Jim Creese, CISSP
Details
Bank of America
VP Business Information Security Officer (BISO)
Brought in as a change agent to assess, reorganize, and reinvigorate an underperforming division that was experiencing significant trust issues and change fatigue. Collaborated across inter-departmental teams to set, guide, and continuously improve Information Security organizational and operational strategies. Managed annual division budget of $5.25M.
• Identified efficiencies and cost savings in excess of $600K in less than two years through consolidation of systems and servers, renegotiation of enterprise licensing costs and decommissioning legacy systems used for historical data reference.
• Rebuilt trust within division and across organization by implementing Speed of Trust methodology and by facilitating a series of sessions between IT leadership and Executive Directors of four city departments to identify history of and possible solutions to mistrust of IT’s capabilities to deliver quality and timely service.
• Reduced incident closure times by 72% and increased number of projects completed on time 240% even while department gained additional applications to support by cultivating a cohesive, high-performing, dedicated and productive team.
• Lowered organization’s risk exposure by chartering asset management project to secure and safeguard technology resources : oversaw inventorying and documentation procedures, implemented policies for proper identification and documentation of hardware and software
• Developed and implemented a strategic plan and comprehensive enterprise information security and technology governance, risk management and compliance program.
• Spearheaded development and implementation of a disaster recovery / business continuity program for technology and information assets to complement the continuity of operations plan.
• Developed the standards, protocols and approved tools for incident response and investigation.
• Oversaw efforts across multiple city departments to create Service-Level Agreements and RACIs.
2016 : 2020
City of Boulder
Deputy Director, Innovation and Technology
Progressive experience culminated in Director of IT title for last 8 years with the assigned roles of CIO and CISO. Held oversight for 27-person organization with $6.2M annual budget, including oversight of operational and capital accounts.
• Oversaw the architecting, planning, procurement and execution of an infrastructure overhaul over a seven-year period to create high-availability, business continuity and scalability. Systems included : Institutional Fiber Network connecting 19 physical sites, multi-data center replication, server virtualization, VOIP Telephony, and enterprise disk-based backup.
• Created, presented to executive leadership, and spearheaded execution of a three-year strategic plan and tactical roadmap to develop, implement, and educate the organization on an information security plan that incorporated a full suite of security policies, controls and cyber incident response planning.
o Developed KPI’s for IT and Information Security operations; created a security advisory team; headed the cyber incident command for multiple attacks on the city’s assets.
o Addressed the five most critical areas of risk during the three-year initial implementation, and authored roadmap for three- and five-year plans to continually mature the organization’s IS posture.
• Established and headed Information Technology Advisory Committee which included Information Security
2000 : 2016
City of Thornton, Colorado
Chief Information Officer / Chief Information Security Officer
About
I’m a builder of organizational excellence: I love to inspire people at work to think big, innovate, and drive continuous improvement. I’m a committed, hands-on leader with a strong record of success implementing defense-in-depth security architecture and infrastructure.
As a seasoned project manager, I enjoy delving deeply into complex technical challenges in collaboration with multi-disciplinary groups to identify requirements and find and implement creative solutions to meet business needs.
I excel at cultivating high-performing teams through empowerment, hands-on coaching, and effective communication. My broad skill set built in both public and private sector roles supports an exceptional ability to build shared understanding across disparate stakeholder groups to reach business goals.
My areas of expertise include:
Information Security Strategy & Planning
Team Leadership & Mentoring
Disaster Recovery Planning (DRP)
Risk Assessment & Compliance
Cross-functional Collaboration
Project Management
Executive-Level Communication & Partnership
Computer Forensics & Litigation Support
Analytics, KPI Development and Performance Metrics
Threat and Vulnerability Management
Business Continuity Planning (BCP)
Incident Response
If you are looking for an adept team leader and technologist to guide your organization’s Information Security strategy,
I would love to connect with you! jim.creese@gmail.com