Dan Ricci Email & Phone Number
@gormat.net
LinkedIn matched
Who is Dan Ricci? Overview
A concise factual answer block for searchers comparing this professional profile.
Dan Ricci is listed as Senior Consultant @Ampyx Cyber | Independent Consultant & CEO @Industrial Data Works LLC | Founder @ICS Advisory Project l Critical Infrastructure Cybersecurity, Vulnerability Management at Industrial Data Works LLC, based in Washington Dc-Baltimore Area, United States. AeroLeads shows a work email signal at gormat.net and a matched LinkedIn profile for Dan Ricci.
Dan Ricci previously worked as CEO/Founder, Industrial Data Works LLC at Industrial Data Works Llc and Founder of ICS Advisory Project at Ics Advisory Project. Dan Ricci holds Master Of Science (M.S.), Computer Science (Cyber Security Ops Concentration) from Lewis University.
Email format at Industrial Data Works LLC
This section adds company-level context without repeating Dan Ricci's masked contact details.
AeroLeads found 1 current-domain work email signal for Dan Ricci. Compare company email patterns before reaching out.
About Dan Ricci
With over 28 years of experience in multiple domains of Security and Cybersecurity, Dan is the founder/CEO of Industrial Data Works, providing ICS vulnerability intelligence APIs and consulting services for ICS/OT asset owners and vendors. He holds the Global Industrial Cyber Security Professional (GICSP), the Security Essentials (GSEC), CompTIA Certified Advance Security Professional (CASP+), and the Certified Ethical Hacker (CEH) certifications from the SANS Institute and EC-Council.He is also the founder of the ICS Advisory Project, an open-source initiative to help small and medium-sized ICS asset owners across the 16 critical infrastructure sectors prioritize vulnerabilities and plan mitigation for their ICS/OT environments. He created a data visualization tool that integrates vulnerability information from CISA ICS advisories and maps it to ICS vendor products, allowing asset owners to identify vulnerabilities relevant to their systems quickly. He aims to provide a free and accessible resource to secure critical infrastructure and protect the public.
Listed skills include Leadership, Cloud Computing Iaas, Nist Csf, Defense, and 26 others.
Dan Ricci's current company
Company context helps verify the profile and gives searchers a useful next step.
Dan Ricci work experience
A career timeline built from the work history available for this profile.
Ceo/Founder, Industrial Data Works Llc
Current
Founder Of Ics Advisory Project
CurrentFounded the ICS Advisory Project, an open-source project to help small and medium-sized ICS asset owners across the 16 critical infrastructure sectors prioritize vulnerabilities and plan mitigation for their ICS/OT environments.Created a data visualization tool that integrates vulnerability information from CISA ICS advisories and maps it to ICS vendor products, allowing asset owners to quickly identify vulnerabilities relevant to their systems.Created a data visualization tool that integrated MITRE ATT&CK and other open-source data for Enterprise, Mobile, and ICS and mapped it to the threat groups, associated groups, countries targets, industry sectors targeted, threat group motivation, known tactics, techniques, mitigations, software, platforms, detection techniques, Living off the Land Binaries, and MITRE D3FEND Techniques. Developed the tool in collaboration with a team of developers and subject matter experts, ensuring it is intuitive, user-friendly, and aligned with industry standards and best practices.Worked with various stakeholders, including ICS security vendors, asset owners, and government agencies, to identify data sources and ensure that the tool is meeting the community's needs.Conducted outreach and education to build awareness of the tool and its benefits, including participating in webinars with Nozomi Networks, podcast with Claroty, and recently at the S4x23 Worthy Causes Exhibit.Continuously monitored and updated the tool to reflect changes in vulnerability information and user feedback, ensuring it remains relevant and practical.Developed partnerships with other organizations in the ICS/OT cybersecurity space to expand the scope and impact of the project.Acted as a spokesperson for the project, representing it to stakeholders, policymakers, and the media and promoting its mission and impact.
