Ted S.
Details
Computer and Information Systems Security/Information Assurance
The University of Dallas
2017 : 2020
Bachelor of Science
Mass Communication/Media Studies
Texas A&M University
1995 : 2000
Oversees program transformation projects that expand use of OSINT and threat intelligence.
Directs formulation and operationalization of risk reporting strategies while managing a team of risk management associates.
Drives innovation in cyber risk identification, analysis and analytical product and service enhancements.
Partners with line of business information security officers, second line of defense functions and other appropriate stakeholders control owners.
Oversees development and delivery of analytical models and data aggregation-reporting supporting risk identification, outcomes and thematic response such as ransomware.
Oversees OSINT/continuous monitoring program and TP incident response and intelligence processing routines.
2020 : Present
Bank of America
Cybersecurity Sr. Manager - Risk Quantification and Threat Analysis
Responsible to prepare and deliver coursework in engaging, innovative, and discipline-appropriate ways that reflect a commitment to the college's Core Values.
Delivers course content using a variety of teaching styles and provide interesting and engaging assignments that demonstrate the real-world applications of concepts covered
Observes and evaluates student performance in meeting course objectives and learning outcomes through assignments, projects, discussions or examinations; provide feedback in a timely manner on student progress.
Provides student consultation through office hours or scheduled appointments or by phone or email
2022 :
Collin College
Adjunct Professor
Conducts reviews of existing exam content and update based on current industry norms.
Build assessment stems driven by the depth of knowledge levels and bloom's taxonomy.
Perform research and analysis of cybersecurity reference material for consideration for inclusion in the blueprint.
Revise and address non conformities in existing content and poor test stems.
Participate in group review and analysis sessions with industry leaders.
2018 :
(ISC)²
Curriculum Reviewer and Exam Developer
Assisted in the updating and refinement of risk scoring, threat modeling, visualizations, risk triggers and treatment options.
Supported aggregation and improvement of risk visibility through data integration.
Established and maintained relationships with line of business, technology, and risk partners to foster engagement and understanding of GIS-TP risk evaluation strategy.
Performed industry benchmarking, current state documentation and analysis in support of future state roadmap.
Captured risk and threats resulting from emerging and innovative technology capitalizing upon data aggregation, monitoring, alerting and forecasting opportunities.
Drove development of executive level reporting and dossiers.
2019 : 2020
Bank of America
VP, Cyber Risk
Facilitated cyber risk and cyber security maturity assessments for Fortune 1000-500 firms/M&A targets providing unbiased insight into key cyber program elements through benchmarks and recommendations for improvement.
Performed CxO and ELT audit readiness and advisory services in cross functional delivery teams.
Performed control gap analysis and control improvement projects based on common security frameworks such as NIST, ISO, HIPAA/HITRUST, PCI, and CIS Benchmarks.
Remediated compliance with industry statutes and regulations across multiple industries (e.g. CCPA, HIPAA, FFIEC, NY DFS 500, NIST, GLBA).
Participated in the design of cyber security improvement and maturity optimization plans.
Developed and operationalized information security programs and related risk management components.
Provided guidance on the administration and maintenance of security systems infrastructure, applications, devices, tools, and cloud services.
2018 : 2019
Coalfire
Senior Information Security Consultant
Skills
Amazon Web Services (AWS), Business Process Improvement, Cloud Computing, Cloud Security, Computer Networking, Continuous Improvement, Customer Service, Cybersecurity, Cyber Threat Intelligence (CTI), Distributed Teams, DLP, Drupal, Ethical Hacking, FERPA, Higher Education, HIPAA, Incident Management, Information Security, Information Security Management, Integrating Technology in the Classroom, ISO 20000, IT Asset Management, IT Business Strategy, ITIL, IT Risk Management, IT Security Assessments, IT Security Best Practices, IT Service Management, IT Strategy, JavaScript, Leadership, Management, Microsoft Azure, MySQL, Network Administration, Project Management, Risk Management, Security Compliance, Service Portfolio Management, Shared Services, System Administration, Team Leadership, Third Party Vendor Management, Threat Modeling, Vendor Management, Vendor Risk Management , Virtualization, VMware, Vulnerability Management, Web Production Management, Section 508, Mac OS, Adobe Creative Suite, Active Directory, Desktop Support Management, BMC Remedy, SCCM, Apple Remote Desktop, PMBOK, HTML 5, Joomla, WordPress, Audio Post Production, Studio Recording, Video Editing, Assistive Technology, Blackboard, End-User Computing, Help Desk Support, Business Process, Integrating Technology, Service Portfolio, Desktop Support, IT Security Best, Web Production, Microsoft Sharepoint, ASP.NET
About
An accomplished security leader, risk-compliance advisor and program executive offering a unique combination of leadership, technical ability and social intelligence exercised in mid to large enterprise environments. Mastery of multiple disciplines including policies and standards, risk and control assessment, regulatory, vulnerability management and cloud risk.
- Track record of solving complex cybersecurity risk challenges including governance and executing program delivery.
- Strong analytical skills and the ability to drive and deliver narratives that include strategic implications from datasets.
- Experience working through ambiguity and pioneering new programmatic initiatives.
- Strong team building skills and horizontal influencing ability.
- Knowledge of healthcare, financial service industry, and higher education.
- Cloud controls and threat modeling experience.