David Barstad
Details
Accounting and Finance
University of Minnesota Duluth
1987 : 2002
High School
Aurora-Hoyt Lakes High School
1983 : 1987
Managed the cybersecurity portfolio and built project business cases while also leading a team of business analysts in the delivery of projects.
• Worked with team leaders and SMEs to create and maintain a service catalog whereby all cybersecurity services were documented and analyzed against NIST 800-53 R4 to determine a maturity score. The service catalog used as an input for prioritizing cybersecurity efforts
• Facilitated the collection and maintenance of a three year cybersecurity project pipeline in coordination with cyber architects, team leads, SMEs and partner teams to ensure the delivery of cybersecurity capabilities that meet current threats and adhere to regulatory and contractual requirements.
• Prepared the business cases for all cybersecurity projects. Defined the scope of each effort, prepared the CBA, negotiated resources and funding, shepherded the project through the governance and approval processes.
• Managed the cybersecurity investment budget in annual budgeting process, allocated funding to approved projects, and monitored actuals.
• Prepared board deck presentations relating cyber security spend to enterprise initiatives, NIST Cyber Security Framework capabilities, and current security threats.
• Led a multi-discipline team in a ransomware assessment to identify weaknesses in security controls and business continuity capabilities that resulted a roadmap of 18 projects that directly address the current threats.
• Led a team of 5 business analysts in the delivery of cyber security projects. Prepared and delivered training to analysts in the art of applying their skills to cybersecurity systems and processes.
2019 : Present
Securian Financial
Cybersecurity Portfolio Manager
As an IT consultant working through Insight Global I performed the following roles at Ameriprise.
Lead Process Analyst/Project Manager – Technology Transparency Team – Ameriprise (March 2018 – August 2019)
Managed a team of Process Analysts and Engineers in delivering ServiceNow workflows that facilitate the end-to-end IT Asset Management (ITAM) lifecycle.
- Led a team of Business Analysts and Subject Matter Experts in defining an enterprise lifecycle process for IT Asset Management (ITAM), resulting in high level process flows and requirements to be leveraged across multiple operating companies.
- Worked with Asset Managers in analyzing their current processes while incorporating new enterprise ITAM standards for software, telecom circuits, end user compute, server, network and cloud asset classes.
- Prepared the detailed requirements and designed new or enhanced ServiceNow workflows to facilitate the procurement, provisioning, decommission, and track and manage functions for each asset class and operating company.
- Managed the ServiceNow delivery team in development, testing, and deployment of ServiceNow workflows. Owned the work breakdown, project schedule, issue resolution and escalation, and status reporting to the Executive Steering Committee.
- Delivered a ServiceNow scoped application that integrated technical and financial approvals into provisioning workflows, enforcing ITAM standards that ensure asset acquisition is necessary and budgets support the total cost of ownership of the asset.
- Leveraged the IT Asset Management and Analytics team resources to create reporting and dashboards that quantify and highlight compliance with the new processes, providing an executive view that drove accountability.
2018 : 2019
Ameriprise Financial Services, Inc.
Lead Process Analyst and Project Manager
Lead the initiation process for all cyber security projects. Participated in each project to ensure business value was delivered.
Managed the Enterprise Security Services capital budget, monitored project spend, projected future project outlays, ensured capital spending remained in line while maximizing the impact on security capabilities.
Established scope, gathered requirements, prepared cost benefit analysis, and presented each Cyber Security project to the leadership team for approval.
Initiated and participated cyber security projects related to endpoint security (Tanium), Security Incident and Even Monitoring (LogRhythm), Identity and Access Management (SailPoint), Privileged Account Management (CyberArk), Vulnerability Management (Rapid7), Intrusion Protection Systems (Checkpoint) and encryption of PII and CRI data at rest and in-flight.
Worked with Cyber Delivery to introduce Agile Scrum team structures and processes to security projects.
2017 : 2018
Xcel Energy
Cyber Security Solutions Consultant
Created a team of Solution Consultants and Business Analysts to define business value in cyber security project definition and then deliver that value in project execution.
- Standardized project definition artifacts to ensure consistent understanding and documentation of scope, requirements, and business value.
- Enhanced governance processes to identify and maintain business value at each project gate.
- Established a ‘Security Needs Backlog’ to gather and prioritize security requirements as Xcel Energy created the Enterprise Security Services department.
- Facilitated the security strategy, road mapping and capital budgeting processes
Contracting Through Trissential.
2016 : 2017
Xcel Energy
Manager - Business Value Drivers - Enterprise Security Services
Led a team of business analysts in bringing a process focus to security tool deployments to ensure business value is realized.
- Implemented best practice business analysis and project management methods in security projects, ensuring the delivery of integrated processes and sustainable security capabilities.
- Supported the project definition phase for all security projects, negotiating the scope and estimating delivery team resource needs.
- Managed the BA resource pool, projecting headcount over time, assigning resources. Mentored BAs in there respective projects.
- High level requirements and leadership for SIEM, Identity and Access Management, Data Security, Certificate and Key Management, vulnerability management and endpoint security.
Contracting through Trissential.
2016 : 2016
Xcel Energy
Lead Business Analyst - Cyber Security Delivery
Skills
Business Analysis, Business Process, CaliberRM, Customer Service, Defect Elimination, Defect Identification, Defect Tracking, Financial Analysis, HP Quality Center, Interfaces, Leadership, Management, Microsoft SQL Server, Payment Systems, Portfolio Management, Process Improvement, Program Coordination, Program Management, Project Delivery, Project Management, Quality Assurance, Requirements Analysis, Requirements Gathering, Requirements Management, SDLC, Service Catalog, SQL, Strategic Planning, Team Building, Team Leadership, Use Case Analysis, Visio
About
Meticulous senior business analyst and project manager with 23 years of experience in retail IT designing, improving, and delivering functional enhancements to key business processes. Subject matter expert in Point of Sales, Payments, EMV, host integration, scenario based requirements, and the Software Development Life Cycle. A team leader with a proven track record of delivering value-added projects and programs on time by stretching each team member and supporting them in a truly collaborative team environment.