JHJeremy HughesCybersecurity Analyst
  • About
  • Experience
  • Crossover
  • Labs
  • Capabilities
  • Background
  • Contact
Get in Touch

Jeremy Hughes / Glenville, NC

Doing security work before it had the job title.

Seven years of operations management and healthcare compliance — business continuity, risk assessments, HIPAA, root cause analysis, incident reporting. Jeremy is a cybersecurity analyst now bringing that record to Linux, SQL, Splunk, and Wireshark.

See the CrossoverGet in Touch
JHLog review — working file
LOG STREAMSEVTCPDNSHTTPARP
7+ yrsoperations & compliance
HIPAAhealthcare compliance
SplunkSIEM & log analysis

About

An operations record, pointed at security.

At a glance

Based in
Glenville, North Carolina
Focus
Security operations & log analysis
Certificate
Google Cybersecurity — Merit America
Background
7+ years operations & HIPAA compliance

Jeremy Hughes is a cybersecurity analyst in Glenville, North Carolina, with more than seven years in operations management and healthcare compliance behind him. He works in risk assessment, regulatory compliance, and incident response, with hands-on experience in Linux, SQL, Splunk, and Wireshark.

The career change is less of a jump than it looks. At Morrisons Healthcare he ran compliance for a hospital under HIPAA and State Department of Health oversight — conducting root cause analysis on incidents and managing the reporting protocols that documented them. At Blue Ridge Timberworks he owned business continuity planning, ran site audits and risk assessments, and built the security awareness training that staff were onboarded through.

Those are the same problems a security operations team works on: keeping things available, finding the weak points first, satisfying a regulator, and writing an incident up so it holds. The difference is the surface. He has spent the last stretch learning the technical one — the Google Cybersecurity Professional Certificate through Merit America, and a long run of hands-on TryHackMe work in Linux, log analysis, Wireshark, Windows forensics, and Splunk incident handling.

He is not new to consequences, either. Directing logistics for a hospital serving roughly 107 patients a day is a job where an error is not an inconvenience. That is the instinct he brings to a SOC queue.

He is currently consulting independently from Glenville, up in Jackson County, pursuing security work full-time while managing freelance projects to keep his operational leadership sharp.

Experience

Where the operations record was built.

Hospital compliance, a campus built from nothing, and a paper-to-digital transformation that paid for itself — the roles behind the security case.

In

Glenville, NC · 2024 – Present

Independent Consultant & Cybersecurity Trainee

Pursuing intensive cybersecurity upskilling while managing freelance construction projects, keeping operational leadership and project management sharp alongside the technical work.

  • Upskilling
  • Project management
  • Operational leadership

Retraining without stepping away from the work that pays.

Bl

Manager of Operations · Highlands, NC · 2018 – 2024

Blue Ridge Timberworks

Championed Business Continuity Planning, maintaining site availability and reliability for high-volume commercial use. Directed an end-to-end executive retreat and wellness center deployment, scaling a site from zero assets to a fully operational multi-facility campus — six residential units and a 4,000 sq. ft. operations center.

  • Business continuity
  • Risk assessment
  • Site audits
  • Security training

Zero assets to a running campus, with the controls to keep it running.

Mo

Director of Food and Nutrition · Highlands, NC · 2014 – 2016

Morrisons Healthcare

Directed large-scale logistical planning for a hospital serving roughly 107 patients daily. Oversaw HIPAA and State Department of Health compliance, running root cause analysis on operational incidents to implement corrective measures and prevent recurrence, and managed rigorous incident reporting protocols.

  • HIPAA
  • Root cause analysis
  • Incident reporting
  • Compliance

Regulated-environment compliance, documented and defensible.

Th

Manager · Highlands, NC · 2017 – 2018

Thompsons Landscaping

Spearheaded a digital transformation initiative, replacing manual paper logs with a centralized digital platform. Eliminating data loss and ensuring accurate service tracking produced a 27% revenue increase.

  • Digital transformation
  • Data integrity
  • 27% revenue increase

Proof that better records are worth real money.

Operations to security

He has been doing this work. It went by other names.

Each line on the right is from Jeremy's operations record, quoted as written. The term on the left is what a security team would call it.

