to read, copy, clone, and ultimately replicate RFID cards for access into important areas.
Try Hack Me and hack the box
Besides the numerous certifications I have and are working towards, I am also sharpening my intuition for vulnerability exploitation.
Hack the Box and Try Hack Me have been my preferred platforms for doing so and I tackle as many of their challenges as often as I can.
plc malware
I have created malware for Programmable Logic Controllers that allows me to alter it’s logic.
⊕
Highlight Projects
Raytheon BBN CMMC Compliance

During my time at Raytheon BBN, I assisted the company with setting up technical requirements and establishing protocols to become compliant with CMMC.
Securewon GRC Documents

During my time at SecureWon I created Disaster Recovery, Incident Response, and Business Continuity Plan templates for clients who were interested in having their cybersecurity documentation boosted.
Northeast Collegiate Cyber Defense League Competitor

While I was in college, I was the president and founder of the Cybersecurity Club. I lead several teams in our club to compete in the Northeast Collegiate Cyber Defense League. We also often competed in the NCL tournaments. I mentored these students during this time and ensured that they knew everything I did and when the time came for them to perform in the competitions they each had the skills, confidence and intuition to perform admirably in the competitions.
Secure Network and Infrastructure Lab

Zero Trust Networking became standardized while I was in college and as I was watching their evolution, I wanted to learn more about how they worked and why they were being used. Obviously they were more secure, but how? I built my own and put it to the test, each time I found a way to penetrate the network I would patch it, and try again. Network Segmentation ultimately proved to be the most effective deterrent.
Daniel Conde
A lot of the things I do and the projects I take on all start with questions. I have a lot of them and I will continue to ask them, continue to answer them. It’s what I do and I enjoy it, that’s why I got into Cybersecurity because I love the never-ending challenge.
