Sean Whalen is a senior information security engineer with 11 years' experience blending hands-on malware analysis, incident response leadership, and strategic defense for enterprises and SMBs. He leads and mentors IR teams, builds custom Python SOAR integrations and Splunk dashboards, and configures modern security stacks including CrowdStrike, Palo Alto, Fortinet, Proofpoint and IronPort. Sean contributes to notable open-source security projects—improving the parsedmarc DMARC parser and hardening the CAPE malware analysis framework—and maintains his own tools like CheckDMARC. As an independent consultant he implements standards such as DMARC and delivers practical security posture improvements, while advising cybersecurity education programs locally. Known for pairing deep technical skill with strong rapport-building, he consistently turns complex threats into clear operational improvements.
11 years of coding experience
9 years of employment as a software developer
Bachelor of Science (B.S.), Computer Information Systems, Bachelor of Science (B.S.), Computer Information Systems at Ohio Dominican University
Computer Support Technology, Computer Support Technology at Fairfield Career Center
A Python package and CLI for parsing aggregate and forensic DMARC reports
Role in this project:
Back-end Developer
Contributions:7 releases, 4 reviews, 174 commits in 3 years 7 months
Contributions summary:Sean primarily contributed to the `parsedmarc` Python package, focusing on enhancements and bug fixes. Their work includes updating the package version, addressing code style issues, and fixing documentation formatting. They also worked on making `dkim_aligned` and `spf_aligned` case insensitive, implementing fixes for IMAP connections, and upgrading dependencies like `dateparser`.
Contributions:13 commits, 15 PRs, 24 comments in 7 months
Contributions summary:Sean primarily focused on fixing bugs and improving the stability and functionality of the CAPE malware analysis framework. Their contributions include resolving issues in the web UI, correcting timezone handling, and addressing type errors within critical modules. Additionally, the user implemented fixes for specific dependencies, such as SQLAlchemy, and addressed code readability concerns within existing signature modules. The user also made adjustments to network-related signature modules, resolving syntax errors.
payloadmalwareextractionmalware-analysis
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.