Chief Information Security Officer
CurrentServes as the CISO for one of the largest Texas state agencies, TxDOT, managing a team of over one hundred cybersecurity professionals protecting the critical transportation network infrastructure and data of Texas. Built the TxDOT cybersecurity program from the ground up, establishing both a best in practice 24/7 security operations team and a comprehensive governance, risk, and compliance program that protects several hundred systems, thousands of employees, and several hundred thousand devices.• Security Program Manager: Oversaw over a hundred cybersecurity projects coordinating the efforts of multiple project managers to ensure the rapid deployment of several critical cybersecurity systems and applications needed to ensure the protection of the Texas transportation network and data.• Cybersecurity Operations: Designed and established a 24/7 cybersecurity operation center providing critical data and network security monitoring and incident response for several FedRAMP and commercial cloud environments, multiple datacenters, and several hundred thousand devices on a network spanning Texas. • Risk Management: Implemented a comprehensive security system development life cycle (SDLC) ensuring that systems are deployed with cybersecurity requirements and key security risks addressed through all phases of the project, and already deployed systems are routinely assessed and monitored for cybersecurity risk for inclusion in strategy and budget sessions.• Security Compliance: Built the agency program responsible for ensuring agency compliance with Texas, PCI, and Federal security compliance requirements and leading the agency Information Technology functions and systems through multiple compliance audits related to PCI DSS, SOX, and FedRAMP.• Privacy Officer: Served two years building the TxDOT Privacy Program and proving the need for the agency to hire its first dedicated privacy officer to protect the private data of citizens traveling on Texas infrastructure.