  1. Availability

    Keeping a site up is the same discipline

    Championed Business Continuity Planning by maintaining site availability and reliability for high-volume commercial use, ensuring uptime for client deliverables.

  2. Vulnerability assessment

    Finding the weak points before anyone else does

    Conducted regular site audits and risk assessments, identifying physical vulnerabilities in the facility and implementing controls to mitigate safety and liability risks.

  3. Regulatory compliance

    Years inside a regulated environment

    Oversaw regulatory compliance (HIPAA / State Department of Health) by conducting root cause analysis on operational incidents to implement corrective measures and prevent recurrence.

  4. Incident response

    Writing an incident up so it holds later

    Managed rigorous incident reporting protocols, documenting and analyzing operational breaches and safety incidents.

  5. Security awareness

    Getting people to actually follow the protocol

    Led Security Awareness and Operational Training, personally developing curriculums and onboarding staff to ensure strict adherence to protocols.

  6. Data integrity

    What trustworthy records are worth

    Spearheaded a digital transformation initiative by replacing manual paper logs with a centralized digital platform, eliminating data loss and ensuring accurate service tracking.

Hands-on labs

Where the technical side got built.

TryHackMe rooms worked through in a gamified virtual environment — the practical counterpart to the certificate coursework.

TryHackMe

Linux Fundamentals 1–3 & Linux Strength Training

Navigated directories and files, adjusted permissions, analyzed logs, and explored common utilities.

TryHackMe

Intro to Logs & Log Analysis

Identified log types, located logs, employed regular expressions, and used the command line and CyberChef for effective log analysis.

TryHackMe

Wireshark Basics & Wireshark 101

Packet dissection, navigation, and filtering; analyzed ARP, ICMP, TCP, DNS, HTTP, and HTTPS traffic for network troubleshooting and security analysis.

TryHackMe

Windows Fundamentals 1–3 & Windows Forensics 1–2

Windows file systems, user account control, system configuration, firewall, and registry; accessing hives, using registry explorer, and recovering files across FAT and NTFS.

TryHackMe

Splunk Basics, Incident Handling with Splunk & Splunk 2–3

Navigating Splunk and conducting incident handling; participated in the Boss of the SOC investigation for security analysis.

Capability stack

The tools and practices he works in.

Detection and analysis tooling on one side, the compliance and process discipline he already had on the other.

Tools & Languages

  • Linux
  • Windows
  • SQL (BigQuery)
  • Splunk
  • Wireshark
  • Tcpdump
  • Suricata
  • Python
  • ChatGPT

Security Practices

  • Information security
  • Network security
  • Vulnerability assessment
  • Threat analysis
  • Log analysis
  • NIST frameworks
  • HIPAA compliance

Software Platforms

  • Google Workspace
  • Slack
  • Microsoft 365

Strengths

  • Problem-solving
  • Cross-functional collaboration
  • Attention to detail
  • Crisis management
  • Process documentation

Background

Credentials and grounding.

A current cybersecurity certificate on top of seven years of operations and compliance in regulated settings.

Certificate

Google Cybersecurity Professional Certificate

Merit America, virtual · 12/2025. Systematically identifying and mitigating risks, threats, and vulnerabilities, with practical work in Linux, SQL, and Python using SIEM tools, IDS, and network protocol analyzers.

Applied work

Hands-On Certificate Projects

Conducted a simulated security audit, responded to a cyber incident, analyzed vulnerable systems, and completed an incident handler's journal.

Experience

7+ Years Operations & Compliance

Operations management and healthcare compliance across hospital food service, landscaping, and timberworks — regulated settings with real audit, incident, and reporting requirements.

Based in

Glenville, North Carolina

Jackson County, in the mountains of western North Carolina.

Get in touch

Looking for an analyst who already knows what an incident costs?

Jeremy is seeking a security operations role. Reach out about a position, contract work, or anything you want to ask about his background.

Contact

Start the note

Step 1 of 3
What brings you here?

Choose the closest fit so Jeremy knows how to reply.

Your note
Live preview

This is the context Jeremy receives by email.

ToJeremy Hughes
Your subject line...Your message will appear here as you write it...
FromYour name
Replyvia Email
  • Reason chosen
  • Context added
  • Reply details

Jeremy is based in Glenville, North Carolina, and is seeking a security operations role.

Review experience