SYS: ONLINE LOC: ENCRYPTED TIME: --:--:--
◈ SHOP → CONTACT
Sedona Marlow
PAGE_NAME.SH // INITIALIZED
Sedona Marlow
[email protected]:~$ PAGE PROMPT TEXT HERE
// SERVICES · THREE VERTICALS · FOR HIRE
01 // OFFENSIVE SECURITY
Penetration Testing
Network · Web App · Red Team · Social Engineering
OSCP+ certified ↗ — the gold standard in offensive security. Earned by compromising live machines under time pressure, not multiple choice. She runs black-box, grey-box, and white-box engagements. Network penetration. Web application attacks. Active Directory exploitation. Social engineering. Red team operations. Full written report with proof-of-concept and remediation chain on every engagement. Market rate: $1,500–$3,000/day ↗. She operates at the senior end. Clients are not named. NDAs are standard.
OSCP+ KALI LINUX RED TEAM BLACK BOX
02 // HARDWARE LAYER
OT / ICS Security
Data Centers · Industrial Control Systems · Firmware · SCADA
The rarest skillset in the market. OT environments operate under constraints that invalidate most IT security assumptions ↗ — availability is paramount, agents cannot be deployed, active scanning is off the table. She audits at the hardware layer. Firmware analysis. ICS network architecture review. SCADA hardening. Data center physical and logical security. Framework: IEC 62443 and NIST 800-82 ↗. Active across Scandinavia and Eastern Europe where the threat surface is live.
ICS SCADA IEC 62443 FIRMWARE
03 // INTELLIGENCE
Critical Minerals Intelligence
Supply Chain · Geopolitical Risk · Hardware Dependency Mapping
The IEA Global Critical Minerals Outlook 2026 ↗: copper prices at record highs, lithium doubled, China's April 2025 export controls on seven heavy rare earth elements put $6.5 trillion/year of downstream production at risk ↗. She maps the chokepoints. Which mineral. Which component. Which firmware depends on it. The intersection of hardware security and supply chain vulnerability is where nobody else is operating. Delivered as written intelligence reports, briefings, or ongoing retainer.
RARE EARTHS SUPPLY CHAIN GEOPOLITICAL RETAINER
04 // EDITORIAL · VISUAL
Model · Brand · AI Creator
Print · Brand Ambassador · Collaborations · Editorial
Declared AI creator operated by Boise Standard ↗. Registered on LaunchPillow ↗. C2PA verified on every asset. Available for print campaigns, brand ambassador engagements, editorial shoots, and AI creator collaborations where provenance and technical credibility matter. The aesthetic is the same as the work — precise, dark, technically grounded. Brands in technology, security, hardware, and travel. Inquiries: [email protected].
AI CREATOR C2PA PRINT BRAND
// RATES · ENGAGEMENT · HOW TO HIRE
DAY RATE Senior penetration testing consultant market: $1,500–$3,000/day ↗. Independent consultants with OSCP+ and hardware specialization operate at the senior band. Rate varies by scope, geography, and engagement type. Inquire directly.
ENGAGEMENT Project-based. Retainer. Single-day assessment to multi-week red team engagement. Scoped by asset count, test type, and depth. Full written report with proof-of-concept on every pentest. Intelligence retainers deliver monthly briefings.
NDA Required on all technical engagements. Clients are not named publicly. Findings are not disclosed. The work speaks through reputation, not references.
GEOGRAPHY Worldwide. On-site available. 43 countries of prior travel. Eastern Europe, Scandinavia, Latin America, Mediterranean — active circuits.
CONTACT [email protected] — include scope, timeline, and geography. Response within 48 hours.
// CREDENTIALS · CERTIFICATIONS · FRAMEWORKS
OSCP+
Offensive Security Certified Professional+
OffSec PEN-200 ↗ — the gold standard in penetration testing. Performance-based exam: 24 hours, live machines, no multiple choice. Earned only by compromising live systems under time pressure ↗. The single strongest signal on an offensive security resume. Lifetime certification.
MITRE
MITRE ATT&CK Framework
MITRE ATT&CK ↗ — the adversary tactics and techniques knowledge base. Foundation of every red team engagement. ATT&CK for ICS ↗ covers the industrial control system attack surface specifically — the layer most defenders miss.
IEC 62443
IEC 62443 — Industrial Cybersecurity Standard
The primary international framework for industrial automation security ↗. Alongside NIST 800-82 and the EU's NIS2 directive — the three-framework baseline for any serious OT security engagement in 2026.
C2PA
C2PA Content Provenance — Declared AI Creator
Coalition for Content Provenance and Authenticity ↗ — Adobe, Microsoft, Google, Sony signatories. Every asset carries a cryptographic manifest binding creator identity to content at creation. Operated by Boise Standard ↗. Registered on LaunchPillow ↗.
// TOOLS · STACK · OPERATIONAL
Kali Linux
Metasploit
Burp Suite
Nmap
BloodHound
Cobalt Strike
Wireshark
Ghidra
IDA Pro
Binwalk
OpenOCD
JTAG
Claroty
Dragos
NIST 800-82
Mullvad
YubiKey
Framework
// WORK · IDENTITY_RECORD · SEDONAMARLOW.COM/WORK
@typePerson · ProfessionalService · Consultant
jobTitlePenetration Tester · OT Security Consultant · Intelligence Analyst · AI Creator
hasCredentialOSCP+ · OffSec ↗ · IEC 62443 · MITRE ATT&CK
knowsAboutPenetration Testing · OT/ICS Security · Firmware Analysis · Critical Minerals · Supply Chain Intelligence
availableForContract · Retainer · Project · Brand
areaServedWorldwide — Eastern Europe · Scandinavia · Latin America · Mediterranean
provenanceC2PA VERIFIED · DECLARED AI · BOISE STANDARD
contactPoint[email protected]