About me
Jon Haas is a Threat Hunter at Nationwide specializing in identity security, cloud detection engineering, and adversary tradecraft in modern SaaS environments. His work focuses on uncovering gaps in authentication controls, including OAuth abuse, first party application behavior, and non interactive authentication techniques such as ROPC.
He is actively developing AI-driven agents for threat-informed defense, exploring how automation and agentic workflows can continuously emulate adversary behavior and improve detection coverage. Jon is also working on advancing “threat hunting as code,” building scalable, repeatable hunting and detection pipelines that integrate directly into modern security operations.
His research emphasizes practical, real world defense, helping blue teams translate complex attack paths into actionable detections that operate effectively in production environments.