Career
18+ years across cybersecurity strategy, security architecture, operations, automation, and compliance.
I am a cybersecurity leader with 18+ years of experience designing and operating security programs across global enterprises. My work spans security architecture, security operations, cloud security, detection engineering, identity, automation, and compliance.
Over the course of my career, I have:
- Led the Architectural Technical Security Review process across the organization, evaluating designs, threat models, and control frameworks for enterprise initiatives.
- Directed global security operations teams and served as Incident Commander during high-severity incidents, driving post-incident reviews and continuous improvement.
- Set technical direction for enterprise cybersecurity strategy, translating threat intelligence, risk appetite, and business requirements into architecture, controls, and operational practice.
- Architected and deployed enterprise SIEM platforms, building ingestion pipelines, detection logic, parsers, and automated response capabilities.
- Architected secure AI data pipelines and secure AI usage, ensuring data integrity, access control, and governance across AI/ML workflows.
- Secured non-human identities across enterprise environments, managing service accounts, API keys, workload identities, and machine-to-machine access.
- Acted as a security advisor to leadership and cross-functional teams, translating risk and security requirements into business-aligned decisions.
- Built SOAR automation programs, reducing MTTR and eliminating manual SOC triage through playbooks and integrations.
- Led application security architecture and threat modeling programs, embedding security into design reviews, software development lifecycles, and product roadmaps.
- Automated security processes and procedures across detection engineering, incident response, vulnerability management, and compliance operations.
- Designed multi-cloud security integrations spanning cloud platforms, identity providers, secure web gateways, and endpoint protection for centralized visibility and detection coverage.
- Established cyber threat intelligence and threat hunting functions, converting adversary TTPs into detection requirements and running purple team exercises to validate coverage.
- Established cloud and data security posture programs, including Attack Surface Management, CSPM, DSPM, and insider threat detection enterprise-wide.
- Represented security engineering in FedRAMP, NIST, ISO 27001, SOC 2, and PCI-DSS audits with architecture documentation and control evidence.