Post Job Free
Sign in

Cybersecurity & Technology Executive Turnaround Leader

Location:
Bloomfield, NJ
Salary:
$210,000
Posted:
September 22, 2026

Contact this candidate

Resume:

EXECUTIVE PROFILE

Executive technology and cybersecurity leader with more than 25 years of success leading enterprise cybersecurity, technology, privacy, governance, infrastructure, and digital transformation initiatives for Ivy League universities, academic medical centers, healthcare systems, global financial institutions, higher education, consulting organizations, and Fortune 500 medical device manufacturers.

Recognized for building enterprise cybersecurity organizations from the ground up, modernizing complex technology environments, and advising Boards of Trustees, Presidents, CIOs, CTOs, Audit Committees, executive leadership, and regulators on cyber risk, enterprise resilience, technology strategy, governance, privacy, and regulatory compliance.

Recruited as the first Chief Information Security Officer in Yale University's history, with enterprise responsibility spanning Yale University and Yale School of Medicine, where I established the University's inaugural enterprise cybersecurity program. Subsequently served as the executive technology leader responsible for enterprise infrastructure and operations supporting 65,000 users across 200 New York University facilities and 14 global locations.

A collaborative executive who combines strategic leadership with deep technical expertise to transform cybersecurity from a compliance function into a business enabler while protecting critical institutional assets, research environments, regulated healthcare information, financial systems, and enterprise technology operations.

SELECTED EXECUTIVE ACHIEVEMENTS

Appointed the first Chief Information Security Officer for Yale University with enterprise responsibility across Yale University and Yale School of Medicine.

Built enterprise cybersecurity programs for Ivy League universities, academic medical centers, healthcare organizations, banking institutions, consulting firms, and Fortune 500 medical device manufacturers.

Executive technology leader responsible for infrastructure supporting 65,000 users, 200 facilities, 14 international locations, $60M+ annual budgets, and organizations of more than 130 technology professionals.

Trusted advisor to Boards of Trustees, Presidents, CIOs, CTOs, Audit Committees, General Counsel, Privacy Officers, and executive leadership regarding enterprise cyber risk, governance, technology modernization, and digital transformation.

Directed enterprise security programs aligned with NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-171, ISO/IEC 27001, HIPAA, FERPA, GLBA, PCI DSS, GDPR, HITECH, and HITRUST.

Successfully led enterprise initiatives involving Zero Trust architecture, cloud security, enterprise risk management, vulnerability management, identity governance, security operations, incident response, business continuity, disaster recovery, and regulatory compliance.

CORE EXECUTIVE COMPETENCIES

Executive Leadership

Enterprise Strategy • Executive Advisory • Board Reporting • Digital Transformation • Technology Leadership • Organizational Change • Strategic Planning • Budget Management • Executive Communications

Cybersecurity Leadership

Enterprise Security Strategy • Cyber Risk Management • Security Governance • Security Operations • Security Architecture • Zero Trust • Security Modernization • Security Awareness • Security Metrics

Enterprise Technology

Infrastructure Strategy • Cloud Computing • Data Centers • Enterprise Networking • Identity & Access Management • Enterprise Applications • Infrastructure Modernization • Operational Resilience

Governance, Risk & Compliance

Enterprise Risk Management • HIPAA • FERPA • GLBA • PCI DSS • GDPR • HITRUST • ISO/IEC 27001 • NIST CSF • NIST 800-53 • NIST 800-171 • Privacy • Internal Audit • Third-Party Risk

PROFESSIONAL EXPERIENCE

SCHRING CONSULTING — Shelton, Connecticut

Virtual Chief Information Security Officer (Concurrent Executive Consulting Engagement)

2023 – Present

Serve as Virtual Chief Information Security Officer for higher education institutions, providing executive cybersecurity leadership, governance, enterprise risk management, and strategic technology advisory services.

Advise Presidents, CIOs, executive leadership teams, and governing boards regarding cybersecurity strategy, enterprise risk, technology modernization, regulatory compliance, and institutional resilience.

Lead comprehensive cybersecurity assessments to identify inherited technical debt, governance deficiencies, unmanaged cyber risk, control failures, and operational weaknesses accumulated through years of underinvestment and inconsistent security oversight.

Develop multi-year executive remediation roadmaps aligned with NIST Cybersecurity Framework, ISO/IEC 27001, FERPA, HIPAA, GLBA, and PCI DSS while helping institutions prioritize cybersecurity investments that measurably reduce enterprise risk.

Conduct executive risk briefings, policy modernization, security governance initiatives, third-party risk assessments, vulnerability management program evaluations, incident response planning, and security maturity assessments.

