Cybersecurity Governance Lead - Cox Automotive
(2025-07)
Lead enterprise cybersecurity governance across acquisitions and divestitures, aligning Corporate Development, M&A program teams, security control owners, architecture, risk, compliance, IAM, AppSec, cloud, and operations around risk-based execution and business continuity.
- Created executive-level M&A security reporting that gives senior leadership a consolidated view of integration progress, control maturity, ownership, dependencies, and risks across a portfolio of active acquisitions and divestitures.
- Reduced transaction and separation risk by identifying and governing dependencies across AWS and Azure environments, identity and access, domains, applications, data, endpoint protection, vulnerability scanning, WAF, logging, monitoring, and third-party services.
- Established repeatable acquisition and divestiture governance through standardized intake frameworks, control trackers, runbooks, evidence requirements, risk escalation practices, and closure criteria, improving accountability, consistency, and audit readiness.
- Directed cybersecurity separation governance for Brazil and FleetMaster divestitures, coordinating secure access deprovisioning, cloud and domain transfer dependencies, security-tool removal, monitoring transitions, data protection, TSA obligations, and post-close ownership.
- Advanced acquisition security integration across AIM, Manheim Spain, FleetNet, Corcoran, and BLL by driving control validation, risk decisions, SSO/MFA exception paths, compensating controls, logging visibility, and remediation accountability.
- Facilitated cross-functional risk decisions where standard controls were not immediately achievable, clarifying business ownership, interim safeguards, acceptance paths, and long-term remediation so integration could progress without obscuring residual risk.
- Strengthened organizational capability by converting lessons from current and historical transactions into reusable guidance, decision frameworks, executive dashboards, and knowledge assets for future M&A activity.
Global Cybersecurity Program Manager - Genuine Parts Company
(2019-10 - 2025-07)
- Established and led the security M&A function, creating governance frameworks and repeatable practices that scaled cybersecurity due diligence and integration across global acquisitions.
- Directed cyber due diligence and translated security findings into business-focused risk insights for executive leadership, supporting informed decisions for multimillion-dollar transactions.
- Led post-acquisition integration of security tools, processes, and teams, strengthening operational resilience, service continuity, and alignment with enterprise standards.
- Managed a portfolio of global cybersecurity initiatives, aligning business priorities, security architecture, delivery roadmaps, risks, budgets, and executive stakeholders across matrixed teams.
- Built and led security awareness and phishing programs, establishing roadmaps, campaigns, simulations, and stakeholder communications to strengthen workforce security practices.
- Developed team capability through mentoring, governance discipline, and clear performance expectations while coordinating delivery across business units, vendors, and technical functions.
IT Project Manager - Serta Simmons Bedding Inc.
(2017-05 - 2019-10)
Led enterprise technology and security programs spanning Workday, ServiceNow, identity governance, infrastructure protection, and operational transformation.
- Automated user provisioning, deprovisioning, user-access reviews, and segregation-of-duties controls for 600+ users, improving access governance and reducing manual processing and error risk.
- Partnered with the Vice President of Human Resources to implement an HR ServiceNow solution, closing process gaps and improving service delivery efficiency.
- Mitigated ransomware and malware exposure across 700+ servers by governing monthly Microsoft patch deployment through SCCM and tracking remediation execution.
- Directed a Symantec upgrade across 1,700+ endpoints, strengthening protection for enterprise servers and workstations while coordinating technical and business stakeholders.
Project Manager - Carter's Inc.
(2014-01 - 2017-05)
- Led a portfolio of enterprise initiatives through executive governance, complex roadmaps, vendor coordination, and cross-functional delivery involving 30+ stakeholders and schedules exceeding 1,000 tasks.
- Strengthened the PMO operating model by standardizing governance, planning, reporting, and delivery practices, improving organizational consistency and execution visibility.
- Directed Tier 1 security initiatives spanning encryption, database monitoring, log forwarding, vulnerability scanning, penetration testing, and privileged service-account governance.
- Influenced business and technology leaders on priorities, risks, and delivery decisions while mentoring project teams and sustaining alignment with strategic objectives.