Dan Ford

Dan Ford Email and Phone Number

Director Security Architecture and Engineering @ Midcontinent Independent System Operator (MISO)
Carmel, IN, US
Dan Ford's Location
Carmel, Indiana, United States, United States
Dan Ford's Contact Details
About Dan Ford

Dan studied Electrical and Computer Engineering Technology at Purdue University where he focused on microcontrollers and low-level programming of operating systems. Dan then obtained his Master of Business Administration from Western Governors University. He has also obtained several security certifications like CISSP, GCIH, GCIA, GCPN, GMOB, and GCIP. Dan began his career in cyber security by being a Computer Engineering intern for Rook Security, a start-up focused on providing MSSP/MDR services to a wide range of businesses. While at Rook, Dan built many devices to help with red team exercises like a long-range RFID cloner that could be used to clone security badges to show weaknesses in badge reader technologies and how to protect against these types of attacks. From there, Dan became a full-time Digital Forensics Analyst and Security Engineer for Rook. While working in this position, Dan was able to touch most aspects of security and helped companies with a wide range of services like designing/implementing security technologies, performing incident response activities from different types of attacks, performing forensics on multiple types of devices to get to root cause analysis and present findings in court, review and advise on security compliance (HIPPA, PCI, NIST, and ISO), performing penetration and vulnerability testing in physical/cyber areas, and performing SOC analyst tickets looking for active threats that could be in the client's environments.After a successful stint in the consulting field, Dan took a position at MISO as a Senior Information Security Engineer and is currently Director at MISO.

Dan Ford's Current Company Details
Midcontinent Independent System Operator (MISO)

Midcontinent Independent System Operator (Miso)