Power Systems Engineer/Researcher
Principal Investigator (PI) for Cyber SHIELD (Security through Hardware Integration, Education, and Layered Defense) for the Renewable Energy sector.INL Cyber SHIELD Program is funded by the Department of Energy, and is a collaborative effort between the Wind Energy Technologies Office (WETO), Water Power Technologies Office (WPTO), and Solar Energy Technologies Office (SETO). As Cyber SHIELD PI, lead efforts on enhancing CSET for renewables, Malcolm, and assessments through engagements for utility-scale renewable owner/operators.Long Duration Energy Storage (LDES) National Consortium Tiger Team Lead for Safety and Grid Security.
Senior Information Security Officer
Develop and implement comprehensive Cybersecurity policies and procedures across IT and OT systems in accordance with NIST SP 800-171 and maintain DFARS compliance in preparation for CMMC Compliance and SPRS reporting.Oversee the security of products used in systems delivered to defense customers, including conducting security assessments and ensuring compliance with industry and government security standards.Lead the development and implementation of security awareness and training programs for employees, contractors, and vendors.Manage and mentor a team of security professionals to ensure the effective operation of security programs.Conduct risk assessments and develop risk mitigation strategies to protect the confidentiality, integrity, and availability of information and systems.Coordinate with internal and external stakeholders to ensure the timely resolution of security incidents and vulnerabilities.Work with business and technology stakeholders to align security strategies with business objectives and ensure security is integrated into the development lifecycle.Provide guidance to senior management on emerging security risks for internal security, supply chain risk, product security and best practices to address them.Stay up-to-date on evolving security threats, trends, and technologies and make recommendations for security improvements based on this knowledge.
Engagement And R&D Director
Served as SynSaber Engagement and R&D Director until dissolvement of the company.
Senior Systems Security Engineer
Design, develop, and implement security controls for Frequentis products and systems delivered to defense customers in accordance with NIST SP 800-53, NIST SP 800-82, ISA 62443, and DISA STIGs as required.Oversee the development and maintenance of Risk Management Framework (RMF) documentation, including security plans, system security controls, and vulnerability assessments.Provide guidance and support to development teams to ensure that security is integrated into the product development lifecycle.Conduct security assessments and penetration testing to identify vulnerabilities and recommend remediation strategies for products and systems.Serve as the primary security point of contact for customers during the authorization process, providing technical expertise and guidance on the security features and functions of the product or system.
Senior Cybersecurity Engineer
Assistant Assessment Team leader for Cybersecurity Risk Assessments of Industrial Control Systems (ICS)/Supervisory Control And Data Acquisition (SCADA) for Building Automation, Electric, Fire/Life Safety Systems, and Water/Wastewater Treatment systems.Leads a team of ICS Cybersecurity analysts in the in-depth of analysis of vulnerabilities affecting critical ICS and SCADA systems based on current governance program documentation, asset inventory management, control system network architecture, and analysis of vendor-specific threats for control systems software/firmware, and development of mitigative measures to improve Cybersecurity resilience.Lead Network Architect for capturing current state physical/logical OT environments and designing security reference architectures based on the Purdue Enterprise Reference Architecture (PERA) or Unified Facilities Criteria (UFC) 4-010-06 Cybersecurity of Facility-Related Control Systems to create network segmentation/segregation and minimize impact to availability of ICS/SCADA systems.
Senior Principal, Cyber Operations Planner
Advised senior management on continuous monitoring techniques for Cybersecurity operations.Advised senior management on Incident response and recovery plans in accordance with SOPs, threat and vulnerability assessment, analyze networks events detected by network monitoring systems, coordinate responses, and participate in meetings with other cyber organizations including service components, government agencies, law enforcement, etc.Provided innovative recommendations on efficiency, infrastructure, performance, Cybersecurity posture, SOPs, and general improvements to the way business is conducted.Developed reporting and provided recommendations for organization-wide improvements in Information Systems (IS), Industrial Control Systems (ICS)/Supervisory Control and Data Acquisition (SCADA) systems architecture; networking; telecommunications; automation; communications protocols; risk management; electronic analysis; software; lifecycle management; software development methodologies; and modeling and simulation. Analyzed and documented Cybersecurity operations functions including weekly status reports and in-progress reviews.Analyzed and provided reports with analysis and recommendations on security engineering, network operations, and information management solutions to support operational challenges.
