Peter Lo Piccolo

Peter Lo Piccolo

Cybersecurity | IT

I'm a junior at Penn State University pursuing a degree in Cybersecurity Analytics and Operations, with a focus on Blue Team operations and cloud security. Last summer, I worked with Zebra Technologies at their Holtsville, NY location as a Cybersecurity Program Management Intern. This upcoming summer, I'll be joining Teachers Federal Credit Union as an AI Cybersecurity Analyst Intern. On campus, I'm involved with the Competitive Cyber Security Organization and work at the Penn State IT desk as a Student Support Specialist. Previously, I served as a Learning Assistant for the College of Information Sciences and Technology, supporting SRA 111 (Introduction to Security Risk Analysis) and IST 242 (Intermediate Object-Oriented Application Development).

Experience

AI Cybersecurity Analyst Intern
Teachers Federal Credit Union
Summer 2026 (Upcoming)
Incoming intern focused on leveraging AI tools for cybersecurity analysis and threat detection.
Cybersecurity Program Management Intern
Zebra Technologies - Holtsville, NY
Summer 2025
Supported cybersecurity program initiatives including a project focused on reducing false positive rates in security alerting systems.
Student Support Specialist
Penn State IT Desk
Current
Provide technical support and troubleshooting assistance to the Penn State community.
Learning Assistant
Penn State College of IST
Previous
Assisted instruction for SRA 111 (Introduction to Security Risk Analysis) and IST 242 (Intermediate Object-Oriented Application Development).
Competitive Cyber Security Organization
Penn State
Current Member
Active member participating in cybersecurity competitions and skill-building events.

Projects

False Positives Reduction Project

Zebra Technologies

Analyzed and worked on reducing false positive rates in security alerting systems during my internship at Zebra Technologies. Collaborated with the security operations team to identify tuning opportunities and improve alert quality. Full details coming soon.

SIEM Alert Tuning Security Operations

Coming Soon

Future Project

More projects will be added as I continue building my cybersecurity portfolio.

TBD

Coming Soon

Future Project

Stay tuned for additional projects and accomplishments.

TBD

Articles & Insights

Security padlock on circuit board
April 2026

Why Every Organization Needs a Strong Blue Team

Blue teams don't get enough credit. Here's why defensive security deserves more attention.

Read More →
Global network and cloud infrastructure
April 2026

Cloud Security: What Most People Get Wrong

Moving to the cloud doesn't mean your data is automatically safe. Here's what to watch out for.

Read More →
AI and machine learning visualization
April 2026

AI in Cybersecurity: What's Real and What's Not

AI is everywhere in security marketing. But how much of it actually works?

Read More →
← Back to Articles

Why Every Organization Needs a Strong Blue Team

What Is a Blue Team?

If you've heard of red teams - the people who hack into systems to test security - blue teams are the other side of that coin. They're the defenders.

Blue team members monitor networks, investigate alerts, and respond when something goes wrong. Think of them as the security guards of the digital world.

I've been drawn to blue team work since I started studying cybersecurity. There's something satisfying about catching a threat before it becomes a headline.

Security padlock on circuit board representing digital defense
Blue teams are the backbone of any organization's security. Image: Unsplash · Framework reference: CISA

Why It Matters Right Now

Cyberattacks aren't slowing down. According to CISA, breaches are getting more expensive and more frequent every year.

Ransomware alone has hit hospitals, schools, and businesses of all sizes. Having a dedicated defensive team isn't optional anymore, it's a necessity.

A lot of people in cybersecurity gravitate toward offensive work because it sounds cooler. But without strong defenders, none of that testing actually matters.

It's Not Just Staring at Dashboards

One common misconception is that blue team work is boring. That's really not the case at all.

Security threats are always evolving, so analysts need to evolve their strategies and stay up to date with new technology.

Modern defenders actively hunt for threats, write detection rules, and investigate incidents. It's problem-solving under pressure, and it takes real skill.

If you're curious about how organizations structure their defenses, the NIST Cybersecurity Framework is a solid place to start.

These frameworks are standard industry practices and are used widely by many companies.

← Back to Articles

Cloud Security: What Most People Get Wrong

The Cloud Isn't Automatically Secure

A lot of companies assume that once they move to AWS, Azure, or Google Cloud, security is handled for them. That's not how it works.

Cloud providers secure the infrastructure itself - the physical servers, the networking layer, and so on. But everything you put on top of that? That's on you.

This concept is called the shared responsibility model, and misunderstanding it is one of the most common causes of cloud breaches.

Global network representing cloud infrastructure
Cloud security is a shared responsibility. Image: Unsplash · Framework reference: Cloud Security Alliance

Misconfigurations Are the Biggest Problem

You'd be surprised how many breaches happen because someone left a storage bucket public or gave a user too many permissions.

These aren't sophisticated attacks. They're simple mistakes that expose sensitive data to anyone who knows where to look.

Tools like AWS Config can help catch these issues automatically. Regular audits go a long way too.

What You Can Do About It

If you're working with cloud systems, start by understanding exactly what you're responsible for securing. Don't assume the provider has it covered.

Use infrastructure-as-code so your configurations are trackable and reviewable. Set up monitoring and alerts for any changes to critical settings.

Cloud security doesn't have to be overwhelming. It just takes being intentional about it from the start.

← Back to Articles

AI in Cybersecurity: What's Real and What's Not

AI Is Everywhere in Security Marketing

It feels like every cybersecurity product now claims to be "AI-powered." But how much of that is actually meaningful?

The truth is, some of it is real and genuinely useful. AI can process massive amounts of data and spot patterns that would take a human analyst hours to find.

The IBM Cost of a Data Breach Report found that organizations using AI in their security operations detected breaches significantly faster.

AI and machine learning visualization
AI is a tool, not a replacement for human judgment. Image: Unsplash · Data reference: IBM Security

Where AI Actually Helps

AI is great at things like anomaly detection - flagging unusual network activity that might indicate a breach. It's also useful for sorting through thousands of alerts.

On the flip side, attackers are using AI too. They're automating phishing campaigns and generating malware that's harder to detect with traditional tools.

So it's become a bit of an arms race, with both sides using the same technology.

It's a Tool, Not a Replacement

The biggest takeaway is that AI works best when it supports human analysts, not when it replaces them. You still need people making the judgment calls.

This is actually something I'll be exploring firsthand this summer as an AI Cybersecurity Analyst Intern at Teachers Federal Credit Union.

I'm looking forward to seeing how AI is applied in a real-world security environment - and figuring out where the hype ends and the value begins.

Let's Connect

I'm always happy to talk cybersecurity, collaborate on projects, or hear about new opportunities. Feel free to reach out.