About
The practice is principal-led. You work with me, and I assemble a bench per engagement when the scope needs one.
Background
Twenty-five years in cybersecurity, spanning hands-on engineering and executive advisory. Most recently senior director for security and resilience risk advisory at Kyndryl, where I led consulting and reference architecture for the U.S. banking sector's Sheltered Harbor program and managed consultants globally on high-profile accounts. Before that, nineteen years at IBM, finishing as an associate partner and as the company's cyber resilience leader.
The engineering half is not historical. I have built security programs from nothing, run application security reviews and penetration testing, architected a compliance product used by 90,000 people, and reviewed patents for a security business unit. The executive half came later: more than $30M in contracted security services scope, contract negotiation, and board and audit committee reporting.
Credentials
CISSP since 2001. Executive MBA, University of Southern California. B.S. Engineering, Rensselaer Polytechnic Institute, Rensselaer Medal. Open Group Master Certified Architect. NSA IAM. Negotiation Mastery, Harvard.
Patents
Four issued U.S. cybersecurity patents.
Coordinated network security management
US 9,088,543 B2
Continuous authentication via key touch cadence and context
US 9,392,460 B1
Anti-fraud electronic property access system via smartphones
US 9,741,186 B1
Managing software patch installations
US 2013/0340074 A1
Speaking and writing
Keynotes and panels including the Gartner CISO Executive Summit in San Francisco, Financial Executives International, the Apex CIO National Summit, ISC2 San Diego, NASTD and VIPSS Vancouver. Published in Security Intelligence and the Disaster Recovery Journal.
Current writing is published on LinkedIn.