View
Director Security Architecture and Engineering
Carmel, IN, US
Website:
misoenergy.org
Employees:
1310
Dan Ford Work Experience Details
  • Midcontinent Independent System Operator (Miso)
    Director Security Architecture And Engineering
    Midcontinent Independent System Operator (Miso)
    Carmel, In, Us
  • Midcontinent Independent System Operator (Miso)
    Director Security Operations & Intelligence
    Midcontinent Independent System Operator (Miso) Jul 2024 - Present
    Carmel, In, Us
    Lead and manage the Cyber Security Operations, Threat Hunting & Intelligence, and Vulnerability Management teams, ensuring seamless coordination and effective threat mitigation.Oversee the development and implementation of advanced threat detection and response strategies, enhancing the organization's security posture.Drive the integration of threat intelligence into security operations, providing actionable insights and proactive defense mechanisms against emerging threats.Spearhead vulnerability management initiatives, prioritizing remediation efforts to mitigate risks and ensure compliance with industry standards.Cultivate a culture of continuous improvement and professional development within the team, fostering innovation and enhancing overall team performance.Collaborate with cross-functional stakeholders to align security strategies with business objectives, ensuring robust protection of critical assets and data.
  • Midcontinent Independent System Operator (Miso)
    Manager Information Security
    Midcontinent Independent System Operator (Miso) Oct 2023 - Jul 2024
    Carmel, In, Us
    • Oversee a dynamic team of 5 security engineers, 2 SIEM engineers, and a Compliance Analyst providing Tier 1 to Tier 3 support for security events, facilitating effective incident resolution and compliance with our requirements.• Oversaw the budget for security technologies, effectively managing resources to achieve under-budget expenditures by about 10%, enabling the reallocation of savings to support other critical business areas.• Managed 15 compliance-related requirements, guiding the team through audits to meet NERC CIP and SOC 1 regulations• Develop team members through tailored guidance, training initiatives, and strategic recruitment, enhancing overall team capabilities.• Prioritized and nurtured strong relationships with key stakeholders and business partners, aligning security strategies with business objectives.• Fostering a collaborative environment, promoted open communication within the team and with external partners, enhancing threat detection and response.• Led 3 projects to improve security visibility and posture within the company by deploying a new Endpoint Detection and Response (EDR) tool, an Encryption Key Management System (KMS) tool, and a Firewall Analysis and Risk Review tool.• Wrote and owned 4 policies and 18 plans/procedures related to security baseline, acceptable use, disaster recovery, logging standards, and various information security processes.
  • Midcontinent Independent System Operator (Miso)
    Lead, Information Security
    Midcontinent Independent System Operator (Miso) Dec 2021 - Oct 2023
    Carmel, In, Us
    • Oversee a dynamic team of 5 security engineers, a SIEM engineer, a Compliance Analyst, and 2 contractors providing Tier 1 to Tier 3 support for security events, facilitating effective incident resolution and compliance with our requirements.• Conduct daily reviews of the security technology stack, ensuring optimal performance and identifying opportunities for enhancement.• Managed 15 compliance-related requirements, guiding the team through audits to meet NERC CIP and SOC 1 regulations• Develop team members through tailored guidance, training initiatives, and strategic recruitment, enhancing overall team capabilities.• Prioritized and nurtured strong relationships with key stakeholders and business partners, aligning security strategies with business objectives.• Fostering a collaborative environment, promoted open communication within the team and with external partners, enhancing threat detection and response.• Deployed a new VPN client with Security Access Service Edge (SASE) capabilities which increased visibility by 40% through an always-on VPN and conditional access.• Deployed a new phishing mitigation tool with end-user feedback which freed up 10 hours a week from SOC engineers.• Enhanced capabilities with Security Orchestration with SIEM integration which allowed automated alert enrichment and decreased time to remediate alerts by roughly 15%.• Wrote and owned 4 policies and 18 plans/procedures related to security baseline, acceptable use, disaster recovery, logging standards, and various information security processes.Key Achievements:• Achieved no-findings results in recent NERC CIP audits, demonstrating a steadfast commitment to compliance and regulatory adherence.• Successfully designed, deployed, and managed 10 advanced security technologies that significantly heightened visibility across the organization, resulting in a fortified and more secure operational environment.
  • Midcontinent Independent System Operator (Miso)
    Senior Information Security Engineer
    Midcontinent Independent System Operator (Miso) Apr 2018 - Dec 2021
    Carmel, In, Us
    As a Senior Information Security Engineer, I have implemented and managed multiple security technologies to guarantee the security and reliability of the electrical grid. My team and I also provide alarm review and support for Tier 1 to Tier 3 cybersecurity incidents. Also, I have played a significant role in ensuring compliance with NERC CIP regulations by assisting the team with various compliance-related obligations. During a recent audit of our requirements, I was part of the team that successfully achieved a no-findings result.Furthermore, as a Senior Information Security Engineer, I have taken on a mentorship role to guide and support individuals new to the field of cybersecurity on my team. Through mentoring, I have been able to share my knowledge and expertise, develop their skills and help them grow in their roles.Security Technologies• System Information and Event Management (SIEM)• Intrusion Prevention Systems (IPS)• Anti-virus (AV) and Extended Detection & Response (EDR)• Phishing Protection & Response• Vulnerability & Port Scanner• Firewall Risk Analysis Tool• DDoS Mitigation• Phishing Awareness & Training• Security Orchestration, Automation, and Response (SOAR)• Certificate Management• SSL Decryption and Inspection
  • Rook Security
    Senior Digital Forensic Analyst
    Rook Security May 2017 - Apr 2018
    As a Senior Digital Forensic Analyst, I have assisted clients with a wide range of services to help improve their security posture before, during, and/or after a security incident. Specifically, I primarily performed the duties of a Digital Forensic Analyst while also performing the additional services as a consultant:Incident Response• Lead crisis management in order to prioritize which actions need to be taken first and who needs to be involved• Identify process improvement opportunities and develop subsequent plans of action to resolve gaps• Act as the lead for table-top exercises, which assess the effectiveness of cyber incident response capabilities across people, processes, and technologySOC Analyst• Provide detection and response to security events and incidents • Security log management and monitoring• Intrusion detection and prevention systems operations• Vulnerability detection, assessment, and mitigation• Risk assessment• Antivirus management and operations• Create incident reports• Create incident tickets for clients• Track and follow up with client tickets• Email and call clients• Initiate scans for clients• Actively research recent vulnerabilities and exploits
  • Rook Security
    Digital Forensic Analyst/Security Engineer
    Rook Security Jun 2014 - May 2017
    As a Digital Forensic Analyst/Security Engineer, I have assisted clients with a wide range of services to help improve their security posture before, during, and/or after a security incident. I primarily performed the duties of a Digital Forensic Analyst while also performing the additional services as a consultant:Incident Response• 24x7 call support where a client can get professional help in a timely manner• Perform hands-on incident triage to help quickly identify and contain an incident• Created a python script that takes a list of IP addresses and gives a risk rating to each based on several open-source intelligenceDigital Forensics• Assist clients, either remotely or in person, to correctly follow sound forensic methodology when taking a digital image of a host under investigation• Perform a complete digital forensics investigation to determine the root cause and the depth of an incident• Maintain chain of custodyLitigation Support• Help litigation counsel put together an in-depth report and identify evidence needed in a legal proceeding• Testify as an expert witnessSecurity Engineering• Implement security tools (such as Suricata) to correctly identify and/or prevent security issues• Review security tools that are in place and recommend any changes that need to be made to create a more secure environment
  • Rook Security
    Computer Engineering Intern
    Rook Security May 2012 - Jun 2014
    Designed, built, and implemented several devices. Projects listed below.Penetration Testing Projects:--Lead a project to build a flying hacking device--Designed and built a long-range RFID badge cloning device--Built a drop box pen testing device that allows simple scans to run remotelyPhysical Security Projects:--Designed Arduinos that send log information to the server when an event occurs--Designed and implemented electronic door access control system--Setup main door IP camera systemElectrical Projects:--Designed and implemented an electrical wiring plan for Rook's Security Operation Center (SOC) located within a bank vault

Dan Ford Skills

Information Security Linux Python Network Security Security C Java Microsoft Excel Arduino Computer Security Computer Hardware Project Management Operating Systems Emerging Technologies Html Computer Architecture Shell Scripting Security Incident Response Intrusion Detection Mobile Security Penetration Testing Accessdata's Ftk Digital Forensics Networking Windows Os X Microsoft Office It Security Operations Log Analysis Netflow Ips

Dan Ford Education Details

  • Western Governors University
    Western Governors University
    Master Of Business Administration - Mba
  • Purdue University
    Purdue University
    Electrical And Computer Engineering Technology

Frequently Asked Questions about Dan Ford

What company does Dan Ford work for?

Dan Ford works for Midcontinent Independent System Operator (Miso)

What is Dan Ford's role at the current company?

Dan Ford's current role is Director Security Architecture and Engineering.

What is Dan Ford's email address?

Dan Ford's email address is da****@****ity.com

What schools did Dan Ford attend?

Dan Ford attended Western Governors University, Purdue University.

What skills is Dan Ford known for?

Dan Ford has skills like Information Security, Linux, Python, Network Security, Security, C, Java, Microsoft Excel, Arduino, Computer Security, Computer Hardware, Project Management.

Who are Dan Ford's colleagues?

Dan Ford's colleagues are Colin Smith, Tona Edington, Sean Belieu, Jeremy Mcdaniel, Csep, Cua, Shaunta Raymond, Brendan Lesniak, Christopher Embry.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.