Director of Information Security at Arctera Corporation (2024-12 – 2025-12)
- Established and led cybersecurity function post-divestiture, defining operating model, governance, strategic direction to enhance security posture
- Built and scaled high-performing security organization, implementing core capabilities across SIEM, IAM, DLP, network security to support business objectives
- Developed and executed multi-year enterprise security strategy aligned to NIST and CIS frameworks, ensuring comprehensive risk management
- Partnered with executive leadership to ensure regulatory continuity and strengthen enterprise risk posture during transition
Director, Security Architecture & Engineering at Veritas Technologies (2022-04 – 2024-12)
- Led global security architecture strategy across hybrid and multi-cloud environments, enabling secure digital transformation
- Architected and advanced Zero Trust frameworks, reducing attack surface and improving resilience
- Directed enterprise security capabilities, enhancing detection, identity, and infrastructure protection
- Collaborated with engineering and DevSecOps teams to integrate security-by-design into enterprise platforms
Senior Manager, Security Architecture & Engineering at Veritas Technologies (2016-09 – 2022-04)
- Led enterprise security architecture initiatives, enhancing control frameworks for hybrid environments and ensuring compliance with security standards
- Implemented NIST and CIS-aligned controls supporting successful SOC 2 audits and compliance outcomes
- Integrated security into CI/CD pipelines, increasing DevSecOps maturity and enabling faster, safer deployment across engineering teams
- Conducted enterprise risk assessments and improved incident response processes to enhance organizational resilience
Senior Principal Security Engineer at Veritas Technologies (2015-10 – 2016-09)
- Designed enterprise security review frameworks, standardizing risk identification and remediation processes to enhance overall security posture
- Developed executive-level reporting to improve visibility into enterprise cyber risk
- Established governance processes for policy exceptions and compliance oversight, ensuring alignment with regulatory requirements
- Partnered with cross-functional teams to embed security controls into enterprise systems and initiatives, fostering a culture of security awareness and compliance
Secure Business Integration Officer at Symantec (2012-02 – 2015-10)
- Integrated security into enterprise initiatives and transformation programs within business units
- Led security integration for a major ERP implementation, ensuring alignment with enterprise security standards
- Collaborated with business and technical stakeholders to deliver secure, scalable solutions that meet enterprise requirements
- Established security controls across identity, data protection, and application environments to enhance overall security posture
Senior Principal Compliance Analyst at Symantec (2008-10 – 2012-02)
- Led enterprise compliance initiatives across NIST, ISO 27001, SOC 2, and PCI-DSS frameworks
- Conducted risk assessments and control gap analyses, identifying key vulnerabilities to enhance compliance posture
- Developed governance frameworks and reporting dashboards, ensuring audit readiness and accountability across the organization
- Delivered security awareness and compliance training, fostering a culture of risk management and compliance throughout the organization