Hi, I'm Todd Brashear

Cybersecurity & Compliance Intern | Certified Scrum Product Owner | Aspiring GRC Analyst

Louisville, KY | Open to Remote or Hybrid Roles

About Me

Todd Brashear - Professional Headshot

I'm a business-minded professional transitioning into cybersecurity and compliance after more than two decades as an entrepreneur and small-business owner. I'm currently completing a Cybersecurity & Compliance Internship at FormSprint Health, contributing to SOC 2 readiness efforts and gaining hands-on experience with risk assessment, data protection, and compliance documentation.

My career began with founding and running multiple successful ventures — including Wild and Woolly Video, a beloved Louisville institution — and managing complex creative projects like the critically acclaimed Spiderland reissue for Touch and Go Records. Across these experiences, I learned the importance of trust, systems reliability, and information security long before I knew the terms. Those same skills now power my approach to GRC: clear communication, operational discipline, and an instinct for balancing risk with business needs.

I'm certified as a Certified Scrum Product Owner (CSPO) and pursuing CompTIA Security+ to strengthen my technical foundation. I'm passionate about bridging the gap between business operations and cybersecurity frameworks — helping teams align compliance goals with real-world workflows.

Skills & Expertise

Cybersecurity & Compliance

SOC 2 Readiness PCI DSS NIST CSF Risk Management Security Awareness Compliance Documentation

Technical Foundations

Linux (Kali, Ubuntu) Networking SQL AWS Docker Home Lab Setup

Tools & Technologies

AWS Console MariaDB/MySQL PyQt5 Apache Docker Compose Pi-hole Cloudflare

Frameworks & Methodologies

Agile / Scrum SOC 2 Trust Services Risk Identification Vendor Management Policy Development

Certifications

Certified Scrum Product Owner (CSPO)

2025

CompTIA Security+

In Progress

Wellcoaches Health & Wellness Coach

2024

Pilates Center Boulder Advanced Teacher Training

2017

Featured Projects

Slint Spiderland Deluxe Reissue Project

Project Management Quality Assurance Vendor Coordination Audio Production Manufacturing

Coordinated a multi-year archival and production project for Touch and Go Records, overseeing the complete remaster and deluxe box set release of Slint's landmark album. Managed cross-functional workflows including audio restoration, video production, book design, and manufacturing logistics.

Key Achievements:

  • Successfully managed complex multi-year project with multiple stakeholders
  • Coordinated cross-functional workflows across audio, video, and print production
  • Implemented rigorous quality assurance processes across multiple vendors
  • Limited edition release (3,138 copies) sold out completely
  • Achieved rare perfect 10.0 rating from Pitchfork music publication

Full-Stack TODO CRUD Application

JavaScript HTML/CSS Supabase Netlify CRUD Operations

Built a full-stack web application from scratch as my first mentor-guided project to understand how web applications work in practice. Implemented complete CRUD (Create, Read, Update, Delete) functionality with a modern frontend and cloud database backend.

Key Achievements:

  • Learned fundamental web development concepts and architecture
  • Implemented secure database operations with Supabase backend
  • Built responsive user interface with vanilla JavaScript
  • Successfully deployed live application using Netlify
  • Gained understanding of frontend-backend communication

SOC 2 Readiness Internship

AWS Google Workspace SOC 2

Supporting SOC 2 Type I readiness for a healthcare software startup. Assisted in documenting security controls, mapping to the Trust Services Criteria, and reviewing evidence for audit preparation.

Key Achievements:

  • Drafted and organized compliance evidence in preparation for SOC 2 audit
  • Improved documentation for risk assessment and asset inventory
  • Enhanced understanding of how compliance frameworks operate in practice

Home Lab: Cloud & Media Server

Ubuntu Server Docker Pi-hole Cloudflare AWS Route 53

Built a Linux-based home lab environment to practice real-world system administration and security. Installed and configured Dockerized services, deployed a Pi-hole network-wide ad-blocker, and connected everything via Cloudflare and AWS Route 53 for secure remote access.

Key Achievements:

  • Gained practical experience with Linux administration and network security
  • Set up Cloudflare DNS and SSL certificates for encrypted connections
  • Documented the process and shared takeaways on LinkedIn as a learning series

Video Rental Store SQL Database

Python PyQt5 MariaDB Apache

Created a SQL-based database simulating a 100-film video-rental store with realistic titles, directors, release dates, and box office grosses. Built a Python GUI client (PyQt5) for querying data and exploring SQL concepts.

Key Achievements:

  • Designed and normalized database schema from scratch
  • Implemented real-world datasets for authenticity
  • Developed a graphical SQL client to demonstrate database connectivity
  • Explored web security basics by testing SQL injection scenarios
  • Simulated performance testing with basic DoS simulation

Portfolio Website Deployment on AWS

AWS Static Website Hosting HTML/CSS/JavaScript Cloud Deployment

Designed and deployed a professional portfolio website using modern web technologies and AWS cloud infrastructure. Gained hands-on experience with cloud deployment processes, domain management, and web hosting best practices.

Key Achievements:

  • Built responsive, modern portfolio website from scratch
  • Successfully deployed to AWS cloud infrastructure
  • Implemented professional web design and user experience principles
  • Gained practical experience with cloud deployment workflows
  • Demonstrated ability to learn and apply new technologies independently

Learning in Public

I believe in sharing the learning journey and contributing to the cybersecurity community. Follow my progress as I document AWS projects, home lab experiments, and insights from my transition into GRC.

Get In Touch

I'm actively seeking opportunities in cybersecurity, compliance, and GRC roles. Let's connect and discuss how my unique background in business operations and emerging technical skills can add value to your team.