Experience Sites Built DF Tools Skills Certs Dark Fire Contact
Open to Opportunities · Nashville, TN

Chance
Cummings

IT Field Service Technician (CTG) · Vanderbilt University Medical Center — Refresh Team

Healthcare IT professional specializing in large-scale endpoint deployment, MDM, VDI infrastructure, and multi-site clinical device refresh — actively transitioning into cybersecurity. Founder of Dark Fire Security. CompTIA A+ & Network+ certified. Security+ in progress.

CompTIA A+ Network+ Security+ (In Progress) WGU B.S. Cybersecurity Dark Fire Security
bash — chance@darkfire:~
chance@darkfire:~$ whoami --verbose
 
nameChance Cummings
roleIT Field Tech (CTG) @ VUMC — Refresh Team
startedMarch 4, 2026
sitesNashville · Clarksville · Tullahoma
goLivesNeuro SD x2 · EMU · 4–5 backfills
deployed100+ workstations · WOW carts · 32+ iOS
imaging32-port KVM/PXE · WinPE+WIM · manual OU
mdmIntune · ABM · floor-specific profiles
certsA+ · Network+ | Security+ [WIP]
branddarkfiresecurity.com
statusAVAILABLE FOR OPPORTUNITIES ●
 
chance@darkfire:~$

Where I've worked

Field-tested across healthcare enterprise IT, logistics, retail IT, and my own ventures.

