konov.dev

Career

Experience

Sixteen years of web security work — from frontline hosting support to leading malware research at scale.

  1. Security Engineer III

    Sep 2024Present

    GoDaddy / Sucuri — Remote

    • Lead advanced threat detection, vulnerability management, and incident response for websites and infrastructure across GoDaddy's hosting portfolio.
    • Personally resolve a high volume of malware-classification cases — the large majority requiring one or more original detection signatures, each representing a distinct sample, campaign, or infrastructure pattern investigated.
    • Reverse-engineer newly discovered malware samples and develop technical detection signatures (PHP, JavaScript, regex) integrated into automated scanning tools; among the most active contributors org-wide to the team's core detection codebase.
    • Design and build CI/CD-style automation — GitHub workflows that trigger AWS Lambda functions to QA-test every new signature in the cloud before it ships to analysts and deploys across the scanner network, which checks both customer file systems and live public content for malware.
    • Train AI agents to draft signatures for straightforward malware, freeing analyst time for novel and complex threats, and maintain and modernize legacy internal tooling that had fallen out of use.
    • Publish original threat research to the GoDaddy and Sucuri security blogs, translating technical findings into guidance for website owners and the security community.
    • Mentor junior analysts on malware triage and signature development to bolster overall team expertise.
  2. Security Engineer II

    Jun 2024Sep 2024

    GoDaddy / Sucuri — Remote

  3. Technical Security II

    Dec 2018Jun 2024

    GoDaddy / Sucuri — Remote

    • Decoded and analyzed malware samples submitted by the wider analyst team, producing regex/PHP/JS signatures used to detect and remediate infections at scale.
    • Investigated complex, novel infection chains — including fake plugins, PHP web shells, and JavaScript skimmers (Magecart-style) — and documented findings in published Labs Notes and blog posts.
    • Built detection coverage that scaled cleanup across large volumes of compromised WordPress and Magento websites.
  4. Supervisor / Team Lead

    Dec 2017Dec 2018

    GoDaddy / Sucuri — Remote

    • Led a team of security analysts handling malware investigation and remediation for client websites.
  5. Security Analyst

    Apr 2017Dec 2018

    GoDaddy / Sucuri — Remote

    • Investigated and remediated malware infections on client websites; advised clients on hardening measures to prevent reinfection and coordinated blacklist removal with third-party providers.
  6. Security Analyst

    Sep 2014Dec 2018

    Sucuri Inc. (prior to GoDaddy acquisition)

    • Cleaned malware from compromised websites and resolved downstream issues caused by infections.
  7. Security Administrator

    Sep 2011Aug 2014

    HostGator — Houston, Texas

    • Investigated malware and phishing attacks, traced attack vectors through server logs, and implemented preventive solutions for hosting clients.
    • Monitored servers for spam incidents, traced the source of outgoing spam, and secured compromised accounts.
    • Worked directly with clients to explain security incidents and guide remediation.
  8. Jr. Administrator

    Sep 2010Sep 2011

    HostGator — Houston, Texas

    • Provided technical support to hosting clients worldwide, resolving DNS, domain, and CMS configuration issues across concurrent phone and chat channels.
  9. Web Designer

    Jan 2009Jan 2010

    FocusedExtermination

    • Redesigned the company website and implemented an OSCommerce-based online store.

Languages

Languages