Highly accomplished and results-oriented IT and Cybersecurity leader with over 10 years of progressive experience, specializing in infrastructure management, cybersecurity governance, and incident response.
Proven ability to lead enterprise-wide technology initiatives, significantly reduce security risks, and enhance end-user awareness. Expertise in implementing and managing security frameworks, deploying robust endpoint protection solutions, and optimizing IT processes. Adept at building high-performing teams, fostering a strong security culture, and driving continuous improvement.
Security Tools
Cloud Security
Frameworks & Compliance
Incident Response
- Served as Incident Commander during security incidents, leading technical response efforts, performing analysis, and developing comprehensive Cyber Incident Response Playbooks.
- Monitored and investigated cybersecurity alerts using enterprise security tools, providing critical updates on security incidents and events to the CISO.
- Managed Identity and Access Management (IAM) across platforms, including Okta and Office 365, to ensure secure access to on-premises and cloud resources.
- Reduced end-user susceptibility to phishing from 50.9% to 3.6% through targeted security awareness training and hands-on management of the KnowBe4 platform.
- Collaborated with a third-party SOC to manage bi-annual Red and Purple Team penetration tests and continuous security monitoring.
- Developed and implemented an internal Incident Response plan based on the NIST Cybersecurity Framework to streamline threat containment and analysis.
- Served as the technical point of contact for monitoring and analyzing alerts from cloud security applications, including Okta SSO, AWS, Salesforce, Splunk Cloud, and Carbon Black Defense.
- Successfully deployed and configured Endpoint Detection and Response (EDR) software to over 700 endpoints and 20+ servers.
- Managed the Proofpoint email firewall, fine-tuning policies and responding to email-based threats.
- Deployed Privileged Access Management (PAM) solutions to harden security for critical systems.
- Contributed to the development and implementation of an annual Cybersecurity Awareness program.
- Created and managed user accounts and permissions in Active Directory and Office 365.
- Provided lead support for C-Suite and Senior Executives, ensuring timely resolution of complex IT issues.
- Managed Service Desk requests with an 80% closure rate within 48 hours.
CISSP
ISC2
Certified Information Systems Security Professional
SSCP
ISC2
Systems Security Certified Practitioner
CC
ISC2
Certified in Cybersecurity
Security+
CompTIA
CompTIA Security+
A+
CompTIA
CompTIA A+
ITIL Foundations
AXELOS
IT Infrastructure Library Foundations
Certified Meraki Network Operator
Cisco Meraki
Certified Meraki Network Operator — Issued Sep 2018
NSA Day of Cyber
National Security Agency
NSA Day of Cyber — Issued Jun 2017
210W-02 ICS Cybersecurity
US-CERT
Cyber Security for Industrial Control Systems — Influence of Common IT Components on ICS
210W-01 ICS Cybersecurity
US-CERT
Cyber Security for Industrial Control Systems — Differences in Deployment of ICS
100W OPSEC
US-CERT
Operational Security (OPSEC) for Control Systems
Associate of Applied Science (AAS)
ITT Technical Institute
Home Lab Environment
Personal cybersecurity lab for testing security tools, threat detection, and incident response workflows.
CTF Writeups
Capture The Flag challenge walkthroughs showcasing offensive and defensive security techniques.
IR Playbook Templates
Open-source incident response playbook templates based on NIST framework for mid-size organizations.
Let's connect.
I'm open to discussing cybersecurity leadership roles, collaborative opportunities, or just exchanging ideas about the evolving threat landscape.
