Technology without strategy is chaos - I help bring order by aligning with business objectives and applying industry-recognized cybersecurity and data privacy practices. I do this through a focus on risks that are specific to the organization, while avoiding the Fear, Uncertainty & Doubt (FUD) that often complicates risk-based decisions.Through the implementation of reasonably-expected practices and risk mitigation strategies, I offer brand protection for companies by identifying and reducing vulnerabilities, that could otherwise be exploited and do serious harm to a company's reputation and bottom line. I am experienced at leading teams in the design and implementation of secure business processes and networks. Specialties Include: - NIST 800-171 Compliance (CMMC / DFARS)- Cybersecurity Supply Chain Risk Management (C-SCRM)- Cybersecurity / IT Policy Development & Implementation- Risk Assessment & Mitigation- Developing Incident Response Programs- Vulnerability Assessments- IT General Controls (ITGC)- Certification & Accreditation - DIACAP / FISMA / RMF / SCF- Statutory, Regulatory & Contractual Compliance (NIST 800-171, FAR, DFARS, CCPA, EU GDPR, PCI DSS, HIPAA, FERC, NERC, FACTA, GLBA)
Listed skills include Security, Information Security, Network Security, Vulnerability Assessment, and 43 others.