All writing

Browse the archive.

28 essays

02 · May 6, 2026 · 5 min read

Speaking to Rooms Where You're Not the Expert

A reflection on leading senior security executive discussions in Bangkok and Singapore, and why the most valuable thing you can bring to a room is often your vantage point rather than all of the answers.

Read

04 · Feb 7, 2026 · 4 min read

Website and Blog Redesign

Today I’m launching a redesigned, integrated michaelbanks.org experience that brings my website and blog together into one platform.

Read

05 · Sep 25, 2025 · 2 min read

AI Is Reshaping Security: Insights from InnoSec 2025

During the Amazon Security & SANS Institute InnoSec 2025 event I joined a panel on AI in digital forensics and incident response, discussing how AI is transforming security and why human–AI collaboration matters.

Read

07 · Jul 25, 2025 · 2 min read

A Fulfilling Q2: From Soldiering to Soldering

Reflecting on a whirlwind Q2, I closed out my command season in the Army Reserve, expanded our SOC teams at AWS and mentored future leaders—proving that leadership spans both military and tech arenas.

Read

12 · Jun 12, 2024 · 1 min read

Zero Trust Accelerator

A practical framework to help leadership teams plan, pilot, and scale secure access initiatives.

Read

16 · Oct 25, 2022 · 2 min read

Teaching AI/ML in Chokor, Accra, Ghana

Through a partnership between AWS and B.A.S.I.C.S International, I spent time in Chokor teaching children about artificial intelligence and machine learning using AWS DeepRacer; the experience was both humbling and inspiring.

Read

17 · Sep 26, 2020 · 10 min read

How I got started and my journey in Cybersecurity

Recently I was extended an opportunity to speak at an undergraduate class of computer science. The topic I was to speak on was how I got into cybersecurity and my experience of different roles within the public and private sector of cybersecurity. I thought I'd share my story...

Read

18 · Jul 26, 2020 · 7 min read

The 5 Books Every Cybersecurity Professional Should Read

A group of industry professionals that I know started to talk about interesting books they've read and thus own our very own cyber book club began. Now I keep track of a running and ever-evolving list of books that I genuinely believe EVERYONE in the field and industry should...

Read

20 · May 3, 2020 · 4 min read

Here's one way I check for malicious IPs

AbuseIPDB is a project dedicated to helping combat the spread of hackers, spammers, and abusive activity on the internet. Here's a tool I wrote to query their API and data base of malicious IPs.

Read

21 · Jul 22, 2018 · 7 min read

This is My Architecture

Like all things in our industry, things change and evolve. Years ago, I started a personal website. I believe everyone should have a presence somewhere that explains who you are and what you do.

Read

22 · Apr 15, 2018 · 3 min read

Please Don't Be Like These Guys

With the inevitable breaches that hit the news regularly, I often find myself asking: "What exactly are companies doing to protect our data?"

Read

23 · Dec 31, 2016 · 2 min read

A Year In The Life

This has been just an amazing year. I have flown about 50,000 miles (47,820) in the sky on an airplane and got to see so much of the US in a short amount of time. I have spent 101 days on the road and have stayed in many Marriotts and Hiltons.

Read

24 · Aug 17, 2016 · 4 min read

What's In Your Lab?

There come times when an Information Security Consultant may have to deal with a program, vulnerability, or even an operating system you haven't touched before. For moments like that, an essential item in a consultant's toolbox needs to be utilized: a lab.

Read

25 · Aug 5, 2016 · 4 min read

Embracing DFIR W/ SANS FOR408

FOR408: WINDOWS FORENSIC ANALYSIS. Continuing education and furthering one's toolset in their profession is a critical part of anyone's life. An infosec consultant often has to flex across multiple verticals, which is why I'm embracing Digital Forensics and sharing my experience with the SANS FOR408 course.

Read

26 · Jul 27, 2016 · 2 min read

Project Slam

Project Slam is an initiative to utilize tools to aid in defending against nefarious adversaries. The overall focus is to research adversary’s behavior and utilize the data to generate wordlists and expose methodologies of various threat actors that can be provided back to the...

Read

28 · Jul 19, 2016 · 2 min read

TakeDownCon 2016 (Rocket City)

Conferences (Cons) and training events where people from the same industry have become a great resource for people in the industry to networks, share research and give back. I submitted my call for papers and got picked up to participate in TakeDownCON by the EC Council founda...

Read