01
Mar 2026 – Present
Nashville · Clarksville · Tullahoma, TN
IT Field Service Technician — Refresh Team
Vanderbilt University Medical Center (VUMC)
CTG (Clinical Technology Group) Contract · Healthcare Enterprise IT · HIPAA Environment · Multi-Site
Neuro Step Down x2 EMU Reading Room 4–5 Backfill Go-Lives 100+ Endpoints 32+ iOS Devices 32-Port PXE Imaging Multi-Site Autonomous Visits Sole-Machine Specialty Software Install
  • Remotely installed and configured Philips Holter monitoring software on a replacement AWS (acquisition workstation) — the only computer in the unit certified and capable of running that software — restoring the unit's sole cardiac data-acquisition path with zero disruption to active patient monitoring.
  • Transitioned onto CTG's Refresh Team, taking on imaging, wiping, and redeployment of Windows 10 machines and WOW carts across multiple sites including Clarksville and Tullahoma — remained hourly through the shift.
  • Performed a live network switch swap and port remap and ran 32-port KVM/PXE imaging (WinPE + WIM, manual OS and OU selection, no SCCM) during a full-day refresh deployment.
  • Independently resolved a multi-site visit that six other technicians had failed to complete — desktop swaps, computer-rename scripting, shared drive mapping, forced Windows updates, and full Pegasus CI asset record management, end to end and unsupervised.
  • Diagnosed and swapped two WOW cart CWS units: tracked the affected carts down by walking the floor and interviewing nurses directly (no ticket had the info), pulled the device IP via Bomgar remote session, then cross-referenced it against the Cisco Prime access-point map to physically locate and confirm the hardware before swap.
  • Swapped a digital status board on a pediatric heart unit, coordinating around active clinical use on the floor.
  • Located an untracked laptop offline since 2024 that no other technician could find, by leaving the desk and physically tracking it down through staff conversations — closed a stale asset gap in inventory.
  • Maintains disciplined documentation habits: updates the team tracking spreadsheet and Pegasus CI records after every swap, install, and asset move.
  • Supported full floor go-lives for two Neuro Step Down units — coordinating device deployment, network validation, and on-site technical support through cutover on each floor.
  • Collaborated cross-team with a specialized IT group to install and commission epilepsy monitoring equipment in an EMU reading room, then supported the go-live of that clinical environment.
  • Executed 4–5 additional backfill moves with associated go-lives, providing extended on-site support through each transition and adapting to last-minute scope changes in a live clinical environment.
  • Provisioned and deployed 100+ clinical workstations and WOW (Workstation on Wheels) carts across multiple floors — managed full device lifecycle from imaging through floor-ready deployment.
  • Engineered and pushed floor-specific MDM configuration profiles via Microsoft Intune, tailoring policies to each unit's clinical workflow requirements.
  • Built and deployed specialty Intune profiles for charge nurse iPhones requiring cellular connectivity — distinct APN configuration and policy enforcement from standard Wi-Fi-only device profiles.
  • Provisioned 32+ iOS devices via Intune and Apple Business Manager (ABM) including Radiology-specific configurations and charge nurse cellular profiles.
  • Deployed and troubleshot VMware Horizon VDI sessions across clinical workstations; managed asset records in Pegasus CI (CMDB) and tracked work through ServiceNow.
  • Authored SOP-ITS-001 — a formal iOS MDM provisioning runbook; became the de-facto institutional knowledge source for MDM workflows after senior technician departure.
  • Used PowerShell to locate IP addresses on restricted "Hugs machines" and documented layered security controls (GPO + Intune compliance) that correctly prevented privilege escalation — submitted as a configuration security analysis.
  • Applied HIPAA-aware device handling and PHI protocols throughout all field work in a regulated healthcare environment.
02
2024 – Present
Middle Tennessee
Founder & Security Consultant
Dark Fire Security
darkfiresecurity.com · Cybersecurity Consulting · SMB & Trades Focus
  • Founded cybersecurity consultancy serving small businesses, tradespeople, and farms across Middle Tennessee — built brand, website, and full service offering end to end.
  • Shipped Wave 1 Assessment Toolkit: five PowerShell WPF GUI tools (Password Audit Scanner, WiFi Security Checker, USB Device History Viewer, Open Ports Snapshot, Phishing Email Header Analyzer) — USB-portable for on-site SMB assessments.
  • Built and deployed PhishGuard (live: phishguard-bay.vercel.app), an interactive phishing simulation trainer with active hunt-the-tells mechanic, Gauntlet mode, and cross-session mastery tracking.
  • Developed and deployed: QR Code Toolkit, EXIF Metadata Tool (ExifTool GUI Pro), Steganography Detector, DarkChef (CyberChef-style encoder/decoder), SUBFIND (passive DNS enumerator), and Small Business Cyber Risk Report intake tool.
  • Published original research: Zero-Trust Proximity Protocol (ZTPP) — RFC-style spec addressing LAN discovery exposure with whitepaper and interactive demo.
  • Packaged the "Business Security Checkup" as a tiered service offering ($299 / $899 / $149/mo) using a trades-inspection analogy for non-technical clients.
  • Built and deployed client websites for: Wade King Construction, Sunshine Electric LLC, Beyond Drain Solutions, Defiant Machine Works, A1 Pawn Shop (analytics dashboard), tape2dvdonline.com.
03
2023 – Present
Ashland City, TN
Owner / Operator
Double C Solutions, LLC
Small Business IT · Web Development · Client Services
  • Built and deployed professional websites for local tradespeople and small businesses across Middle Tennessee using a Claude → GitHub → Vercel pipeline.
  • Managed scheduling, invoicing, client communication, and service delivery alongside full-time employment.
04
2024 – Present
Ashland City, TN
IT Technician (Contract)
A1 Pawn Shop
Break-Fix · Retail IT · Data Management
  • Diagnosed and repaired laptops/desktops with boot failures, OS corruption, and hardware faults.
  • Executed secure data destruction using ShredOS with verification certificates and chain-of-custody documentation.
  • Built a custom analytics dashboard for pawnshop inventory and sales data visualization.
05
Jul 2021 – 2023
Nashville, TN
Feeder Operator / CDL Driver
UPS
CDL Class A · Commercial Logistics
  • Operated commercial vehicles in a high-pressure logistics environment with a strong safety record.
  • Coordinated with dispatch to meet strict deadlines in fast-paced hub operations.

Shipped and live

Every card below is a real URL you can click right now. No mockups, no "coming soon" — built and deployed.

