Risk and Compliance Manager
Aptiv Connected Services – Allen Park, Michigan
June 2018 – Present
• Conduct risk assessments using the NIST Cybersecurity Framework to highlight weaknesses within the organization. Once completed, I developed an 18-month cyber security strategy for the organization to mitigate findings from the report.
• Ensure the company is compliant with the General Data Protection Regulation (GDPR) by remediating findings discovered by an outside 3rd party consulting firm.
• Developed Aptiv Connected Services first governance, risk, and compliance program by working with various teams within the organization and creating policies, standards, and procedures.
• Perform day to day security operations for our cloud-based IT resources. Run security scans, review IDS logs, configure and deploy hardware security modules, and work with our cloud automation team to develop secure architectures in Amazon AWS and Microsoft Azure.
• Gave presentations on various cyber security topics to entire staff members.

Chief Information Security Officer
Merit Network, Inc – Ann Arbor, Michigan
October 2015 – June 2018
• Created Merit’s Community CISO program which performs risk assessments for member organizations. The team evaluates the administrative and technical controls based on the use of Open Source Intelligence, the NIST Cybersecurity Framework, and the Centers for Internet Security Critical Security Controls.
• Responsible for Merit’s internal governance, risk, and compliance program.
• Co-chair the development of Merit Network’s Cyber Defense Portfolio which provides managed security services to its membership.
• Develop content for workshops and presentations which have been given throughout the country.
• Create training workshops for internal employees on various security related topics.

Enterprise Security Architect – Enterprise Architecture
State of Michigan – Lansing, Michigan
May 2013 – October 2015
• Perform key security roles in assisting state agencies architect new or existing systems, identify risks, and develop compensating controls and remediation plans. Also ensure the systems meet federal, state, and 3rd party compliance regulations.
• Lead security architect for projects related to federated identity management and deployment of internal cloud services.
• Create and modify State of Michigan security-related policies, standards, and procedures.
• Co-chair of the Enterprise Audit team and also a member of the PCI, Enterprise Architecture, Solution Design Team, and Medicaid Compliance Project core teams.
• Conduct preliminary audits- for the state’s IRS and Affordable Care Act programs to ensure they meet Publication 1075 and NIST SP 800-53 control objectives.
• Develop continuing education for internal staff.

jb Consultants, LLC – Ypsilanti, Michigan
August 2010 – Present
• Assist small businesses in their information technology needs which include network and system administration along with disaster recovery and business continuity planning.

Adjunct Faculty
Lansing Community College – Lansing, Michigan
August 2012 – May 2013
• Taught CITN 230, an introductory course to the Linux/UNIX operating system.
• Educated students on the history of the Linux operating system, file system structures, command line tools, and configuration of system services.

Network Security Specialist – Telecommunications
State of Michigan – Lansing, Michigan
March 2012 – May 2013
• Coordinated and developed strategic network security plans to protect the State of Michigan’s data, voice, and video traffic.
• Ensured new and piloted State of Michigan projects met federal, state and third party guidelines as part of the Enterprise Architecture core team.
• Served as the telecommunications representative for PCI and IRS audit core teams.
• Conducted internal departmental control evaluations using CobiT 4.1 governance framework.

Senior Systems Engineer
Millbrook Printing Company – Grand Ledge, Michigan
June 2010 – March 2012
• Developed and executed a project to redesign the company’s data center to provide high availability for the company and its customers.
• Lead systems engineer for managed hosting services to external customers which included web, email, and database hosting.
• Simplified desktop and server configuration along with implementing centralized identity management.
• Improved Linux deployment and management by creating customized scripts, implemented centralized configuration management services, and custom RPM development.

Systems Administrator
Ferris State University – Big Rapids, Michigan
July 2008 – June 2010
• Deployed hard drive and removable media encryption software to high risk users.
• Migrated the university’s LDAP servers while adding multimaster replication for high availability, SSL encryption, and roaming user home directories.
• Developed new server builds based on industry standard security guidelines along with creating tools to streamline the process.
• Supervised student employees who worked for the enterprise technology services department. Responsible for assigning projects, mentoring, and giving yearly reviews to those employees.
Network Technician Ferris State University Big Rapids, MichigaN May 2007 – July 2008
• Responsible for installation and maintenance of the university’s internal and perimeter firewalls, IDS/IPS, load balancers and network access control.
• Configured and maintained over 120 Nortel layer 2 and 3 switches, Nortel wireless switches, and 600 Nortel and Cisco wireless access points.
• Lead projects for hard drive encryption, RSA two factor authentication, and web based network statistical data.

Ferris State University – Big Rapids, Michigan
Master of Science in Information Systems Management
Graduated – May 2009

Central Michigan University – Mount Pleasant, Michigan
Bachelor of Science in Information Technology
Minor in Media Design, Production, and Technology
Graduated – May 2007

Cybersecurity Education and Certification Opportunities
Kansas Research and Education Network –

Identity Ecosystem Steering Group – 10th Plenary
State of Michigan NSTIC pilot presentation –

Certified Information Systems Security Professional (ISC2)
Certified Secure Web Application Engineer (Mile2)
Certified Penetration Testing Engineer (Mile2)
Cisco Certified Network Associate (Cisco)
ITIL v3 Foundation (AXELOS Ltd.)
CobiT 4.1 Foundation (ISACA)
Advanced Studies Certificate in Information Security and Network Management
(Ferris State University)
Security+ (CompTIA)

FBI InfraGard


Share this Page