RESEARCH, SECURITY
OPERATIONS, AND COMMUNITY.

Cody Kretsinger leads security research at Galactic. His work includes vulnerability discovery, coordinated disclosure, and explaining findings to the people responsible for securing the affected systems. His published research covers credential handling in MSP assessment software and security weaknesses in industrial lighting controllers.

Before leading research, he worked in offensive security, built security operations, supported more than 1,000 incidents, and advised organizations on managing security risk. He speaks at conferences, co-founded BSides Peoria and the Illinois Cyber Foundation, and co-authored Level Up: vCSO Edition with Bruce McCully.

His history includes a federal conviction for his role in the 2011 Sony Pictures breach. He discusses it openly, and it informs his work with people seeking a second chance in security.

Career

2016 - 2017 // REBUILDING

Starting From Zero

Joined an MSP at the lowest level with everything to prove. He wasn't there to be the "reformed hacker"; he was there to show he could build, not just break. Every ticket, every escalation, every late night was a step toward earning trust in an industry that had every reason to doubt him.

Rebuilding career
PHOTO // 2016-2017
2018 // OFFENSIVE OPERATIONS

Offensive Security Engineer

Moved into offensive security: penetration tests, red team engagements, and adversary simulation. Scoped, authorized, and written up for the people who had to fix what the team found.

Offensive security work
PHOTO // 2018
2019 - 2021 // BUILDING THE MACHINE

Security Operations Architect

Built a SOC from the ground up. Hired analysts, wrote detection logic, established IR procedures. Learned firsthand which processes hold up under pressure and which ones collapse the moment something real happens.

Building security operations
PHOTO // 2019-2021
2022 // SCALING UP

Joined Galactic

After years running security operations at an MSSP, protecting a full roster of clients at once, he joined Galactic, a vendor serving MSPs, to go wider still: not one provider's clients, but the entire MSP community. The goal was to bring what worked to a whole industry, and help every MSP that wanted it get further along its security journey.

Zero Trust World
PHOTO // 2022
2023 // COMMUNITY BUILDING

BSides Peoria & Illinois Cyber Foundation

Co-founded BSides Peoria and the Illinois Cyber Foundation to expand opportunities for security education and community in Central Illinois. 120+ attendees in year one. Now focused on mentoring the next generation and advocating for people who deserve a second chance in this industry.

Community building
PHOTO // 2023
2024 - 2026 // RESEARCH & ADVISORY

Principal Security Advisor

Stepped into high-level advisory, keynote speaking, and vulnerability research at Galactic. Led security strategy while continuing community work through the Illinois Cyber Foundation and BSides Peoria. Mentored at-risk youth and advocated for second chances in the security industry.

Speaking engagements
PHOTO // 2024-2026
2026 - PRESENT // SECURITY RESEARCH

Director of Security Research

Promoted to lead security research at Galactic: finding vulnerabilities in the tools MSPs and their clients rely on, coordinating disclosure with vendors, and publishing the results, including two CVEs in Kaseya RapidFire Tools Network Detective. He takes the findings to the stage, and keeps mentoring people who deserve a second chance in this industry.

Cody Kretsinger presenting security research
PHOTO // 2026

Background

2011 // THE INCIDENT

LulzSec & The Sony Pictures Breach

Participated in the Sony Pictures breach as a member of LulzSec. He was arrested, pleaded guilty, and was sentenced to federal prison. It was a period of arrogance and recklessness, and the consequences were his.

LulzSec era
PHOTO // 2011
2013 // THE REBUILD

Federal Custody & Reflection

Serving time in federal prison changes a person's perspective on risk, consequence, and humanity. He spent that time working out where he went wrong and planning how to use his skills constructively.

Court proceedings
PHOTO // 2013

Frequently Asked

Who is Cody Kretsinger?

Cody Kretsinger is the Director of Security Research at Galactic, where he leads vulnerability research and coordinated disclosure. He co-founded BSides Peoria and the Illinois Cyber Foundation, presents and keynotes security conferences, and co-authored Level Up: vCSO Edition. His work is finding real flaws in the tools organizations rely on, and making practical security reachable for the organizations that need it most.

What does Cody Kretsinger research?

He specializes in vulnerability discovery and coordinated disclosure, publishing CVEs in the software that MSPs and their clients depend on. His work ranges from credential-storage flaws in widely deployed assessment tools to internet-exposed industrial control systems, always paired with responsible disclosure to the affected vendors.

What does Cody Kretsinger speak about?

Cody delivers keynotes and technical briefings on the modern threat landscape, the attacker mindset, incident response, and his own research. He has spoken at conferences including GrrCon, BSides, and Zero Trust World, translating how attackers actually operate into terms executives and practitioners can act on. His talks are first-person and pitch-free.

Who does Cody Kretsinger work with?

Cody's primary focus is MSPs, MSSPs, and the clients they protect. He researches the vulnerabilities in the tools they rely on, advises on security practices that scale, and co-authored Level Up: vCSO Edition as a practical playbook for it. That work reaches further too: he has partnered with SMBs and enterprises, and his research and talks apply to any organization serious about its security.

What are BSides Peoria and the Illinois Cyber Foundation?

Cody co-founded both to grow the security community in Illinois. BSides Peoria drew more than 120 attendees in its first year, and the Illinois Cyber Foundation carries that work further, mentoring the next generation of security professionals and advocating for people who deserve a second chance in the field.

What has Cody Kretsinger published?

He co-authored Level Up: vCSO Edition with Bruce McCully, a practical security framework for MSPs and MSSPs, and he is the researcher behind multiple published CVEs. He also writes regularly on security research and the threat landscape at codykretsinger.com/blog.

Where can I watch or listen to Cody Kretsinger?

Cody is a regular podcast and video guest on the modern threat landscape, attacker psychology, and the realities of security work, with appearances including Pax8's The Game and Hacker and the Fed. His media and writing are collected at codykretsinger.com.

Where is Cody Kretsinger based?

Cody is based in Illinois and speaks and advises with organizations nationwide.

Is Cody Kretsinger available for speaking or advising?

Yes. Cody is available for conference keynotes, executive roundtables, private corporate events, and security advisory work. Booking inquiries go through the contact page at codykretsinger.com/contact.

How do I reach Cody Kretsinger for media or press?

Cody welcomes interview, podcast, and press inquiries. A media kit with bios, headshots, and ready-to-use intro scripts is available at codykretsinger.com/press-kit, and requests can be sent through the contact page.

What happened with LulzSec, and where is Cody Kretsinger now?

In 2011, Cody took part in the Sony Pictures breach as a member of LulzSec. He was arrested, pleaded guilty, and served a federal prison sentence. He has since worked in security operations, offensive security, advisory, and research, and today leads security research at Galactic. He speaks openly about that history and advocates for second chances in the security field.