Senior Cyber Security Professional
Provided clients expertise in performing Cybersecurity risk assessments to identify vulnerabilities affecting critical Industrial Control Systems(ICS)/Supervisory Control And Data Acquisition (SCADA) power systems based current governance program documentation, asset inventory management, OT network architecture, and analysis of vendor specific threats for ICS/SCADA software/firmware. Designed client OT security reference architectures based on the Purdue Enterprise Reference Architecture (PERA) and Unified Facilities Criteria (UFC) 4-010-06 Cybersecurity of Facility-Related Control Systems to create network segmentation/segregation and minimize impact to availability of ICS/SCADA systems. Provided ICS/SCADA threat analysis based on known vulnerabilities and potential exploits affecting ICS/SCADA systems and development of mitigative measures to improve these systems Cybersecurity resilience.Developed PowerShell and Bash scripts to perform automated information gathering locally on individual ICS/SCADA systems to minimize risk and impact to system process and operations.
Manager, Specialist Master
Managed a team in providing clients assistance in developing Cybersecurity risk strategies and mitigation programs for Industrial Control Systems(ICS)/Supervisory Control And Data Acquisition (SCADA) systems, and Industrial Internet of Things (IIOT) based on business priorities, risk, and desired maturity level to protect ICS/SCADA/IIOT assets. Assist Project Lead in developing a vulnerability management processes and patch management strategy for multiple automotive plant manufacturing execution systems (MES) production lines to minimize impact to production schedules, financial risk, and ensure availability through hardening of ICS and IIoT systems from Cybersecurity threats. Advised clients in developing tailored approaches to governance related to regulatory compliance/guidance under National Institute of Standards and Technology (NIST) and International Organization for Standardization (ISO), and identifying methods and tools to support Cybersecurity risk programs. Proposal and presenting experience on Request For Proposals (RFP) specifically for Cyber Risk Assessments, Managed Security Service Provider (MSSP), and Intrusion Detection System (IDS) projects for ICS/SCADA system networks.Proposal Development experience in drafting Statements of Work (SOW) to include scope of work, technical objectives/goals, specific requirements, technical planning, cost estimating for time and materials, resource allocation, timelines, and status reporting for deliverables.Assumed the role of project manager performing task central to MES intrusion detection sensor deployment project progress, including scheduling, budgeting, and accounting and resource management.Managed and executed risk engagement to develop life-cycle strategy, design, and implementation. Further provided technical and management advisory to leadership and track industry trends pertaining to Cybersecurity risk.
Cyber Warrant Officer
Subject matter expert for Navy Cyber Warfare Development Group providing technical consulting in the principles of computer science/computer engineering to research, design, develop, test, and evaluate network infrastructure and supporting hardware, software, and firmware for Cyberspace operations. Extensive knowledge and experience in operational planning, cyberspace operations and SIGINT policy as related to capability development and transition. Project management experience in developing RFP and SOW for contracted work with research laboratories and cleared defense contractors to acquire technical expertise and professional services to perform specific tasking for each level of effort and achieve project milestones on schedule.Led the gathering of Navy Cyber technical requirements and the gap analysis for the Joint Initial Capability Document (ICD) and Capability Development Document (CDD) for the Office of the Secretary of Defense, U.S. Cyber Command, Air Force Space Command, and Army Cyber Command supporting two Acquisition Category I (ACAT I) programs.
Information Warfare Officer
Tactical Information Warfare Officer for a Surface Combatant managing information operations (IO) personnel, shipboard signals exploitation space equipment, and training programs. Principal adviser to the commanding officer for SIGINT and IO while supporting a numbered fleet and task force commanders collection requirements during deployments within the Pacific Command (PACOM) area of operations. Participated in multiple Navy specific operations and exercises throughout the PACOM. Performed the administration and technical requirements of a Special Security Office (SSO) and Security for the operation of collateral and sensitive compartmented information facility (SCIFs). Manage the operations of communications, threat detection, and weapons systems essential for controlling air, ground, and naval operations. Executed ship's bridge team responsibilities for safe navigation and proper operation of the ship and other watch related activities. Represented the Commanding Officer for routine shipboard operations and watch related activities while supervising and directing key watchstanders in matters concerning the operations and safety of the ship.
