Work Preference
Summary
Overview
Work History
Education
Skills
Timeline
Certifications
Generic
Brian Salier
Open To Work

Brian Salier

Greater Phoenix,AZ

Work Preference

Job Search Status

Open to work
Desired start date: Immediately

Desired Job Title

Senior Manager-Cyber Consulting Senior Manager Cyber Security Privacy, Risk & Compliance ProgramsSr Cybersecurity Consultant

Work Type

ConsultingFull TimeContract Work

Location Preference

On-SiteRemoteHybrid
Location: Greater Phoenix, AZ, USPhoenix, AZ
Open to relocation: Yes

Salary Range

45000/yr - 200000/yr

Summary

I am an accomplished Cyber Security professional with 13+ years focused in the practice areas of Governance & Risk Compliance and Program Management. I offer a broad scope of experience derived from extensive Project Management & Program Management within the Federal (Defense), financial (Banking), and commercial spaces. I am well experienced in the areas of PCI-DSS, NIST CSF, NIST-800-53, NIST 800-171 and vendor risk management.

Overview

13
13
years of professional experience

Work History

Senior Manager-Cyber Consulting

AT&T Cybersecurity
10.2022 - 11.2023
  • Developed several new service offerings for AT&T’s CSF and CMMC service offerings leading to streamlined client engagements while drastically increasing client understanding of applicable controls and shared responsibilities within both frameworks.
  • Guided a NIST 800-171 (CMMC) client through identifying, reporting, and remediation of a intricate Man-in-the Middle attack that resulted in a 3 million dollar loss of which roughly 80% was recovered via cyber insurance.
  • Developed over 15 NIST 800-171 and CSF risk assessments to identify vulnerabilities and align organizations for successful CMMC and NIST CSF audits and assessments.
  • Developed policies and aligned organizational disaster recovery plans to both NIST 800-171 and CSF frameworks ensuring control compliance for multiple clients.
  • Top 1% in quarterly revenue generation (billable hours, all teams), top 5% revenue generator in pre-sales (B2B all teams), top 1% for client retention and change orders (mid-markets team).
  • Successfully maintained a portfolio of roughly 10 active engagements with a robust pipeline for NIST CSF, NIST 800-171, NERC SIP, and PCI-DSS readiness Pre-assessments clients.
  • Successfully lead over 80 pre-sales calls for Cyber risk, CMMC/NIST 800-171, NIST CSF, NERC CIP, Firewall, and PCI-DSS pre-assessment sales calls with a 60% conversion rate.

Owner/Principal

Secure Pay Consulting LLC
03.2021 - 09.2022
  • Provided pre-assessment PCI consulting services to companies of all sizes for both the merchant and service provider.
  • Streamlined a major healthcare providers annual PCI readiness process by identifying appropriate PCI-DSS SAQ levels, reducing cost by an estimated $8,000.
  • Assisted in the PCI program development, workshopping and , maintenance, under a sub contract, for a Virginia County PCI-DSS compliance initiatives.
  • Provided, as a PCI-DSS ISA and PCIP, 3rd party consulting services and readiness assessments for DINE Brands Global resulting in a successful PCI QSA review and annual certification.

Senior Manager Cyber Security Privacy, Risk & Compliance Programs

DINE BRANDS GLOBAL
06.2019 - 12.2021
  • Guide teams through excellent leadership and oversight of critical security and compliance programs for PCI-DSS annual assessments, SOC 2/type 2 Compliance, and ISO27001 Control & Risk Review.
  • Eliminated legacy PCI-DSS
  • Successfully implemented DINE Brands new Vendor Security & Risk Assessment program utilizing onetrust which lead to a significant increase in the identification and elimination of high risk vendors, and significant reduction of exposure to data leaks.
  • In partnership with DINES Internal Audit, Enterprise Risk, and Legal, aided in the full remediation of several 3rd party (AON) identified assessment action items for CCPA, CCPA, GDPR , Internal Risk Processes, 3rd party vendor risk, data security standards, Intrusion Detection, policy development and eCommerce platform risk items which helped lead to DINES ISO-27001 certification.
  • Developed internal training programs for emerging corporate cyber initiatives for Vendor Risk Management, NIST CSF, GDPR, and the newly created "Franchise Cyber Awareness and Compliance" program.

Sr Cybersecurity Consultant

Booz | Allen | Hamilton
03.2012 - 06.2019
  • Served as the primary contract SME for NIST 800-53 (Risk Management Framework) transition lead for US Navy SPAWAR PMW 790 and PMW 150 from legacy DIACAP security framework which allowed the Dept. of Navy IT to identify road-blocks and ways forward for successfully implement a million dollar over-haul of its existing cyber risk and approval construct.
  • Successfully accredited over 50 cybersecurity packages between RMF and DIACAP with a 90% first round accreditation from the US Navy Cyber Security Accreditation Authority.
  • Worked multiple commercial Cybersecurity initiatives for Vendor Security and NIST CSF implementation allowing several private equity firms and banks to successfully implement new cyber programs.

Sr. Business Systems Consultant – US ARMY CYBER NETCOM 9th

NCI Systems
09.2010 - 03.2012
  • As Senior Consultant, I worked on multiple US Army Cyber initiatives including but not limited to the Ft. Eustis to Ft. Monroe High Side data center BRAC project.
  • Successfully completed over 20 DIACAP security authorizations for systems within the purview of the US Army NETCOM 9th Command – Ft. Huachuca, US Army Training and Doctrine Command (TRADOC) and the US Army Intelligence Center of Excellence (ICOE) Ft Huachuca, and Ft Gordon.

Education

Bachelor of Science - Hospitality Administration

University of Massachusetts
Amherst, Massachusetts
03.2008

Skills

  • Governance Risk & Compliance SME
  • NIST 800-53, RMF, 800-171, CSF, CMMC, NIST Privacy Framework, NIST 800-60/61
  • Vendor Privacy & Risk Compliance
  • Data Governance – Vendor Risk
  • Third Party Vendor Onboarding Compliance
  • Vendor Product Criticality Assessment & Assignment
  • Data Discovery, Inventory & Asset Management
  • CMMC 800-171 Control Compliance
  • NVD, CVSS/Mitigation & Risk Assessments

Timeline

Senior Manager-Cyber Consulting

AT&T Cybersecurity
10.2022 - 11.2023

Owner/Principal

Secure Pay Consulting LLC
03.2021 - 09.2022

Senior Manager Cyber Security Privacy, Risk & Compliance Programs

DINE BRANDS GLOBAL
06.2019 - 12.2021

Sr Cybersecurity Consultant

Booz | Allen | Hamilton
03.2012 - 06.2019

Sr. Business Systems Consultant – US ARMY CYBER NETCOM 9th

NCI Systems
09.2010 - 03.2012

Bachelor of Science - Hospitality Administration

University of Massachusetts

Certifications

  • CMMC RPA EXP
  • NIST CSF LI EXP
Brian Salier