PROFESSIONAL EXPERIENCE (Continued)

MINDRAY MEDICAL DEVICES — Mahwah, New Jersey

Information Security & Compliance Principal

2023 – Present

Provide enterprise leadership for information security, privacy, governance, and regulatory compliance supporting one of the world's largest medical device manufacturers. Advise executive leadership on cybersecurity risk, data protection, regulatory obligations, and enterprise security strategy across healthcare, manufacturing, and commercial operations.

Selected Contributions

Maintain the organization's ISO/IEC 27001:2022 Information Security Management System (ISMS), and ISO/IEC 27701 (PRIVACY) ensuring continued certification and ongoing alignment with internationally recognized cybersecurity standards.

Direct HIPAA compliance activities supporting more than 160 Business Associate Agreements (BAAs) across the United States.

Lead enterprise cybersecurity risk assessments, policy development, governance initiatives, control testing, privacy investigations, and security awareness programs.

Partner with Legal, Compliance, Privacy, and executive leadership to strengthen enterprise governance, reduce organizational risk, and improve regulatory readiness.

Provide executive reporting on cybersecurity posture, compliance maturity, enterprise risk, and emerging threats affecting healthcare technology.

ENGLEWOOD HEALTH — Englewood, New Jersey

Director, Information Security & Identity and Access Management

2022 – 2023

Recruited to modernize cybersecurity operations and establish enterprise security capabilities for a regional healthcare system supporting more than 160 clinical locations.

Selected Contributions

Established enterprise Security Information and Event Management (SIEM) and Technology Vulnerability Management (TVM) programs.

Directed enterprise Identity and Access Management strategy while strengthening protection of clinical, administrative, and Internet of Medical Things (IoMT) environments.

Leveraged HITRUST to benchmark organizational controls against multiple regulatory and cybersecurity frameworks.

Expanded enterprise security awareness through the KnowBe4 platform, increasing workforce readiness against phishing and social engineering threats.

MUFG (Mitsubishi UFJ Financial Group) — New York, New York

Vice President – Network Security & Enterprise Network Operations

2021 – 2022

Led enterprise network security, infrastructure operations, and vulnerability management for one of the world's largest financial institutions. Directed enterprise modernization initiatives while improving operational resilience and cybersecurity maturity.

Selected Contributions

Directed enterprise services including Vulnerability Management, Endpoint Detection & Response (EDR), SIEM, Anti-Malware, Application Whitelisting, and Next Generation Firewalls.

Implemented MITRE ATT&CK framework mapping within enterprise SIEM operations to improve threat visibility, incident response effectiveness, and executive reporting.

Led technology modernization for more than 300 enterprise network assets, improving lifecycle management and operational resilience.

Established operational governance processes integrating security operations with enterprise infrastructure management.

NEW YORK UNIVERSITY — New York, New York

Senior Director

Enterprise Technology Executive (Infrastructure & Operations)

2017 – 2019

Served as the senior executive responsible for enterprise infrastructure and technology operations supporting one of the nation's largest private research universities. Directed enterprise computing, networking, cloud infrastructure, production operations, and technology modernization across a globally distributed environment.

Executive Scope

65,000 students, faculty, and staff

200 New York City facilities

14 international campuses

130 technology professionals

$40M operating budget

$9M capital budget

$12M staffing budget

2,000 enterprise servers

400 High Performance Computing (HPC) systems

200 AWS cloud servers

Selected Executive Achievements

Directed enterprise technology operations supporting mission-critical academic, research, healthcare, and administrative environments across NYU's global footprint.

Modernized enterprise infrastructure through strategic technology refresh initiatives spanning networking, cloud computing, compute platforms, and critical infrastructure.

Eliminated years of accumulated infrastructure instability by implementing long-overdue network architecture improvements based on comprehensive root cause analysis and industry best practices.

Reduced operational expenditures by approximately $3.2 million while simultaneously improving enterprise service reliability.

Reduced personnel costs by approximately $1.2 million through organizational optimization and improved operational efficiency.

Achieved enterprise-wide server compliance by bringing thousands of Windows and Linux systems into current patch levels within one year.

Served as executive sponsor for enterprise production governance, approving all significant technology changes affecting infrastructure, cloud, networking, and critical business systems.

PROFESSIONAL EXPERIENCE (Continued)

YALE UNIVERSITY — New Haven, Connecticut

Chief Information Security Officer & Chief HIPAA Security Officer

2011 – 2017

Recruited as the first Chief Information Security Officer in Yale University's history, with enterprise responsibility spanning Yale University and Yale School of Medicine. Charged with building the University's inaugural enterprise cybersecurity program, establishing governance, security operations, regulatory compliance, digital risk management, and executive reporting capabilities supporting one of the world's premier research universities and academic medical centers.