Tactical Information Operations Analyst
Tactical Information Operations Analyst performing SGA and DNI analysis for two Joint Task Forces during two deployments with a Naval Special Warfare Squadron in the Central Command area of responsibility. Served as the Cryptologic Service Group Non-Commission Officer-in-Charge managing Joint service and civilian SGA and DNI analysts in support of Joint Task Force operations. Produced serialized reports derived from data and developed concepts of operations that enabled computer network operations.
Computer Network Defense Watch Officer/Lead Incident Handler
Computer Network Defense Watch Officer supervising Cyber Security analysts personnel supporting Cyber Defense operations for the Navy Cyber Defense Operations Command. Performed duties as lead Incident Handler coordinating investigations into network intrusions to collect forensic data, conduct analysis on discovered vulnerabilities and exploits. Advised Navy Fleet and Shore commands on procedures to complete Information Assurance Vulnerability Alert (IAVA) security patches and configuration compliance guidance on workstation/servers, DNS, proxies, routers, and firewalls in accordance with DoD information assurance policies. Efforts increased security of classified and unclassified computer networks world-wide to mitigate further network attack and exploitation.
Naval Aircrewmen And Information System Security Officer
Naval Aircrewmen aboard EP-3 ARIES II aircraft as a Secure Communication operators with a Fleet Air Reconnaissance Squadron supporting SIGINT reporting for numerous operations in the European, Central, and Southern, Command AORs. Performed duties as Network Security Vulnerability Technician and Information Systems Security Officer ensuring strict compliance with Navy and DoD Information Assurance policy and Security Technical Implementation Guide (STIG) for workstations, servers, and router configuration and patching. Ensure timely IAVA compliance reporting for an oversea location.
Facilities Control Technician
As a Facilities Control Technician operating and troubleshooting numerous video and data encrypted circuits for Commander Second Fleet and U.S. Joint Force Command. Performed duties as local Electronic Key Management System (EKMS) user and ensured strict compliance with Naval Communication Security Management System (CMS) manuals, Navy and National policy and procedures for protecting keying material and equipment.
Dan Ricci education
Master Of Science (M.S.), Computer Science (Cyber Security Ops Concentration)
Bachelor Of Arts (B.A.), Intelligence Studies
Associate Of Arts (A.A.), General Studies
Frequently asked questions about Dan Ricci
Quick answers generated from the profile data available on this page.
What company does Dan Ricci work for?
Dan Ricci works for Industrial Data Works LLC.
What is Dan Ricci's role at Industrial Data Works LLC?
Dan Ricci is listed as Senior Consultant @Ampyx Cyber | Independent Consultant & CEO @Industrial Data Works LLC | Founder @ICS Advisory Project l Critical Infrastructure Cybersecurity, Vulnerability Management at Industrial Data Works LLC.
What is Dan Ricci's email address?
AeroLeads has found 1 work email signal at @gormat.net for Dan Ricci at Industrial Data Works LLC.
Where is Dan Ricci based?
Dan Ricci is based in Washington Dc-Baltimore Area, United States while working with Industrial Data Works LLC.
What companies has Dan Ricci worked for?
Dan Ricci has worked for Industrial Data Works Llc, Ics Advisory Project, Idaho National Laboratory, Frequentis Defense, Inc, and Synsaber.
How can I contact Dan Ricci?
You can use AeroLeads to view verified contact signals for Dan Ricci at Industrial Data Works LLC, including work email, phone, and LinkedIn data when available.
What schools did Dan Ricci attend?
Dan Ricci holds Master Of Science (M.S.), Computer Science (Cyber Security Ops Concentration) from Lewis University.
What skills is Dan Ricci known for?
Dan Ricci is listed with skills including Leadership, Cloud Computing Iaas, Nist Csf, Defense, Operational Planning, Cyber Defense, Navy, and Military Training.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trial