I'm an information security professional with more than 10 years experience in consulting and recent experience as a security program owner. I'm a consummate generalist with specialization in incident management, security operations, and technical compliance testing. I have extensive experience leading assessments against ISO 27002, PCI-DSS, and HIPAA. I have expertise creating security policy, developing incident response capability, assessing software security risks, and strengthening an information security practice. I'm a confident leader, technical communicator, public speaker, presenter, and security evangelist.