The arc, in full.
Sixteen years from a help-desk seat to executive-level ownership of security, cloud, and compliance + high-stakes leadership as a Signal and Cyber officer with the US Army.
Timeline
- Buddy · Insurance technology SaaS platform
Director of Information & Security
2022 - PresentSole leadership and responsibility for information security, cloud architecture, regulatory compliance, and DevOps at a SaaS platform handling heavily regulated data.
- Designed, built, and maintained the entire AWS production, testing, and QA environments from inception: automated CI/CD, infrastructure-as-code workflows, VPC architecture, IAM strategy, encryption standards, network segmentation, and high-availability patterns.
- Established the information security and regulatory compliance program from inception, achieving and maintaining SOC 2 Type 2, PCI DSS, GDPR, and CCPA as sole owner of policy, controls, audits, and evidence.
- Built and operate the internal IT platform: centralized endpoint administration and EDR, identity and access management, networking, remote monitoring & management, and helpdesk systems.
- Established partnerships with engineering and business leadership groups on secure SDLC, architecture security review, and IaC patterns; run a hybrid AWS and GCP strategy with GCP dedicated to AI and ML workloads.
- Lead and supported custom AI development for the business: internal MCP services, chat and RAG applications, API integration and ingestion pipelines, and cloud-native deployments.
- Bluetec · Managed security and technology services firm
Founder & CISO
2018 - PresentFounded and run an independent managed IT and cyber security practice with full P&L ownership, from business development through delivery.
- Scaled the practice to 13 concurrent recurring MSP and MSSP contracts boasting six-figure ARR, plus selective project-based engagements.
- Lead security engineering and architecture work across incident response, vulnerability assessment, and penetration testing for small and mid-market clients.
- Designed Microsoft 365 and Google Workspace tenancies and secure configurations across multiple client environments providing secure Transport Rules, Message Encryption, Identity Management, Conditional Access, MFA enforcement, and Zero-Trust architecture.
- Conducted multiple high-level pentests, risk assessments, and incident response engagements for clients in healthcare, finance, and technology sectors, including tabletop exercises and red team engagements providing detailed reporting and metrics for executive stakeholders.
- Designed and implemented high-risk cloud migrations and tenancy mergers resulting in full network transitions while incurring zero downtime or security incidents.
- Lumber Liquidators · Publicly traded national retailer, 400+ stores
Senior Network Security Engineer
2018 - 2019Owned enterprise security controls and the vulnerability management program across a national retail footprint and its ecommerce platform.
- Designed and operated EDR, vulnerability management, and DLP controls across the enterprise.
- Led the vulnerability management program: scan coverage, prioritization frameworks, and cross-team remediation tracking.
- Performed enterprise security assessments, reported critical infrastructure and process gaps to leadership, and built remediation roadmaps.
- Ran daily security operations: event monitoring, alert triage, and incident response.
- Independent Container Line · International shipping enterprise, US and European offices
Network Engineer
2015 - 2018Owned global IT infrastructure across multiple US and European offices, from the WAN edge to end-user computing.
- Designed and operated a multi-site Cisco environment: ASA firewalls with SourceFire, Catalyst and Nexus switching, and site-to-site VPNs across US and European locations.
- Migrated the company website and disaster recovery infrastructure to Microsoft Azure, including DR for domain services.
- Led a global Windows 7 to Windows 10 migration via SCCM and maintained a Citrix XenApp environment for distributed users.
- VCU Health Systems · Level 1 trauma university hospital
Migration Project Manager / Deskside Support
2014 - 2015Promoted from technician to project manager within six months and led a large-scale endpoint migration ahead of schedule.
- Led a six-technician team through the migration of 10,000+ workstations across 30+ departments and statewide locations, closing six months ahead of forecast.
- Following project closure, moved into deskside engineering: tier 2 and 3 incident response, Active Directory and SCCM administration, and break-fix engineering.
- Fuller Dentistry · Small-business healthcare practice
IT Manager
2010 - 2014Promoted from office assistant to IT manager and built the practice technology stack from the ground up.
- Managed and maintained the full technology stack, including a HIPAA-compliant network and security controls.
- Implemented and administered an on-premises Active Directory tenancy: domain controllers,identity management, group policy enforcement, and secure file shares.
- Sourced, implemented, and maintained the practice management software and EHR system, including secure configurations and integrations.
Military Service
First Lieutenant, Cyber & Signal Operations
2013 - 2019- Network Warfare Team Lead
91st Cyber Brigade, 143rd Cyber Warfare Company
2017 - 2019Network Warfare Team Lead in one of the Army’s earliest National Guard cyber units. Designed and ran offensive cyber operations training for an approximately 100-person company, coordinated with sister units on joint operations supporting federal objectives, and led teams delivering scheduled penetration tests and vulnerability assessments for state and municipal government partners.
- Signals Officer & Executive Officer
29th Infantry Division
2013 - 2017Dual-role assignment supporting Division HQ Operations and Signals companies. Led 45+ Signal personnel and supported Division-level communications across radio, satellite, line-of-sight, and transport encryption systems, sustaining 400+ personnel through deployment and garrison operations.
Education & Certifications
B.S., Anthropology Virginia Commonwealth University, Richmond, VA
- CompTIA Security+
- U.S. Department of Defense Secret Clearance
- Honor Graduate, Signal Basic Officer Leadership (Fort Gordon, GA)