Summary
Overview
Work History
Education
Skills
Accomplishments
Certification
Timeline
SeniorSoftwareEngineer

Nicole Malloy

Fort Collins,CO

Summary

Highly accomplished cybersecurity leader with significant technical experience in a broad range of information technology disciplines and strong leadership experience grounded in integrity, teamwork, diversity, equity, inclusion and balance. A security centric, business focused thought leader who balances information protection and business agility while providing innovative, forward-thinking solutions to complex problems.

Overview

17
17
years of professional experience
1
1
Certification

Work History

DIRECTOR OF CYBER DEFENSE ENGINEERING

Western Union
05.2023 - Current
  • Accountable for leading the cyber defense engineering strategy for Western Union, a global $4.5B organization, to enhance the security program and transform the organization.
  • Developed the architecture templates for the design and engineering of enterprise security technologies while achieving defined KPIs and positive ROI.
  • Created a cloud migration roadmap ensuring collaboration and addressing short term business goals and long-term TCO, while driving innovation at all levels of the organization by delivering cloud native and cloud enabled technologies.
  • Leading the transformation from legacy VPN instrumentation to a cloud-based security services model – SASE and SD-WAN over traditional MPLS.
  • Led cross-functional teams in addressing complex security challenges, fostering an environment of collaboration and innovation that drove continuous improvement in information security processes.
  • Collaborated closely with senior leadership to align information security efforts with overall business objectives and goals.
  • Optimized budget allocation for information security projects by prioritizing initiatives based on risk levels and potential impact on business operations.

SENIOR MANAGER CYBERSECURITY ENGINEERING

Qurate Retail Group
12.2014 - 05.2023
  • Career progression from Security Architect and Operations Lead (HSNi) to Senior Manager of Cybersecurity Engineering.
  • Led two teams of internationally dispersed security engineers responsible for the security of all data and systems across the QRG enterprise (HSN, CBI, QVC).
  • Directed day to day operations including all support responsibilities, management, and upkeep of all security systems.
  • Defined strategic direction for the Cybersecurity Engineering organization and identified, selected, and directed implementation of any new technologies required to increase the security of QRG assets.
  • Created and maintained a high-performing team of expert Cybersecurity Engineers and recruited and retained top new talent.
  • Managed budgetary impacts while reducing costs and increasing efficiencies and security posture.
  • Created and maintained highly effective relationships with IT and business teams in order to work together towards common goals.
  • Technologies included but are not limited to: SIEM, DLP, Endpoint Protection, Endpoint Detect and Respond, Storage Security, EOL OS protection, Web and Mobile Application Protection, Proxy/URL Filtering, eMail Security, Intrusion Prevention, CASB, Cloud Security, DDOS Protection, File Integrity Monitoring, and Firewall Auditing.

ENTERPRISE SECURITY STRATEGY AND ARCHITECTURE LEAD

Textron
05.2007 - 12.2014
  • Progressed career from Identity Management Engineer, to Enterprise Security Sr Analyst to leading several teams within security, including eDiscovery and Forensics, Enterprise Vendor Risk Management to Strategy and Architecture.
  • Led the enterprise security strategy and architecture team in building relationships with internal and external partners with the goal of leveraging best practices, accepted security controls, and efficient processes to minimize the security risks of running a successful global business at the forefront of technology.
  • Partnered with enterprise wide IT teams as well as business teams to ensure upcoming initiatives were properly assessed and appropriate controls were established to reduce risk.
  • Managed security risk identification in enterprise effort to utilize Microsoft Azure (Cloud)
  • Designed and led a project to centralize risk management across the enterprise utilizing automated workflow solutions as well as externally facing security surveys for third party hosts.

Education

Bachelor of Science - Aviation Computer Science

Embry Riddle Aeronautical University
Daytona Beach, FL
05.1994

Skills

  • Professional Certifications
  • Leadership
  • Access
  • Enterprise
  • Problem-resolution
  • Project development
  • Risk Management
  • Strategy
  • Culture Transformation
  • Policy Development
  • Core Values Management
  • Key Performance Indicators
  • Team building abilities
  • Policy Implementation
  • Stakeholder Relations
  • Budget Control
  • Project Management
  • Project Coordination
  • Contract Negotiation
  • Staff Development
  • Staff Management
  • Verbal and written communication
  • Legal and Regulatory Compliance
  • Creativity and Innovation
  • Contract and Vendor Management
  • Hiring and Retention
  • People Management
  • Crisis Management
  • Strategic Planning
  • Team Building
  • Strategies and goals
  • Charismatic Leader
  • Issues Resolution
  • Organizational Development
  • Driving
  • Information Security
  • Information Systems
  • Innovation
  • Mentoring
  • Migration
  • Team Building and Motivation
  • Collaborative Leadership

Accomplishments

  • Identified and implemented multiple opportunities for cost optimization through consolidation, de-duplication, and forward thinking, saving over a million dollars in one instance and several hundreds of thousands in several other instances, without creating gaps and in many cases providing better coverage.
  • Created and developed the most highly regarded and high performing teams of cybersecurity engineers with the best internal team member satisfaction survey scores and proven individual team members' growth from associate to senior engineer, from engineer to principal engineer, engineer to manager, and engineers to architects.
  • Built strategic plans for post-acquisition security application gap remediation and cross training to complete knowledge transfers from HSNi Security Operations personnel to multiple teams within Qurate Retail Group Global Information Security.
  • Developed and led the Information Security Operations team within HSNi to provide all information security services for HSNi and its subsidiaries, to include engineering, implementation, maintenance, operations and incident response functions while steadily increasing the maturity of the security organization based on NIST's Cyber Security Framework.
  • Led the team to redefine the Enterprise Security organization within Textron, resulting in the coverage of previous gaps in information protection and risk identification, conceivably protecting the company from millions of dollars in incident resolution costs.

Certification

Certified Information Systems Security Professional (CISSP)

Certified Cloud Security Professional (CCSP)

Azure and AWS Cloud Certified


Timeline

DIRECTOR OF CYBER DEFENSE ENGINEERING

Western Union
05.2023 - Current

SENIOR MANAGER CYBERSECURITY ENGINEERING

Qurate Retail Group
12.2014 - 05.2023

ENTERPRISE SECURITY STRATEGY AND ARCHITECTURE LEAD

Textron
05.2007 - 12.2014

Bachelor of Science - Aviation Computer Science

Embry Riddle Aeronautical University
Nicole Malloy