Skip to content
Why Security Journey

We teach people to build securely with AI.

Most organizations give people AI access without teaching them what to do with it. We call that the AI Capability Gap — and closing it is why Security Journey exists.
We teach people to build securely with AI.
Mission & Vision

What we are here to do

Mission
To close the AI Capability Gap for every organization we serve, so people can use AI to do better work without creating new risk.
We take a learner-first approach: training tied to the work someone actually does, delivered at the moment the decision is being made, and measured until the behavior changes.
Vision
A world where everyone building with AI does it securely by default.
Not because a policy told them to, and not because a gate caught them, but because they know what good looks like. When secure judgment is the default at every desk, organizations move faster with fewer surprises.
Our Story

Great things happen when professionals identify a need and build the answer.

Security Journey was founded by practitioners who saw that software security kept being treated as somebody else's job. Here is how we got from there to here.
Our Founding

Security starts with the person building

We started with a conviction: the person building is the one who decides whether it is safe. Not a scanner, not a gate at the end of the pipeline, not a compliance checkbox.
2022

HackEDU joins forces with Security Journey

Two leaders in secure code training united under a single mission, combining hands-on learning with a platform built for engineering teams at scale.
February 2026

The Developer Manifesto

We published our position on what AI changes and what it does not: AI expands what developers can achieve, but every vulnerability still traces back to a human decision.
February 2026

A reimagined platform

Developer profiles, AI-readiness assessment, GitHub integration, and Aspen — our AI capability that steers coding assistants away from known mistakes.

 
Today

Beyond engineering

AI Advantage brings six levels of role-based AI enablement to the whole workforce — joining our secure code training on a single enterprise AI training platform.

Everyone is a developer now. Secure judgment is no longer a specialist skill inside engineering. It is a workforce skill — and it is the same gap we have been closing for developers for ten years.

What That Means Today

One platform, two jobs

For AppSec & Engineering Leaders

Secure Code Training

Where we started and where we still go deepest, now extended into AI security training for AI-assisted development.

  • OWASP-level depth and hands-on labs
  • Challenges, CTFs and tournaments
  • Recognizing insecure AI-generated code
  • Aspen Guardian AI steers coding assistants away from known mistakes
For AI, Enablement & L&D Leaders

AI Advantage

AI training for employees, built on the same method — our AI enablement path for the whole workforce.

  • Role-based training past basic prompting
  • Context loading, critique loops, prompt hygiene
  • Output handling and responsible use
  • Taught on the tools your organization has already approved
Our Belief

Everyone is a developer now

Developers

Secure coding training with AI-specific modules for the teams shipping production code.

Knowledge Workers

AI enablement and security habits for every function — sales, marketing, HR, ops, and beyond.

Citizen Developers

Non-developers shipping real code with AI need the secure coding expertise we have built for a decade.

Leaders

AI and transformation leaders accountable for adoption, compliance, and measurable capability growth.
AI put development-shaped power in everyone's hands. The training has to follow.
Leadership

The team leading Security Journey

Dan Newton
Dan Newton
Chief Executive Officer
Dan leads Security Journey's strategic vision, bringing nearly two decades of experience in managed services and enterprise technology. Previously CEO of CDS and HiveIO.
Mike Borton
Mike Borton
Chief Financial Officer
Mike has served as CFO for a public NYSE company and multiple VC/PE-backed cybersecurity companies. Previous two were acquired by IBM and Proofpoint.
Jason Brubaker
Jason Brubaker
Chief Technology Officer
Jason has 20+ years in web application and SaaS, from software engineer to engineering director. Previously at Wombat Security Technologies and Proofpoint.
Michael Burch
Michael Burch
VP of AI Enablement and Acceleration
Software engineer turned application security leader. Career began between engineering and cyber defense, creating enterprise applications while serving as Senior Cybersecurity Specialist.
Rachel Yonan
Rachel Yonan
VP of Account Management
Known for commitment to education, community building and meaningful service. Brings a thoughtful, people-centered approach shaped by hands-on leadership and global volunteer work.
Our Team of Experts

The people who write the training

JC
John Campbell
Director of Content Engineering
Over two decades building mission-critical systems at Westinghouse Nuclear and Uber. Named on over 15 patents. Five years focused on hands-on cybersecurity training.
HB
Hannah Boothe
Application Security Engineer II
Specializes in transforming complex technical material into clear security education. Advocates for secure-by-design and privacy-by-design principles.
ME
Michael Erquitt
Senior Security Engineer
Aerospace and cyber threat intelligence background. Former Army Special Forces Engineer. CISSP, CCZT, CCSK certified with a Master's in Cybersecurity Engineering.
CH
Chris Harding
Content Engineer II
Decade of engineering at IBM and several other organizations, contributing to AI tooling with patents in word embedding models. Previously taught software engineering at Galvanize.
NM
Noah Morse
Application Security Engineer II
Built our AI Gateway for secure AI integration and led development of the Aspen capability. Background in medical research at UPMC and financial services at PNC.
TC
Tyler Cooper
Application Security Engineer II
Helped lay the groundwork for AI-powered learning tools including Aspen guidance. OSCP+ certified with a strong offensive security mindset.
Threat modeling Cryptography Secure-by-design AI & LLM security Learning science Privacy-by-design Cloud computing Security champion programs
Community & Impact

We build the community we want to learn from

Podcast
The Security Champion Podcast
Founded and hosted by our team, with conversations on what actually works in building security champion programs.
Learn More
SUMMIT
Security Champion Summit
We organized the first-ever Security Champion Summit, which in 2025 drew more than 500 registrants across 30 countries.
Learn More
In the Field
Speaking and publishing
Our people support OWASP chapters and speak at RSA, BSides and LASCON. They authored the Tactical AppSec book series, including an AI Security Field Guide.
Why Security Journey

Security fundamentals. Real AI proficiency.

Security Journey built its name on specialized security training for developers. That same foundation now powers AI Advantage — practical training that mimics real situations, including hands-on labs, not check-the-box awareness.

SJ_Human1920x1280_002_web

We have taught this transition before

When secure coding moved from a specialist concern to something every developer owned, we built the training that carried teams through it. AI is the same shift at a larger scale.