Nigel Sampson
Address: Lyman *****, United States of America Phone number: 781-***-****
Email address: *************@*****.***
Web: https://bold.pro/my/nigeltsampson
Strategic cybersecurity leader with 15+ years of experience developing transformative security solutions across global enterprises. Proven track record of reducing organizational risks by up to 90%, implementing Zero Trust architectures, and driving comprehensive security strategies that enhance operational efficiency and protect critical business assets. Expert in securing complex environments, achieving key certifications, and leading high- performance security teams through innovative technological and procedural interventions. 05/2018 Certified Information Systems Security Professional (CISSP) ISC2
05/2009 Cisco Advanced Routing and Swithcing
Cisco
London, United Kingdom 5 x GCSE's
East Barnet School
# Leadership # Strategic Thinking # Relationship Building # Communication # Risk Assessment
# Team Management # Problem Solving # Client Focused # Innovation # Training and Development 03/2024 – 12/2024
Dedham, Massachusetts,
United States
Head of Security and IT Ops
DoseSpot
Responsible for leading and developing the Cybersecurity and IT Operations function for a leading software development company in the Healthcare industry.
• Led the company's first HITRUST certifications.
• Achieved SOC 2 Type compliance for 2 lines of business
• Deployed CrowdStrike EDR and Automox Patch Management solutions
• Implemented passwordless access and single sign on for all users. 02/2022 – 02/2024
Needham, Massachusetts,
United States
Director of Global Cybersecurity & CISO
IDG (International Data Group)
Spearheaded the development and implementation of a comprehensive global cybersecurity program across 7 business units with disparate tech stacks in 65 countries, covering 4,500 employees. Established strong relationships with key stakeholders, including executive management, legal teams, and HR. Conducted regular risk assessments and developed risk mitigation strategies to minimize security vulnerabilities.
• Implemented: Zero Trust Network Access, Attack Surface Management, Patch Management, Asset Management, Managed Detection and Response, Secure Access Service Edge, brand protection, and Third-Party Risk Management.
• Reduced the attack surface by 30%
• Reduced vulnerabilities by 80%
Profile
Certificates
Education
Strengths
Work Experience
1/3
• Improved global IT risk profile by 40%.
01/2020 – 02/2022
Waltham, Massachusetts,
United States
Director of Cybersecurity & CISO
Alegeus
• Developed comprehensive compliance program encompassing PCI, SOC 1 and SOC 2 compliance.
• Created security operations and engineering teams to manage and maintain security controls supporting the compliance program.
• Reduced compliance risk by 60%.
• Deployed data protection and threat prevention solutions. 08/2018 – 10/2019
North Waltham,
Massachusetts
Director Information Security & CISO
Cotiviti
Responsible for the development, maintenance, and implementation of the Information Security Management program, assuring the confidentiality, integrity, and controlled availability of customer, employee and business information.
• Achieved HITRUST certification for 6 lines of business.
• Provided quarterly updates to the Board.
• Manages a team of 12 Security Analysts, Risk Analysts and Engineers
• Developed an Application Security Program
• Interfaced with clients on Security Assessment calls.
• Lead security awareness activities.
05/2017 – 07/2018
Andover, massachussetts
Head of Security Operations
Charter Communications
• Developed and managed a global SOC team on a day-to-day basis.
• Managed 97 client cloud environments and security of the internal management network.
• Advises clients on industry leading best practices and internal best practices for cloud security services.
10/2014 – 05/2017
Bedford, Massachusetts
Head Of Information Security\ISO
Aspen Technology
• Created a Mergers and Acquisition work program to limit risk for acquisition targets.
• Presented key metrics to Executive leadership.
• Improved IT operational workload by 75% through threat mitigation
• Created Security Awareness training that lowered security incidents by 50%.
• Deployed key security technologies, Network Access Control (NAC), Data Loss Prevention (DLP), Security Information and Event Management (SIEM), Web Application Firewall (WAF) Mobile, Device Management (MDM) and Security Email Gateway (SEG).
04/2012 – 10/2014
Boston, Ma.
Cybersecurity Project Manager
MBTA
Responsible for deploying 3 cybersecurity solutions and driving the MBTAs first PCI program through to certification. Assisted MassDoT with their PCI certification program. Working with state and local government officials with building a cybersecurity programs to protect MBTA critical assets. Providing network security guidance and compliance program development.
01/2020 Understanding the Benefits of the Capability Maturity Model Integration (CMMI)
Tripwire
https://www.tripwire.com/state-of-security/featured/understanding-benefits- capability-maturity-model-integration-cmmi/
Work Experience
Publications
2/3
01/2010 Network Security Demands both Internal and External Penetration Testing
Western Independent Bankers Magazine
http://www.wib.org/publications__resources/article_library/2009- 10/nov10_sampson.html
01/2009 Seven Often-Overlooked Information Security Issues Western Independent Bankers Magazine
http://www.wib.org/publications__resources/article_library/2009- 10/sep09_overlooked.html
01/2009 Encryption – An Important Line of Defense
Western Independent Bankers Magazine
http://www.wib.org/publications__resources/technology__security_digest/2009- 10/sep09/chen.html
06/2013 MBTA Secretary of Transportation Innovation Award MBTA Secretary of Transport
05/2023 – present
Lyman, United States
Chairman IT Committee
Town of Lyman, Maine
As Chair of the IT Committee. Responsible for identifying state grants and programs that support the towns IT and Cybersecurity initiatives. Include BEAD and Maine Connect.
Boston CISO Execnet
Aphinia CISO Network
Cyera CISO Network
Vigitrust Global Advisory Board Member – 2023 - present Secureworld Advisory Board Member – 2021 to 2024
Blackberry Cylance Advisory Board Member – 2021 to 2024 ISC2 Member
ISACA Member
Publications
Awards
Volunteering
Associations
3/3