Chief Information Security Officer

Strategic Cybersecurity Executive | DoD • Federal • Healthcare

Strategic cybersecurity executive with 10+ years of progressive leadership experience securing enterprise systems across Defense, Federal, and Healthcare sectors. Proven success directing security operations for organizations with $1B+ in protected assets, 500,000+ users, and multi-million dollar budgets. Expert in building high-performing teams, achieving regulatory compliance, and reducing organizational risk while enabling business growth.

TS/SCI Cleared CISM Security+ NIST • RMF • FISMA

Leadership Impact

Delivering measurable results across DoD, Federal, and Healthcare sectors.

50+
Security Professionals Led
$2M+
Budgets Managed with ROI
40%
Risk Reduction Achieved
$5M+
Penalties Prevented
45%
Faster Incident Response
99.9%
System Uptime Maintained

Core Competencies

Executive leadership capabilities driving organizational security and business growth.

👔

Executive Leadership & Strategy

Strategic security program development, C-suite and board communications, budget & P&L management, organizational transformation, and enterprise security architecture.

⚖️

Governance, Risk & Compliance (GRC)

NIST CSF, NIST 800-53, RMF, FISMA, HIPAA, PCI DSS, SOX IT General Controls, COSO ERM, ISO 27001, FedRAMP, regulatory audits, and continuous monitoring.

🚨

Incident Response & Crisis Management

Security operations center (SOC) oversight, incident response program development, disaster recovery, business continuity planning, and crisis communication.

🔗

Third-Party Risk Management

Vendor risk assessments, supply chain security, contractual security controls, M&A security due diligence, and strategic vendor negotiations.

☁️

Cloud Security Strategy

AWS Security Hub, Azure Security Center, multi-cloud security, zero trust architecture, hybrid cloud security, and cloud access security broker (CASB) implementation.

👥

Workforce Development

Team building and mentorship, talent acquisition, performance management, security awareness training, and building high-performing security organizations.

🤖

GRC Automation & Platforms

Enterprise GRC platform implementation (ServiceNow GRC, Archer), continuous control monitoring, evidence automation, and risk/compliance reporting dashboards.

Technical & Framework Expertise

Deep proficiency across governance, risk, and compliance domains.

Governance Frameworks

NIST CSF / COSO ERM Expert
COBIT / ISO 27001 Expert
Board & Executive Reporting Expert
Risk Appetite & KRIs Expert

Compliance & Audit

SOX 404 ITGC Expert
SOC 2 / ISO 27001 Expert
HIPAA / PCI DSS Expert
GDPR / CCPA Privacy Advanced

Risk & Operations

Third-Party Risk (TPRM) Expert
Incident Response Governance Expert
FAIR Risk Quantification Advanced
GRC Platforms (ServiceNow/Archer) Advanced

Professional Experience

Progressive leadership across Defense, Federal, and Healthcare sectors.

NextGen Data Systems
Senior Cybersecurity Leader – Department of Defense (U.S. Navy)
-
  • Lead enterprise cybersecurity governance for $1B+ Navy digital transformation program securing 500,000+ users and 3M+ devices globally. Direct cross-functional security team of 25+ engineers, compliance analysts, and auditors
  • Built and lead enterprise GRC program for Navy modernization, ensuring continuous ATO compliance and risk visibility for executive decision-making across $1B+ program portfolio
  • Deliver quarterly cybersecurity risk presentations to Flag Officers, Senior Executive Service (SES), and DON CIO, translating technical risks into business impact using board-ready KPIs and KRIs
  • Reduced POA&M backlog by 40% in 6 months through strategic prioritization and executive governance, accelerating ATO timelines and reducing compliance risk exposure
  • Decreased vulnerability remediation time by 45% via DevSecOps integration and cross-functional team collaboration, strengthening security posture while enabling faster delivery
  • Automated compliance monitoring and reporting workflows, eliminating 30% of manual effort and reducing SOX IT General Controls audit cycles by 6 weeks
Baptist Health
Director of Cybersecurity & Disaster Recovery
-
  • Directed enterprise cybersecurity, incident response, and business continuity for 8-hospital healthcare system with 400+ clinics, 30,000 employees, and 1M+ patients. Managed $2M security budget and P&L accountability
  • Owned $2M security budget with full P&L responsibility, optimizing vendor spend and resource allocation to maximize ROI while reducing organizational risk
  • Established comprehensive security policy framework (25+ policies) spanning HIPAA, PCI DSS, and NIST standards, reducing audit exceptions by 50% and achieving 100% audit pass rate
  • Negotiated third-party risk agreements and vendor remediation plans, preventing $5M+ in potential regulatory penalties and demonstrating strong business acumen
  • Built and led high-performing security team of 50+ professionals, fostering culture of excellence and continuous improvement across distributed healthcare facilities
  • Conducted enterprise-wide tabletop exercises and crisis simulations, maintaining 99.9% uptime during security incidents through effective crisis management
Janus Research Group
Cybersecurity Manager – U.S. Army Program
-
  • Managed comprehensive security program for Army Cross-Domain Training Capability (XCTC) supporting National Guard operations nationwide. Oversaw security assessment, authorization, and continuous monitoring for mission-critical DoD systems
  • Led successful ATO renewal under updated DoD Risk Management Framework (RMF), ensuring uninterrupted mission capability for critical Army training systems
  • Achieved $300K+ cost avoidance through strategic system recategorization while maintaining security integrity and compliance requirements
  • Implemented NIST 800-37 Rev 2 risk assessment frameworks, significantly enhancing risk visibility and enabling data-driven security decisions
  • Directed vulnerability management, incident response, and security monitoring operations, reducing system vulnerabilities by 20% and improving response times by 30%
U.S. Air Force National Guard
Cybersecurity Operations Leader (Master Sergeant, E-7)
-
  • Lead 20-member cybersecurity team protecting classified networks and mission-critical infrastructure. Serve as senior security advisor to unit commander providing strategic guidance on cyber threats, risk management, and security operations
  • Command joint cyber defense exercises across 5 military units, achieving 98% threat detection rate and strengthening collaborative security operations
  • Maintain 99.9% operational availability for mission-critical SCI systems supporting 24/7 national security operations through proactive security management
  • Provide classified threat intelligence briefings and risk assessments to senior military leadership, enabling strategic decision-making
  • Transformed unit cybersecurity training program, achieving 25% improvement in inspection scores and recognition as top-performing unit in Air National Guard
  • Developed enterprise security awareness curriculum for 200+ personnel, significantly improving organization-wide security culture and compliance posture

Education & Certifications

Academic credentials and industry-recognized certifications.

B.S.
Information Technology
U. of Cumberlands
CISM
Certified Information
Security Manager
Sec+
CompTIA
Security+ CE
CISSP
In Progress
(ISC)²
RMF
Risk Management
Framework Professional

Let's Connect

Available for Senior Security Leadership Opportunities.

Send Email