Summary
Overview
Work History
Accomplishments
Certification
Timeline
Generic
Josh Goessler

Josh Goessler

Information Security Professional
Portland,OR

Summary

Information security professional with strong track record in safeguarding organizational data. Proven ability to implement comprehensive security measures and ensure compliance with industry standards. Known for fostering team collaboration and achieving high-impact results, while effectively adapting to changing requirements.

Overview

10
10
years of professional experience
7
7
Certifications

Work History

Information Security Manager

Portland Community College
03.2021 - Current

This position is responsible for managing the operations and staff for the Information Security department. Provides technical and security leadership, expertise and direction working with district and college staff for design and implementation of information security within business processes and IT systems.

  • Maintained up-to-date knowledge of industry advancements in technology, regulations, and best practices pertaining to information security management.
  • Responsible for developing roadmap for achieving strategic objectives established by the Chief Information Security Officer.
  • Ensured compliance with industry standards such as NIST 800-171 and GDPR through diligent policy enforcement and audits.
  • Researched, reviewed and recommended equipment, materials, services, and technologies to prepare and maintain security expenses within approved budget.
  • Established measures, metrics, thresholds and targets to drive performance in alignment with security and other business strategies.
  • Developed and grew staff competencies through team development, implementation and support of specific training for various responsibilities.

Cybersecurity Lead Specialist

Portland Community College
11.2019 - 03.2021

This position is responsible for implementing and coordinating major segments of PCC's Information Security portfolio. Lead role in detecting, protecting and maintaining information security throughout the organization.

  • Author security incident reports, highlighting breaches, vulnerabilities, and provide guidance senior leadership with recommended actions and remedial measures.
  • Perform routine Payment Card Industry (PCI) security audits to identify vulnerabilities and implement appropriate security countermeasures.
  • Recommend, develop, and maintain incident response protocols to mitigate damage and liability during security breaches.
  • Lead or collaborate in projects to implement or improve PCC's security posture, and/or Information Security tools.
  • Conduct risk assessments third party vendors, internal controls, or proposed system configurations spanning the organization.

Technology Support Analyst

Portland Community College
07.2015 - 11.2019

Liaison between the IT department and college departments on matters related to IT technical planning, support, and project implementations. Lead various IT teams and working groups to design, plan, and coordinate complex, enterprise-wide application and operating system upgrades.

  • Delivered reliable solutions by overseeing software design, development, testing, implementation, and support phases of IT projects.
  • Perform data analysis for reported endpoint risks and threats. Resolve incidents and provide written recommendations for operational practice improvement
  • Establish and manage computer baseline functional and security configurations.
  • Create deployment strategies and compliance reports for software and OS upgrades.
  • Develop deployment strategies and operational procedures for workstation management technology.
  • Provides work direction and coordination of work activities to other classified staff and student employees.

Accomplishments

  • Led the implementation of Portland Community College's advanced security architecture technology stack, including EDR agents, network IPS/IDS, a comprehensive SIEM environment, robust email protection, and integration with the Mandiant SOC, significantly enhancing the college's threat detection and response capabilities.
  • Spearheaded the technical design, development, and project management of a PCC's Multi-Factor Authentication (MFA) initiative for all employees employees.
  • Established Incident Response program. Authored standards for conducting and creating cybersecurity incident response documentation. Create several cybersecurity incident response playbooks and procedures.
  • Led and completed PCC's annual GLBA IT Risk & Safeguards assessments, PCI compliance, and cybersecurity penetration tests.

Certification

Azure Security Engineer

Timeline

ISACA Certified Information Security Manager (in progress)

09-2025

VIE CIO Essentials Cohort (in progress)

08-2025

GIAC Cyber Incident Leader (GCIL) (in progress)

05-2025

SANS SEC566:Implementing and Auditing CIS Controls

09-2024

EDI Advanced Leadership Practitioner

10-2022

SANS 510:Defensible Public Cloud Architecture

09-2021

Azure Security Engineer

05-2021

Information Security Manager

Portland Community College
03.2021 - Current

Cybersecurity Lead Specialist

Portland Community College
11.2019 - 03.2021

Technology Support Analyst

Portland Community College
07.2015 - 11.2019
Josh GoesslerInformation Security Professional