todb


Vice President of Security Research

11 Published Articles

About todb

Tod Beardsley is VP of Security Research at runZero, where he "kicks assets and fakes frames." Prior to 2025, he was the Section Chief for the Vulnerability Response section for CSD/VM/VRC at CISA, the Cybersecurity and Infrastructure Security Agency, part of the US government. He's also a founder and CNA point of contact for AHA!. He spends much of his time involved in vulnerability research and coordinated vulnerability disclosure (CVD). He has over 30 years of hands-on security experience, stretching from in-band telephony switching to modern ICS/OT implementations. He has held IT ops, security, software engineering, and management positions in large organizations such as the Rapid7, 3Com, Dell, and Westinghouse, as both an offensive and defensive practitioner. He is also CVE Board member, a Travis County Election Judge in Texas, and an internationally-tolerated horror fiction expert.

Latest Stories

runZero Insights
Only Four Shopping Days Left Until RSAC!
In which Tod assures his fellow nerds that RSA Conference isn’t just for marketing hypesters.
runZero Insights
CVE Marches On
On April 15, 2025, the CVE program faced sudden shutdown fears — but CISA stepped in with last-minute funding. Crisis averted, for now.
Webcasts
runZero Hour Ep. 17: The State of Vuln Management, Our Approach, and a Deep Dive into New Risk Findings
On this special edition of runZero Hour, join Tod Beardsley and Rob King for a deep dive into the future of exposure management.
runZero Insights
VulnCon 2025 Wrapup
Last week, I got to see friends, enjoy Carolina barbecue, and hang out with super smart, fun people. VulnCon has turned out to be one of the most...
runZero Insights
Sound & Fury: Revisiting Apache Tomcat & next.js
A reflection on recent high-profile vulnerabilities in next.js and Apache Tomcat just before VulnCon 2025, and why even with high scores and PoCs,...
Rapid Response
How to find Kubernetes Ingress-NGINX Controller installations on your network
On March 24th, Wiz and Kubernetes disclosed a pre-authentication remote code execution attack chain. Here's how to find Ingress-NGINX controller...
Webcasts
runZero Hour, Ep. 16: Handling EOL’d operating systems, runZero Starlink integration, and more!
Former CISA Section Chief and now VP of Security Research at runZero Tod Beardsley shares insights on handling end-of-life operating systems like...
Rapid Response
How to find Schneider Electric devices on your network
Schneider Electric ICS advisories address vulnerabilities in Modicon PLC, EPAS, and ASCO Remote Annunciator, including CVE-2024-11737,...
runZero Research
Labelling for End-of-Life Consumer IoT
IOT labelling is back on the menu, but how to actually do it is still tricky.
runZero Insights
Stormy with a chance of runZero
runZero and GreyNoise, together at last on Storm Watch
Webcasts
runZero Hour, Ep. 11: A CISA insider's perspective on managing the KEV catalog
Tod Beardsley, CISA cybersecurity expert offers an insider’s look into CISA’s mission and management of the Known Exploited Vulnerabilities (KEV)...

Discover the new era of exposure management!