Cody Martin-image

Cody Martin

Securing the Future Through Offensive Excellence and Intelligent Automation.

Partner at APT Security Management | Professional Penetration Tester | Systems Architect.

about-me-image

About me

I operate at the intersection of offensive security and modular development. As a Partner at APT Security Management, I lead high-stakes security engagements that protect critical infrastructure and enterprise networks. My approach is built on a foundation of "Breaking to Build Better." Whether I am executing concurrent network penetration tests or architecting AI-driven automation tools, my goal is to transform complex vulnerabilities into resilient, hardened systems.

  • Location:Columbia, SC
  • Age:35
  • Nationality:United States of America
  • Interests:Chickens, Cooking, Gardening
  • Study:University of South Alabama

Education

Bachelor of Science in Computer Science

University of South Alabama2019

Areas of personal interest and research included secure software design, software engineering and product management, information security, compiler design, and robotics.

Bachelor of Science in Mathematics

University of South Alabama2019

Major focal points included general topology, cryptography, applied statistics, linear algebra, and advanced calculus.

Work

Partner

APT Security ManagementJanuary 2026 - Present

As a Partner at APT Security Management, I help organizations, ranging from local small businesses to enterprise environments, secure their digital infrastructure against modern cyber threats. We are an innovative Managed Security Services Provider (MSSP) that breaks the traditional mold by offering flexible, token-based cybersecurity solutions tailored to our clients' exact needs and workflows.

In my role, I partner with executive and technical teams to design and implement robust, vendor-agnostic security strategies that bridge the gap between business risk and technical defense.

Key focus areas and offerings include:

  • Offensive Security: Providing Penetration Testing as a Service (PTaaS), External Attack Surface Management (EASM), and advanced Red/Purple Team adversary simulations.
  • Defensive Security & Monitoring: Delivering 24/7 Managed Detection and Response (MDR/XDR), alongside managed endpoint, network, and cloud security.
  • Strategic Advisory & Compliance: Guiding clients through Compliance as a Service (HIPAA, PCI, SOC 2), Vulnerability Management, and Fractional CISO engagements.
  • Client Engagement: Delivering our unique "Experience as a Service" model (ravenWing, ravenGuard, ravenSentinel) to ensure our reporting and touchpoints match the operational rhythm of each specific client.

Feel free to send me a message or visit www.aptsecuritymanagement.com to learn how we can secure your environment.

Offensive Security Architect / Researcher

Bishop FoxNovember 2024 - November 2025
  • Designed red team and penetration testing engagements across enterprise, cloud, XIoT, and application environments
  • Built structured adversary simulations including initial access, privilege escalation, persistence, and data exfiltration scenarios
  • Conducted large-scale external reconnaissance and attack surface enumeration
  • Delivered executive-level attack narratives and technical post-assessment briefings
  • Contributed to offensive methodology refinement and service delivery improvements

Offensive Security Architect / Researcher

Leviathan Security GroupApril 2023 - November 2024
  • Scoped and architected penetration testing and adversary simulation engagements
  • Built automation tooling in Python and C# to streamline reporting and engagement workflows
  • Contributed research to the App Defense Alliance under the Linux Foundation
  • Authored detailed SOWs defining attack surfaces, threat models, and rules of engagement
  • Developed internal reporting pipelines to normalize findings and improve consistency

Lead Penetration Tester - Contract

CobaltJanuary 2023 - Present
  • Delivered PTaaS engagements across web applications, APIs, internal Active Directory, and Azure/AWS cloud environments
  • Identified privilege escalation chains, domain compromise paths, and cloud identity abuse scenario
  • Validated exploit chains and severity ratings to ensure defensible risk scoring
  • Partnered directly with client security teams to scope engagements and translate findings into remediation roadmaps
  • Produced executive-ready and deeply technical reports aligned to OWASP and MITRE ATT&CK

Penetration Tester

Synack Red TeamJune 2022 - December 2024

Senior Red Team Operator

Black Lantern SecurityFebruary 2020 - April 2023
  • Executed full-scope penetration tests and red team engagements
  • Achieved domain compromise through phishing-based initial access and Active Directory privilege escalation
  • Designed and operated C2 infrastructure, redirectors, and evasive payload delivery mechanisms
  • Published MITRE-assigned CVEs affecting enterprise XIoT devices
  • Contributed exploit modules and proof-of-concepts to the Metasploit Framework
  • Delivered reporting aligned to NIST SP 800-30 and CMMC frameworks
  • Mentored junior operators in AD exploitation, cloud attack paths, and web application testing

Software Engineer (Full Stack) - Intern

Ingalls ShipbuildingMay 2018 - October 2018

Software Engineer (Full Stack) - Intern

Continental AerospaceAugust 2016 - May 2018

CVEs

Privileged Directory Traversal in Brocade Fabric OS
Weak Default Credentials in Brocade Fabric OS
Privileged Read in Brocade Fabric OS
Akkadian Provisioning Manager Information Disclosure
Tripp Lite Stored XSS
Cisco Unified IP Conference Station 7937G DoS
Cisco Unified IP Conference Station 7937G Dos
Cisco Unified IP Conference Station 7937G Privilege Escalation

Certifications

Cody's leadership skills truly shine when he is leading assessments, as he brings a unique blend of technical proficiency and strategic thinking to the table. Under Cody's guidance, our team was able to deliver outstanding results and exceed client expectations.

-- Thomas Presto

Get in touch.

The best way to reach me is by sending an email directly, or send me a message over Twitter.

Location
Columbia, SC
Github
debifrank
© Copyright 2026 Cody Martin