I’m a two-time CISO, award-winning cybersecurity leader, and the founder of Cyberdiligent. For over 25 years, I’ve built and led cybersecurity, privacy, and risk programs across financial services, fintech, SaaS, security products and other highly regulated industries.
My work and perspective have been published in leading industry forums, and I serve as Faculty with IANS, advising security leaders and boards on modern cyber risk, AI governance, and executive-level decision-making. I’m also a frequent speaker at executive and industry events, where I focus on translating complex technical risk into clear, actionable business strategy.
Today, I work with boards, executives, founders, and organizations who want to adopt AI responsibly, modernize their security posture, and make confident decisions about cyber and data risk without grinding innovation to a halt.
What I’ve built
• 24/7 Security Operations Centers from the ground up
• IPO-readiness security transformations
• Enterprise risk and governance programs aligned to NIST, ISO, and regulatory frameworks
• Incident response programs that reduced resolution time by 40%
• Regulatory exam preparation for SEC, OCC, FDIC, FRB and state regulators
When leaders reach out to me, it’s usually for:
• Board-ready briefings on cyber and AI risk
• Practical AI governance frameworks that work in the real world
• Regulatory exam readiness and audit support
• Incident response leadership from containment through disclosure
• Executive guidance during and after security incidents
• Breach disclosure strategy and stakeholder communications
• Security program overhauls that balance protection with business velocity
• Strategic counsel during critical moments: audits, breaches, M&A, and fundraising
My approach is direct, practical, and relentlessly focused on outcomes that matter to your business.