Joshua Barone
Certified InstructorArchitect at Cellebrite
Specialities
Cybersecurity and IT Essentials, Cyber Defense, Cloud Security, Offensive Operations

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsCybersecurity and IT Essentials, Cyber Defense, Cloud Security, Offensive Operations

Joshua Barone is a SANS Certified Instructor and Cellebrite Architect who teaches SEC573: AI-Powered Security Automation: Building Tools with Python, LLMs, and MCP and SEC522: Application Security: Securing Web Applications, APIs, and Microservices.
Joshua’s path began in enterprise software engineering, where he built and secured large-scale applications before shifting his focus to information security. Over the past decade, he has led security engineering and forensic initiatives at Geocent, BlackBag Technologies, and Fiserv. Now, as an Architect at Cellebrite, he designs digital-investigation platforms that power global law enforcement and enterprise forensics. His day-to-day exposure to real investigative challenges keeps the labs in his course grounded in authentic, hands-on problem solving—students practice the same principles used to analyze and automate evidence workflows in the field. He is also a faculty member of the SANS Technology Institute, which has been designated an NSA Center of Academic Excellence in Cyber Defense and is a multi-year winner of the National Cyber League competition.
He holds several GIAC certifications directly tied to his teaching—including GIAC Python Coder (GPYC), GIAC Penetration Tester (GPEN), GIAC Certified Intrusion Analyst (GCIA), GIAC Web Application Penetration Tester (GWAPT), GIAC Incident Handler (GCIH), and GIAC Security Essentials (GSEC)—along with the Certified Information Systems Security Professional (CISSP) credential. Joshua also serves on the GIAC Advisory Board, contributing to certification and curriculum development. In 2023, he presented “JWTs: The Good, the Bad, and the Ugly (Security Edition)” at SANS Rocky Mountain Summer, sharing field-tested approaches to secure token handling and Python-based automation.
In class, Joshua challenges students to think critically and build tools that reflect their own environments. He often reminds learners, “The best script isn’t the one you copy—it’s the one you create to solve your own problem.” His approachable, problem-solving style makes complex material accessible while encouraging independent discovery. By the end of the week, students leave with working automation they’ve written themselves, renewed confidence in their technical instincts, and a clear vision for how Python can elevate every aspect of their security practice—both in class and on the job.
Josh rocks! He's super supportive and encouraging throughout the entire course. Learned a lot!
Josh does very well being considerate of everyone and maintains a great pace. Very professional and keeps the experience engaging.
Josh clearly has a significant depth of knowledge and experience in this area and has been able to answer questions and pivot outside the course material to provide extreme value beyond just the course itself.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.