Brett Deroche
Details
Information Technology focused in Information Security
Excelsior College
2013 : 2018
Network security
Naval Postgraduate School
2013 : 2015
Digital Security Program Development
Penetration Testing
Security Engineering
Security Operations Center (SOC) as a Service
Vulnerability Management as a Service (VMaaS)
Incident Response (IR)
Managed Endpoint Detection & Response (EDR)
2022 : Present
Lockstep Technology Group
VP of Cybersecurity Services
Acquired by Lockstep Technology Group
Managed Detection and Response (MDR)
Digital Security Program Development
Penetration Testing
Security Engineering
Security Operations Center (SOC) as a Service
Vulnerability Management as a Service (VMaaS)
Incident Response (IR)
Managed Endpoint Detection & Response (EDR)
2022 : 2022
Transformyx, LLC
VP of Cybersecurity Services
Security Operation
Incident Response
Managed Detection and Response
Threat Intelligence
Adversary Emulation
Active Defense
Vulnerability Management
Security Information & Event Monitoring (SIEM)
2018 : 2022
Amedisys
Director Security Operations
Started with an ad-hoc vulnerability management practice that involved manually parsing excel documents, and counting vulnerabilities for metrics. Evolved the practice into to a proactive operationalized vulnerability management program that excelled at integrating relevant vulnerability data into an existing enterprise ticketing system and driving value-based decision from actionable metrics.
Focused on creating time based metrics within vulnerability management, time to detection, and time to remediation.
2016 : 2018
Blue Cross and Blue Shield of Louisiana
Advisory Information Security Engineer
Functioned as the activity's accreditation action officer, focal point, and principal advisor for all command information security matter in compliance with DoD 8570 and all other governing directives and instructions. Analyzed system security through the use of Host Based Security System (HBSS), Assured Compliance Assessment Solution (ACAS), and Nessus. Evaluated information security policies and training requirements in support of National, DOD, and DON information security policies.
2013 : 2016
US Navy
Information Assurance Manager
Skills
ACAS, Active Directory, CISSP, CompTIA Security+, Computer Security, Cybersecurity, DHCP, Disaster Recovery, DNS, DoD, eEye Retina, GCIH, Group Policy, HBSS, HP-UX, Industry standards, Information Assurance, Information Security, Leadership, Microsoft Exchange, Military Experience, Nessus, Network Administration, Networking, Network Security, NeXpose, Rapid7 InsightIDR, Rapid7 InsightVM, Rapid7 Nexpose, Risk Management, Routers, Security, Security Incident Response, Security Operations, Servers, SIEM, Software Installation, STIG, System Administration, TCP/IP, Troubleshooting, Trustwave AppDetectivePRO, Trustwave AppScanner Enterprise, Veterans, VMware, VMware ESX, Vulnerability Assessment, Vulnerability Management, Vulnerability Scanning, Windows Server
About
As the VP of Cybersecurity Services at Lockstep Technology Group, I oversee a wide range of security solutions for clients across various industries. With over 15 years of experience in the information technology field, I have developed a strong background in security strategy, operations, incident response, adversary emulation, threat intelligence, and active defense.
I am passionate about finding secure solutions that enhance the customer and user experience, rather than hindering them. I have a knack for translating complex technical concepts into simple and clear formats, and for aligning security objectives with business goals. My mission is to help clients protect their data, assets, and reputation from cyber threats, and to foster a culture of security awareness and best practices within my team and organization.