Personal Brand · Live
🔥
Dark Fire Security
Full cybersecurity consulting site — branded tool pages, contact form, ebook download, service tiers, and links to all deployed tools. Designed, built, and maintained personally.
HTML/CSS/JSFormspreeGitHub Pages
darkfiresecurity.com
Personal Portfolio · Live
👤
chancecummings.com
This site — full resume/portfolio with terminal aesthetic, dark/light mode, cert tracking, project showcase, and contact. Built and iterated personally.
HTML/CSS/JSVercelCustom Design
chancecummings.com
Security Tool · Live
🕵️
DARKFIRE PENTEST
Mobile-first penetration testing toolkit for ethical hackers, red teamers, and security consultants. Features recon modules, web assessment tools, forensic analysis, session tracking, and exportable reports. Auth-gated, full-stack app on base44.
Base44Full-StackAuthReports
dark-fire-field.base44.app
OSINT Tool · Live
🔍
WHOISVAULT
Domain · IP · ASN · Geolocation intelligence tool. Pulls WHOIS registration data, resolves IPs, queries ASN/network range, and maps geolocation coordinates. Three live APIs, four modules, JSON/TXT export. Part of the Dark Fire Intelligence Suite.
OSINTRDAPip-apiVercel
who-is-vault.vercel.app
Security Tool · Live
🎯
HEADHUNTER
HTTP Security Header Intelligence Analyzer. Runs 15 automated checks against any public URL, calculates a threat score and security grade, surfaces missing headers and misconfigurations, and exports a full findings report. All analysis runs locally in-browser.
Header Analysis15 ChecksVercelNo Backend
headhunter-beige.vercel.app
Security Awareness · Live
🎣
PhishGuard
Interactive phishing simulation trainer with a "hunt-the-tells" mechanic. 12+ scenarios across email, SMS, QR quishing, calendar-invite, and vishing. Gauntlet mode, cross-session mastery tracking, and per-element feedback on reveal.
Vanilla JSVercelNo Dependencies
phishguard-bay.vercel.app
DFIR Tool · Live
🍳
DarkChef
CyberChef-style data transformation toolkit for encoding, decoding, hashing, and IR-style data manipulation workflows. Built for SOC and DFIR use cases — runs entirely in the browser.
DFIRSOCCloud Run
Open DarkChef
Consulting Tool · Live
📋
Small Business Risk Report
Client intake and risk scoring flow that generates a structured security posture report for small businesses. Designed for non-technical stakeholders — plain-English findings with actionable recommendations.
ConsultingRisk ScoringCloud Run
Open Tool

darkfiresecurity.com →

Security tools I've shipped

Live platforms, browser-based utilities, and PowerShell tooling — all built under the Dark Fire Security brand for real defensive use.

PhishGuard
LIVE
Interactive phishing simulation trainer with an active "hunt-the-tells" mechanic. 12+ scenarios across email, SMS, QR quishing, calendar-invite, and vishing. Gauntlet mode, cross-session mastery tracking, and per-element feedback. Built in vanilla HTML/JS, deployed to Vercel.
Security AwarenessTrainingVercel
phishguard-bay.vercel.app →
QR Code Toolkit
LIVE
Self-contained browser tool for generating and scanning QR codes. Supports Text/URL, Wi-Fi (SSID/password with special-char escaping), and vCard payloads. Live camera scanning and image upload. Zero dependencies, single HTML file.
Browser ToolNo DependenciesDark Fire
View on darkfiresecurity.com →
ExifTool GUI Pro
LIVE
Full EXIF read/write/strip for JPEG files including GPS coordinate mapping via Leaflet/OpenStreetMap. Custom JPEG segment-level stripper also removes XMP, IPTC, and COM segments. Deployed on Google Cloud Run as a Dark Fire showcase/lead-gen asset, plus a Python desktop GUI (piexif + customtkinter).
DFIRPrivacyCloud Run
View on darkfiresecurity.com →
Image Steganography Tool
LIVE
Dependency-free browser tool using Canvas API and WebCrypto. Embeds/extracts messages via LSB encoding across R/G/B channels with optional AES-256-GCM encryption (PBKDF2). 2-byte magic header prevents false positives. Zero external libraries.
CryptographyBrowserCanvas API
View on darkfiresecurity.com →
DarkChef
LIVE
CyberChef-style browser-based data transformation toolkit for encoding, decoding, hashing, and IR-style data manipulation workflows. Built for SOC and DFIR use cases.
DFIRData TransformSOC
Open DarkChef →
Small Business Risk Report
LIVE
Client intake and risk scoring flow that outputs a structured security posture report for small businesses. Designed for non-technical stakeholders — plain-English findings, no jargon.
ConsultingRisk AssessmentSMB
Open Tool →
Secure File Shredder
DESKTOP
Python/customtkinter desktop GUI using multi-pass overwrite (Quick / DoD 3-pass / 7-pass / Gutmann 35-pass), fsync after each pass, random filename obscuring before deletion, recursive folder support, and a SHRED confirmation dialog.
PythonDesktopData Destruction
View on GitHub →
Wave 1 Assessment Toolkit
POWERSHELL
Five PowerShell WPF GUI tools in a USB-portable suite: Password Audit Scanner · WiFi Security Checker · USB Device History Viewer · Open Ports Snapshot · Phishing Email Header Analyzer. Runs from a USB drive during on-site SMB assessments. Plain-English output designed for non-technical clients.
PowerShell WPFUSB-PortableSMB Assessments
View on GitHub →
SUBFIND
LIVE
Passive DNS subdomain enumerator — discovers subdomains without active scanning, useful for reconnaissance and attack surface mapping during security assessments.
ReconDNSOSINT
View on darkfiresecurity.com →
Zero-Trust Proximity Protocol
RESEARCH
Original security research addressing LAN discovery vulnerabilities. Packaged as an RFC-style specification, SMB-accessible whitepaper, and interactive demo. Published to GitHub and darkfiresecurity.com as a portfolio anchor.
ResearchZero TrustRFC-Style
Read Research →
FIELDCRAFT SOC Platform
LIVE
SOC analyst study platform with spaced-repetition flashcards (53 cards), 14 triage scenarios, and MITRE ATT&CK-mapped lab exercises covering reconnaissance, exploitation, post-exploitation, and reporting.
SOC TrainingSpaced RepetitionMITRE ATT&CK
View on darkfiresecurity.com →
PyForge AI Sandbox
LIVE
Cloud-hosted Python execution environment for safe scripting labs, security automation prototyping, and quick experiments. Deployed on Google Cloud Run.
PythonCloud RunAutomation
Open Sandbox →

