Enterprise Technology, Cybersecurity, and Governance leader with 17 years of experience across Department of Defense, healthcare IT, and private-sector environments. Proven record of directing governance, risk, and compliance (GRC) programs across subsidiaries and complex regulatory landscapes, encompassing physical, personnel, and information security domains. Extensive background in cybersecurity inspection authority, enterprise risk oversight, disaster recovery governance, and classified program management. Strategic leader recognized for driving risk transparency, strengthening organizational resilience, and building high-performing teams across multi-entity environments.
Overview
23
23
years of professional experience
1
1
Certification
Work History
Manager II Technology
Elevance Health/Anthem, Inc
05.2023 - Current
Provide enterprise governance oversight for partially and wholly owned subsidiaries and affiliates, serving as a strategic liaison to drive alignment, transparency, and consistent security outcomes.
Lead annual Information Security Policy Gap Assessments across technical, functional, physical, and personnel security domains, ensuring regulatory alignment and enterprise risk visibility.
Govern POA&M programs by prioritizing remediation, tracking risk resolution, and balancing regulatory requirements with business objectives.
Lead program and technical teams conducting risk assessments and testing across data, evidence, and network infrastructure, validating adherence to encryption, access controls, intrusion detection and prevention, and technical standards while documenting security posture.
Direct internal, external, and vendor-led assessments and remediation including HIPAA, HITRUST, NIST, penetration testing, vulnerability scanning, and disaster recovery readiness.
Provide post-risk parity governance by validating remediation durability and driving consistent enterprise-to-subsidiary adoption of approved security tools and controls.
Build and lead high-performing teams through hiring, coaching, performance management, and leadership development.
Manage the team’s governance SharePoint environment to ensure subsidiaries have timely access to current assessments, historical data, penetration testing results, standardized resources, and collaboration documentation.
Establish and formalize governance standards by facilitating the development of standard operating procedures (SOPs), internal assessment frameworks, Post Risk Parity processes, RACI models for tool and process ownership, user guides for the Subsidiary Security Management platform, and lessons-learned documentation to drive consistency, accountability, and operational maturity.
Security Analyst III/Sr. Security Analyst (Program Team Lead)
Anthem, Inc
12.2018 - 05.2022
Served as lead liaison for partially and wholly owned subsidiaries and affiliates, coordinating enterprise security alignment and governance oversight across multiple business units.
Conducted comprehensive security oversight assessments across functional, technical, physical, and personnel domains, driving regulatory compliance and enterprise risk visibility.
Led Subsidiary Security Governance and Oversight (SSGO) operations, including assessment lifecycle management, executive reporting, compliance communications, and roadmap development.
Directed assessment strategy for 20 subsidiaries, managing scoping, document review, evidence coordination, on-site interviews, and executive summary development.
Governed POA&M development and remediation tracking, including vulnerability management and penetration testing findings, strengthening risk transparency and closure accountability.
Led the Subsidiary & Affiliate Liaison Program, facilitating recurring risk reviews, compliance reporting, enterprise tool training, and corporate security updates.
Enhanced vulnerability dashboard capabilities by integrating VM and penetration testing data to improve subsidiary-level risk reporting and decision support.
Oversaw development and maintenance of governance documentation, including RACIs, multi-year roadmaps, policy updates, and standardized assessment materials.
Managed and optimized the team’s SharePoint governance environment, ensuring structured access to assessment data, workflows, collaboration materials, and historical documentation.
Coordinated evidence collection and cross-functional engagement for SOC I, SOC II, SOX, HIPAA, and NIST assessments, supporting enterprise audit readiness and joint venture oversight.
Evaluated and researched integration of SSGO assessments into enterprise GRC platforms to enhance scalability, reporting, and process maturity.
Led team training coordination and facilitation efforts to strengthen governance knowledge and operational consistency across the program.
Traditional Security Reviewer
Fleet Cyber Command/US Tenth Fleet
07.2015 - 11.2018
Led comprehensive Command Cyber Readiness Inspections (CCRI), Cybersecurity Inspections (CSI), and multi-domain security reviews across 80+ Navy ships and shore commands, ensuring compliance with DISA and DoD cybersecurity regulations.
