Home

Cybersecurity governance, risk, and assessment leadership.

I help regulated, sensitive-data organizations reduce security and compliance risk and get remediation done. My work turns audit findings and control gaps into programs that stakeholders follow and leaders can report on. 12 years across healthcare, government, and enterprise environments. CISSP.

Focus areas: security assessment methodology, vulnerability management, GRC, data security, third-party risk, executive reporting, and program execution.

12+ years Technology, cybersecurity, risk, and program delivery
CISSP, CCSK Security leadership and cloud security credentials
65% to 99% Vulnerability remediation SLA improvement
150+ apps Security governance across enterprise application portfolios