Chief Information Security Officer
CrossView Inc.
June 2010 - Present (2 years 11 months)
•
Columbus
Directed all facets of information security operations for this international dominant cross-channel B2B, B2C commerce software development solution provider. The company’s progressive workforce model is comprised of employees operating predominantly from SOHO locations as well as International and Domestic business locations. Responsibilities include cloud security, data security, security architecture, threat & incident management, compliance, risk management, compliance activities, identity & access control, change management, business continuity, disaster recovery, forensics, and legal discovery.
• Led the company to its first progressive SSAE16 (SAS70) compliance certification with 100% success; a first among the Company’s peers.
• Established the first profitable security service offering to the company’s portfolio adding significant progressive value add with a 70% average margin.
• Innovated secure and 100% compliant commerce architecture within Cloud and Social Networking environments.
• Provided security, governance, and regulatory security services to Fortune 500 client and partner companies.
• Created and implemented 100% of the organization’s originating Information Security & Technology Policy governance documentation sets based on ISO 27001/2 standards.
• Provided and implemented legal language for contractual business relationships as it pertains to Cyberspace law.
• Maximized operational stability, regulatory compliance, and security oversight by establishing first Change Advisory Board to handle change management and change controls.
• Enhanced operational success by creating the first Architectural Review Committee.
Chief Security Officer
Fifth Third Processing Solutions, Inc.,
October 2009 - February 2010 (4 months)
•
Cincinnati
Oversaw all information security for premier payment acceptance services company supporting >171,000 merchants and financial institutions in US and 11 other countries. Managed data security, security architecture, threat & incident management, compliance, risk management, physical security, executive protection, surveillance, identity & access control, change control, business continuity, disaster recovery, forensics, and legal discovery. Supervised team of 48 security professionals and seven direct managerial reports. Directed activities of outsourced domestic and offshore resources. Administered $8M+ budget.
• Created and implemented 100% of the organization’s originating Information Security & Technology Policy governance documentation sets based on ISO 27001/2 standards.
• Improved service delivery levels 500% and reduced costs 600% by upgrading enterprise-level identity management program to resolve customer and employee service disruptions.
• Enhanced operational success by creating the first Architectural Review Committee.
• Consolidated 100% of the corporate-wide compliance, regulatory, risk, and operational processes by implementing the first Enterprise Risk Management framework.
• Eliminated electronic and physical vulnerabilities by implementing and re-architecting enterprise-level, disaster-resistant, multi-tiered security infrastructure.
• Maximized operational stability, regulatory compliance, and security oversight by establishing first Change Advisory Board to handle change management and change controls.
Chief Information Security Officer
Colonial Bank
June 2007 - October 2009 (2 years 4 months)
•
Montgomery
Directed corporate security operations for $166B Top 30 commercial bank with >1800 locations in 13 states. Supervised staff of four direct and 25 indirect reports. Administered $5M+ budget. Oversaw information security, risk management, change management, compliance, threat/incident management, data security, business continuity, disaster recovery, forensics, and legal discovery.
• Eliminated $1M+ in costs and risk by implementing internal enterprise forensics and E-Discovery program.
• Produced $1M in recurring savings by implementing consolidated identity management system.
• Dramatically improved IT security by leading business alignment initiative and implemented 100% of the organization’s originating Information Security & Technology Policy governance documentation sets based on ISO 27001/2 standards.
• Saved $500K+ in outsourcing expenses by implementing enterprise legal review and case management program to support corporate legal department.
• Facilitated two major acquisitions by leading integration of customer and employee information.
• Delivered $1M+ in savings by introducing holistic technology-based controls that eliminated employee waste and cyber-criminal activities.
• Served as Chairperson of Legal Hold Sub-Committee, Fraud Prevention Committee, and Change Advisory Board, and voting member of Record Retention Committee, IT Review Board, and MIS Steering Committee.