Directed holistic risk assessments and continuity of operations programs for classified environments, overseeing disaster recovery and business continuity governance, recurring testing, and lifecycle policy management to maintain mission readiness and protection of sensitive assets across six Navy commands.
Evaluated data integrity controls, technical safeguards, and protective measures to identify vulnerabilities, assess operational risk, and validate adherence to federal security standards.
Delivered executive-level briefings and debriefings to command leadership, clearly articulating findings, risk exposure, and prioritized mitigation strategies.
Assessed cost effectiveness and operational efficiency of security controls to balance mission readiness with regulatory compliance requirements.
Served as Contracting Officer’s Representative (COR), providing oversight of contractor performance and ensuring compliance with contractual and security obligations.
Contributed to program modernization initiatives, including CSICP 2.0 documentation updates and process mapping to enhance inspection consistency and governance maturity.
Maintained and governed team SharePoint collaboration environments to support inspection documentation, workflow management, and secure information accessibility.
Certified Franklin Covey Facilitator, delivering leadership and productivity training to over 500 transitional and returning personnel to strengthen organizational effectiveness and professional development.
Information Systems Security Analyst II
Honeywell Aerospace Contractor
12.2013 - 07.2015
Delivered Information Assurance (IA) support across customer environments, conducting risk analyses, vulnerability assessments, and security testing guidance to ensure compliance with DISA and federal security standards.
Conducted training and assist visits for Security Officers and Managers, strengthening adherence to traditional and information security protocols across multiple commands.
Evaluated customer operations, systems, and security programs to assess alignment with environmental, physical, personnel, information, communications, and network security requirements.
Identified control gaps, assessed data integrity safeguards, and recommended corrective actions to mitigate risk and strengthen compliance posture.
Provided executive briefings outlining security findings, vulnerabilities, and mitigation strategies while maintaining direct liaison with customer leadership on security matters.
Assessed operational efficiency and cost effectiveness of protective measures to balance security compliance with mission requirements.
Maintained and administered team SharePoint collaboration environments to support documentation control, workflow coordination, and secure information sharing.
Special Security Representative/Executive Administrator
11.2002 - 09.2013
Administered and safeguarded Special Access Program (SAP) and Secure Compartmented Information (SCI) environments across multiple high-security commands, ensuring full compliance with classified handling, physical security, and personnel access protocols.
Conducted semi-annual SAP facility inspections and oversaw physical and personnel security operations for three secure facilities supporting 600+ rotating personnel.
Managed SAP networks and secure communications infrastructure, including cryptographic key loads and inter-organizational coordination, maintaining operational continuity and zero compliance discrepancies.
Developed and delivered indoctrination, operational security, and access briefings for senior pilots, officers, and classified program participants.
Led and facilitated command-level training initiatives, supervising a five-member training team and delivering instruction to over 300 personnel.
Designed and implemented an On-the-Job Training syllabus and access database that streamlined personnel and pay entitlement processing for 197 members, improving processing accuracy by 75%.
Served as sole administrator for a large operations department, overseeing training governance, personnel records, evaluations, awards tracking, and clearance documentation management.
Selected for Multi-National Forces–Iraq security detail, reporting directly to a two-star General with primary responsibility for intelligence coordination and executive-level operational support.
Managed financial accountability for 200 individually billed travel card accounts exceeding $300K annually, maintaining zero discrepancies.
Provided executive administrative and technical support, including development of leadership briefings, data tracking, operational coordination, and IT assistance in high-tempo environments.
Education
Graduate Studies - Business Administration (Entrepreneurship Focus)
Regent University
Undergraduate Studies - Business & Technical Management / Criminal Justice
Chief of Staff to the President of Army Law Enforcement at Headquarters, Department of the Army, PentagonChief of Staff to the President of Army Law Enforcement at Headquarters, Department of the Army, Pentagon