Skip to Main Content

Sarah Norris

Senior Security Consultant

EXPERIENCE
Sarah Norris is a Security Consultant for TrustedSec. Sarah is starting her career in Information Security after conducting PCI audits for Trustwave. Before Trustwave, Sarah worked on Linux systems writing and debugging custom Python modules for Zenoss, the open source network monitoring software.

EDUCATION & CERTIFICATIONS

  • Bachelor of Science, Cybersecurity, Utica College
  • Certified Information Systems Security Professional (CISSP)

PROFESSIONAL AFFILIATIONS
Sarah Norris is a member of AHA (Austin Hackers Anonymous), Austin 2600, and lolctf.

PASSION FOR SECURITY
Sarah became interested in information security shortly after starting college. She realized that there was nothing more thrilling than picking a lock, cracking a password, or winning a CTF challenge.

Featured Blogs And Resources

Discover the blogs, analysis, webinars, and podcasts by this team member.

Blog June 25 2020

MSBuild: A Profitable Sidekick!

Using MSBuild to bypass security controls and escalate privileges without PowerShell, leverage native Windows binaries for flexible C# code execution.

Read about this article
Blog March 06 2018

Take Your Employees Phishing!

Improve your organization's user-based security posture with a realistic internal phishing campaign, educating employees on the tactics and techniques used by…

Read about this article
Events Orlando, FL | October 12 2026

InfoSec World 2026

TrustedSec is proud to sponsor and have a booth at this year's InfoSec World!

Read about this article
Events Deadwood, SD | October 07 2026

Wild West Hackin' Fest 2026

We're thrilled to sponsor this year's Wild West Hackin' Fest and we'd love to see you at our booth!

Read about this article
Events Grand Rapids, MI | September 24 2026

GrrCON 2026

TrustedSec is proud to sponsor and have a booth at this year's GrrCON!

Read about this article
Webinars August 19 2026

AMA: CMMC Phase II Suspension and Beyond

Join Director of Advisory Services Chris Camejo and Compliance Practice Lead Lee Quinton for an expert breakdown of the recent CMMC changes and how to prepare…

Read about this article
Blog August 13 2026

AI Offense is Not Noclip Mode

AI doesn't let attackers walk through walls, but it makes finding the cracks more efficient. In this blog, we cut through the hype and explain what AI-driven…

Read about this article
Blog August 11 2026

A Vault With No Treasure - CMMC Level 2 Compliance for Subcontractors With No CUI

This blog post should not exist, but it does. In this blog, we detail the improper CMMC Level 2 flow-down problem and the most cost-effective path to…

Read about this article
News August 10 2026

NewsNation - Cyberattack knocks out California city’s 911 operations

A cyberattack recently forced Suisun City, CA to declare a state of emergency after its 911 dispatch systems were compromised. Advisory Solutions Director Alex…

Read about this article
Blog August 06 2026

The Art of Hunting Azure Cloud Secrets

The difference between a standard cloud test and a subscription takeover? Finding the right secrets. In this blog, we introduce two open-source tools for…

Read about this article

Empower your business through better security design.

Talk directly with our experienced advisory consultants to learn how we can help.