I am a Cyber Operations-focused Service and Culture Strategist with technical chops. Sixteen-plus years across security operations architecture, GRC, AI-first practice development, CISO/CXO support, and business-development leadership for cybersecurity practices.

My work with AI
  • I lead, unite, and redeploy exceptional security teams at scale: local fusion centers through global organizations.
  • I provide CISO/CXO support and trusted-advisor partnership to Fortune 500 executive teams, turning cyber strategy into business risk-aligned roadmaps.
  • My transformative spin on SAFe Agile, GTD, NIST 2.0, and rugged DevSecOps - called The Framework - has been utilized to right-size, rework, and refresh global cybersecurity deployments since 2015.
  • I architect AI-first security operations: including agentic-AI orchestration, data hygiene, RAG stacks, and aligned with responsible-AI governance frameworks.
  • I drive business development and GTM strategy for AI & cyber practices.
  • I am well-versed in threat and compliance frameworks (NIST CSF 2.0, NIST 800-53/171, ISO 27001/27701, PCI DSS, SOC 2 Type II, CIRCIA/CISA, SEC cyber rules) and in effective hiring, mentorship, and team development.
  • I can gamify, integrate, and automate cyber services for on-prem, remote, and vendor teams.

A summary of my professional experience

I have 16 years of Security Operations Center creation and leadership experience, including 11 years as a Service lead and culture-transformation agent for Enterprise SOC and Cyber Detection & Incident Response teams.

I have overseen multiple successful cloud transitions - including Google Cloud and Microsoft Azure - and I've served as lead for ZeroTrust, Insider Threat, and Vulnerability/Remediation rollouts, and engineering-focused SOC teams in some of the world's largest SIEM, SOAR, and Fusion SOC environments.

My approach grows managers and leaders. I've provided 18 years of cyber-focused Project management, Agile team-building, and Relationship Management experience for high-profile clients, federal entities, and in Fortune 500 environments.

My clients and bosses have relied on me for 12 years of leadership, whether forming or rehabilitating powerhouse teams throughout SecOps domains including:

  • Threat Intel & Detection
  • Triage & Escalation
  • Digital Forensics & Incident Response
  • Log Analysis & Normalization
  • Platform Engineering
  • Application & Network Security
  • Insider Threat, Insider Services
  • GRC, Cyber Audit Response, Cyber Analytics

I've helped to establish multiple global Fusion Centers. My teams excel in both action and ownership.

In a previous life, I spent 8 years as an IT consultant for SMB, Enterprise, FinTech, and beltway clientele. I learned how to build team resiliency and powerhouse roadmaps in chaotic, high-growth environments. I formed a vSOC for several of them in 2015.

I've put together coursework on threat frameworks like Mitre Att&Ck and CKC, as well as STRIDE.

I have taken lead on gap and audit assessments for PCI DSS, NIST 800-53, ISO 27001, and many others.

I'm comfortable in the briefing room, or serving as incident commander. I know how to clear the weeds. I most enjoy building confident pilots while running the airline.

I am adept at bringing out the best in team members of all experience levels.