Cybersecurity Officer
Current• Led the cybersecurity program for a credit union with assets ranging from $400M to $600M, transforming security operations to ensure critical infrastructure protection.• Mentored and directed a cross-functional cybersecurity team, aligning security initiatives with organizational goals through strategic planning, which enhanced incident response, vulnerability management, and overall security governance. • Oversaw comprehensive security assessments, including penetration testing, vulnerability scans, risk assessments, and IT controls audits. Served as the main point of contact for external audits while coordinating internal audits to identify and mitigate security gaps proactively.• Created and implemented the organization's cybersecurity roadmap, setting strategic initiatives that strengthened the credit union's security posture, ensured compliance with regulatory requirements, and guided strategic investments in cybersecurity.• Enhanced email security by introducing a user-friendly email reporting program, leading to a 30% reduction in successful phishing attacks and improving overall employee security awareness.• Spearheaded a Zero Trust Security Initiative by deploying ThreatLocker and implemented next-generation Network Access Control (NAC) utilizing Cisco Identity Services Engine (ISE). Reducing the organizations' attack surfaces and increasing visibility into endpoint activities.• Utilized XDR and SIEM tools to conduct in-depth threat hunting and forensic investigations, identifying potential threats and enabling rapid incident response. This proactive approach reduced the time to detect and respond to threats, significantly improving the overall security posture.• Delivered insightful security briefings and risk assessments to C-suite executives and the Board of Directors, ensuring alignment between cybersecurity efforts and the organization's strategic vision and risk tolerance.