Group Purchasing
Group Purchasing

Jeff McJunkin

Principal InstructorCEO at Rogue Valley Information Security

Specialities

Offensive Operations

Jeff McJunkin

About Jeff McJunkin

Jeff McJunkin is the founder and principal consultant of Rogue Valley Information Security and a SANS Principal Instructor, where he is co-author and teaches SEC560: Enterprise Penetration Testing and SEC580: Metasploit for Enterprise Penetration Testing. Throughout his career, Jeff has specialized in helping organizations understand how real attackers move through enterprise environments and how defenders can detect and stop them. His consulting work has included penetration testing and red team engagements for organizations ranging from regional businesses to Fortune 100 enterprises, giving students direct exposure to techniques and scenarios drawn from real-world assessments.

Jeff's path into offensive security began in systems and network administration. Early roles in enterprise IT, systems engineering, and infrastructure management gave him firsthand experience building and maintaining the environments he would later be tasked with assessing. After moving into professional penetration testing, he developed deep expertise in Active Directory security, enterprise attack paths, post-exploitation operations, and realistic adversary emulation. Those experiences directly shaped the hands-on exercises and attack chains found throughout the SEC560 course, where students learn to move from reconnaissance through domain compromise using the same methodologies Jeff applies during client engagements.

Jeff holds many industry certifications, including the GIAC Security Expert (GSE #128), GIAC Exploit Researcher and Advanced Penetration Tester (GXPN), and GIAC Penetration Tester (GPEN) certifications. Beyond consulting and instruction, he has architected multiple generations of the SANS Core NetWars cyber ranges, contributed to the SANS Holiday Hack Challenge, and helped develop offensive security training used by thousands of practitioners worldwide. His work reflects a long-standing commitment to hands-on learning, realistic adversary simulation, and practical skill development for security teams. Jeff is also a faculty member of the SANS Technology Institute, which has been designated an NSA Center of Academic Excellence in Cyber Defense and is a multi-year winner of the National Cyber League competition.

Students consistently describe Jeff as an instructor who makes complex technical concepts approachable through practical demonstrations, realistic stories, and extensive hands-on exercises. His teaching philosophy centers on helping practitioners understand not only how attacks work, but why they succeed and how organizations can meaningfully reduce risk. Outside the classroom, Jeff likes to experiment with various side quests using AI systems, such as automated reverse-engineering, exploit generation, and augmenting his own knowledge. He also enjoys hiking, spending time with his lovely wife and two children, and disconnecting from the outside world to decompress and enjoy vacation time.

Qualifications Summary
  • Founder and Principal Consultant, Rogue Valley Information Security
  • SANS Principal Instructor; Co-author of SEC560: Enterprise Penetration Testing and author of SEC580: Metasploit for Enterprise Penetration Testing
  • Certifications: GSE, GXPN, GPEN, GCIH, GREM, GCFA, GCIA, GCED, GMOB, GPYC, GCFE, CCNA, GSEC, and CISSP.
  • Led penetration testing and red team engagements for Fortune 100 organizations
  • Leader in adversarial emulation and offensive tooling

Press & Media

More From Jeff