Faith · Technology · Protection

Cybersecurity consulting for small businesses, farms, and tradespeople in Middle Tennessee — real security without enterprise-sized budgets. The "Business Security Checkup" brings a trades-inspection analogy that clients already understand and trust.

🛡️
Business Security Checkup — $299 / $899 / $149mo
Tiered offering: The Checkup (1 machine + network + report card), The Lockdown (5 machines + on-site remediation), The Watch (quarterly re-checks + priority access).
🎣
Phishing Simulations & Awareness Training
PhishGuard-powered email triage training and awareness campaigns tailored to non-technical staff.
📋
Risk Assessments & Policy Guidance
HIPAA awareness, access controls, and security documentation for SMBs that need to look credible to clients and insurers.
Visit darkfiresecurity.com Free eBook
12+
Tools & Apps Shipped
6+
Client Sites Deployed
A+
CompTIA Certified
Net+
Network+ Certified
100+
VUMC Endpoints Deployed
7+
Hospital Go-Lives

Stack & tools

Hands-on proficiency earned in the field, the lab, and client engagements.

Healthcare IT / MDM
Microsoft IntuneApple Business Manager VMware Horizon VDIiOS Provisioning at Scale Floor-Specific Config ProfilesAPN Configuration Pegasus CI (CMDB)ServiceNow WOW Cart DeploymentHIPAA Compliance Bomgar Remote SupportCisco Prime AP Mapping 32-Port KVM/PXE ImagingWinPE / WIM Multi-Site Field Deployment Specialty Clinical Software Install (Philips Holter)
Networking
TCP/IPDNS / DHCP VPN / WireGuardNmap / Recon OpenWrtGL.iNet WiFi 6 Tailscale MeshAdGuard Home Switch Swaps / Port Remapping
Security
IR FundamentalsPhishing Simulation MITRE ATT&CKSecure Data Destruction Risk AssessmentZero Trust OSINT / ReconEXIF / Metadata Forensics Steganography
Systems & Scripting
Windows 10/11Linux (Ubuntu/Debian) Active DirectoryPowerShell (WPF GUIs) BashVMware Docker / PortainerKali Linux
Web & Dev
HTML / CSS / JSReact / Next.js PythonVercel Deploy GitHub PagesGoogle Cloud Run Canvas API / WebCrypto
Home Lab
Dell Optiplex ClusterJetson Orin Nano Super Ollama / Open WebUICoolify ProtonVPN / WireGuardDell Precision 5550 Lenovo Yoga (Kali)

Credentials

Active certifications and what's in the pipeline.

🏅
CompTIA A+
Valid 2024–2027
ACTIVE
🌐
CompTIA Network+
Passed March 2025 · Active
ACTIVE
🔐
CompTIA Security+ SY0-701
Actively studying · ~80% quiz avg
IN PROGRESS
🎓
Google IT Support Pro
2024 · Tech Support · Sys Admin · Networking
ACTIVE
🚛
CDL Class A
Commercial Driver's License
ACTIVE
🎓
B.S. Cybersecurity
Western Governors University · ~50% complete
IN PROGRESS

Let's work
together.

Open to IT roles, cybersecurity opportunities, SOC analyst positions, and consulting engagements in Nashville / Middle Tennessee — or remote with a strong security mission.

AVAILABLE FOR OPPORTUNITIES
Actively seeking my next role

Looking for SOC analyst, cybersecurity, or senior IT roles in Nashville/Middle Tennessee — or remote positions with a strong security mission.

LocationNashville, TN
Current RoleIT Field Tech (CTG) · VUMC Refresh Team
Go-LivesNeuro SD x2 · EMU · 4–5 Backfills
CertsA+ · Network+
In ProgressSecurity+ SY0-701 · WGU B.S.
Tools Shipped12+ security tools / platforms
Send Interview Request