Professional background
Résumé
Summary
Cybersecurity executive and founder with 13+ years securing complex systems at enterprise scale across federal agencies and Fortune 500 organizations. Track record of directing multi-hundred-million-dollar programs, cutting system vulnerability exposure by up to 50%, and translating technical risk into executive and board-level decisions.
Currently building ProfytAI, an AI-native compliance automation platform for regulated financial institutions in Southeast Asia. Combines deep practitioner experience across GRC, cloud security, NIST RMF, and FedRAMP with the operational discipline to build products, teams, and market positions in high-growth, regulated environments.
Experience
ProfytAI
Now2025 – Present
Ho Chi Minh City, Vietnam
Co-Founder & CEO
Founded 2025. Building AI-native compliance infrastructure for regulated financial institutions across Southeast Asia.
- Architecting an AI-native TrustOps platform that replaces manual GRC operations with continuous, automated compliance monitoring for banks and regulated enterprises
- Securing design partnerships with digital banks across Southeast Asia, validating product-market fit in high-compliance regulatory environments
- Driving product direction, engineering execution, and go-to-market strategy across a cross-functional team spanning AI, cloud infrastructure, and compliance
- Building core platform capabilities including regulatory obligation mapping, evidence traceability, and real-time audit readiness monitoring
- Establishing the complete operational foundation from zero: team structure, hiring standards, culture, and execution rhythms across engineering, product, and revenue
- Positioning the platform as scalable compliance infrastructure, reducing institutional reliance on manual processes and external advisory spend
2021 – 2025
Washington, DC
TPM Leader
Four years leading enterprise security programs at one of the world's largest professional networks.
- Spearheaded enterprise security programs across multiple engineering organizations at a 1B+ member platform, advancing compliance posture, automation, and platform resilience across one of technology's most scrutinized security environments
- Engineered and executed Root Certificate Authority rotation and TLS compliance program, protecting continuous global service delivery and maintaining encryption integrity across all platform traffic
- Designed and deployed automation frameworks that reduced manual compliance effort by 40% and accelerated compliance reporting cycles across security engineering
- Synchronized delivery across 9+ globally distributed engineering teams, driving program velocity and alignment across time zones without delays to critical security milestones
- Shaped executive investment and risk decisions through direct briefings on security posture, compliance readiness, and strategic threat priorities
- Embedded security-by-design practices into agile development workflows, reducing remediation cycles and strengthening platform resilience
Deloitte Consulting
2019 – 2021
Arlington, VA
Manager, Cyber & Strategic Risk
Federal consulting engagement: U.S. Department of State cybersecurity and $431M IT modernization portfolio.
- Directed cybersecurity strategy and operations across a $431M U.S. Department of State modernization portfolio, overseeing 4 enterprise programs and 30+ mission-critical applications
- Reduced system vulnerabilities by 50% and secured Authorization to Operate (ATO) under NIST RMF for systems supporting global visa and passport issuance
- Unified security architects, engineers, and compliance specialists across all four concurrent programs, meeting federal security requirements across 30+ applications without schedule slippage
- Consolidated fragmented monitoring tools across 4 programs into a unified threat detection capability, accelerating incident response across 30+ mission-critical State Department applications
- Integrated security controls into Agile delivery models, doubling team efficiency and eliminating compliance debt across development cycles
Booz Allen Hamilton
2018 – 2019
McLean, VA
Lead Technologist, Cloud Security
Federal consulting engagement: U.S. Department of the Treasury cloud security and mission-critical systems migration.
- Led FedRAMP-compliant cloud migration strategy for U.S. Department of the Treasury financial systems, maintaining regulatory posture throughout a high-risk infrastructure transition
- Developed migration roadmaps, risk models, and governance frameworks that accelerated cloud adoption while protecting compliance standing
- Established cloud security architecture standards and governance frameworks adopted across Bureau of the Fiscal Service engineering teams, building institutional capability that outlasted the engagement
Aetna
2016 – 2018
San Antonio, TX
Cloud Security Lead
Enterprise cloud security and compliance at one of the nation's largest health insurers.
- Drove enterprise cloud security strategy across hybrid environments, ensuring full HIPAA and PCI-DSS compliance across Aetna's most sensitive data infrastructure
- Reduced system vulnerabilities by 30% and improved risk detection accuracy by 40% through new assessment methodologies for hybrid cloud environments
- Delivered R&D initiative introducing biometric-based authentication, eliminating legacy credential infrastructure and generating $10M in cost savings
Cigna
2012 – 2016
Philadelphia, PA
Information Security Advisor & Early Career Roles
Career foundation: four years of growth from cybersecurity analyst intern to Information Security Advisor.
- Advanced from cybersecurity analyst intern to Information Security Advisor, progressively owning endpoint security, infrastructure engineering, and enterprise compliance programs across a Fortune 100 healthcare organization
- Managed endpoint security and compliance for 14,000+ enterprise devices across Windows and macOS environments, overseeing hardware and software lifecycle
- Delivered 100% on-time enterprise OS migration across 14,000+ endpoints, maintaining full security posture through the Windows XP end-of-support transition
Education
Penn State
University Park, PA
B.S. Information Sciences & Technology
College of Information Sciences & Technology
Certifications
CISSP
Certified Information Systems Security Professional
CISM
Certified Information Security Manager
PMP
Project Management Professional
CTPRP
Certified Third Party Risk Professional
Core competencies