Head Of It Security Intelligence
CurrentSr. Director of Security Engineering & Intelligence: Vulnerability Management, Penetration Management, Open Source Compliance, Application Resiliency & Reliability, as well as Life Cycle Management for software and infrastructure.Designing and Spearheading the Development of Security solutions to optimizing and automate end-to-end workflow in the identification of security vulnerabilities & Application Security risks as well as the remediation of vulnerabilities (attribution, triaging, scoring, actioning, exceptions, false-positives, and real-time dashboard analytics to assess security risk posture. Capabilities including real-time positioning/assignment of vulnerabilities into Agile work queues. Results significantly exceed industry averages at 98% closure rates and 200% improvement in MTTRAuthoring new methodologies to strengthen overall resiliency governance of services and applications strengthening availability and speed of recovery (RTO/RPO). Providing real-time insights to application resiliency scores to allow for recognition of architecture gaps and enabling risk prioritization for continuous improvement programs. Authoring and Leading Edge Shared Services to optimize the use of observability/telemetry to establish application Automated Detection and Automation Failover capabilities. Results demonstrated the ability to complete fast failover within less than 1 minute. Enhancing Infrastructure Life Cycle capabilities to simplify identification of patching/upgrades required, initiation of change management plans, and execution of patching/upgrades prior to EOL. 90%+ compliance in critical patching and upgrade management achieved quarterly.Leading teams in automation of workflow to ensure compliance of Open Source technologies including royalty/commercial requirements and open-source contributions. The overall programs have provided significant value to legal and sourcing teams as well as end-users/customers through SBOM formats.