Provided strategic leadership to executive administration, clinical leadership, research organizations, and governing bodies while transforming cybersecurity into a mature enterprise function supporting education, research, healthcare, and institutional operations.

Executive Leadership Highlights

Established Yale University's first comprehensive enterprise cybersecurity program, creating governance, policies, standards, security operations, incident response, digital forensics, privacy, and enterprise risk management capabilities.

Developed and maintained an enterprise risk management methodology based on ISO/IEC 27001, creating Yale's first formal cybersecurity risk register used to prioritize multi-year strategic investments and executive decision-making.

Directed Information Security, Digital Forensics, Compliance, HIPAA Security, and Security Architecture teams supporting a 9,000-member HIPAA-covered academic medical center.

Served as principal cybersecurity advisor to executive leadership regarding institutional cyber risk, regulatory compliance, healthcare privacy, research security, and technology modernization.

Successfully secured executive sponsorship and funding for numerous enterprise cybersecurity initiatives by presenting strategic business cases to senior leadership and governance committees.

Enterprise Transformation

Implemented enterprise-wide Multi-Factor Authentication (Duo) protecting more than 33,000 faculty, staff, students, and affiliates following a major credential compromise incident.

Modernized perimeter security through deployment of Palo Alto Networks Next Generation Firewalls, replacing legacy proxy technologies while significantly improving enterprise visibility and threat detection.

Implemented Proofpoint Enterprise Email Protection to defend against increasingly sophisticated phishing and business email compromise attacks.

Introduced FireEye Network Security to improve advanced threat detection and protection against zero-day malware.

Implemented enterprise Data Loss Prevention (Forcepoint) and Stealthbits solutions supporting data governance, privacy, and protection of regulated information.

Led implementation of RSA Archer eGRC, establishing an enterprise governance, risk, and compliance platform supporting executive risk management and regulatory oversight.

Directed annual Business Continuity and Disaster Recovery testing to improve institutional resilience and operational readiness.

Led strategic network visibility initiatives supporting future investment in a $25 million network segmentation program.

Selected Accomplishments

Recipient of the (ISC) Information Security Leadership Award as a finalist in the Senior Information Security Professional category.

Expanded cybersecurity awareness throughout Yale by delivering executive presentations, improving institutional risk awareness, and fostering collaboration across academic, research, healthcare, and administrative organizations.

Successfully introduced enterprise programs supporting HIPAA, HITECH, PCI DSS, data governance, and privacy compliance.

COLUMBIA UNIVERSITY MEDICAL CENTER — New York, New York

Director of Information Security

2007 – 2011

Directed enterprise information security and regulatory compliance initiatives supporting one of the nation's premier academic medical centers.

Led comprehensive HIPAA security assessments covering more than 300 clinical and research applications.

Established enterprise vulnerability management and institutional security awareness programs.

Directed HITRUST assessments and major remediation initiatives that strengthened organizational confidence and protected critical healthcare partnerships.

Successfully led regulatory initiatives supporting FDA 21 CFR Part 11 compliance for clinical research technologies.

MEMORIAL SLOAN KETTERING CANCER CENTER — New York, New York

IT Audit Manager / Technical Project Manager

2001 – 2007

Progressively promoted into leadership positions responsible for enterprise technology transformation, information security, IT audit, ERP modernization, and software development supporting one of the world's leading comprehensive cancer centers.

Directed enterprise technology modernization initiatives spanning financial systems, clinical applications, software development, and information security.

Led HIPAA, wireless, PeopleSoft, and clinical technology audits identifying significant operational and cybersecurity improvements.

Managed multidisciplinary teams responsible for enterprise application development and operational excellence.

EDUCATION

Columbia University

Executive Master of Science – Technology Management

St. John's University

Bachelor of Arts – English (Cum Laude)

PROFESSIONAL CERTIFICATIONS

Certified Information Systems Security Professional (CISSP)

Certified Information Security Manager (CISM)

Certified Information Privacy Professional (CIPP/US)

Certificate of Cloud Security Knowledge (CCSK)

ITIL Foundation

COBIT Foundation

Former Project Management Professional (PMP)

Former Certified Information Systems Auditor (CISA)

PROFESSIONAL RECOGNITION

(ISC) Information Security Leadership Award Finalist

Executive speaker on cybersecurity, cloud transformation, and higher education technology leadership

SELECTED SPEAKING ENGAGEMENTS

New Jersey Institute of Technology – Higher Education and Critical Infrastructure Preparedness

Amazon Web Services Public Sector Summit – Higher Education Progress with Cloud Adoption

Palo Alto Networks User Conference – Visibility Afforded by Next Generation Firewalls

PROFESSIONAL AFFILIATIONS

ISC2

ISACA

International Association of Privacy Professionals (IAPP)



Contact this candidate