Résumé


Cybersecurity executive and founder with 13+ years securing complex systems at enterprise scale across federal agencies and Fortune 500 organizations. Track record of directing multi-hundred-million-dollar programs, cutting system vulnerability exposure by up to 50%, and translating technical risk into executive and board-level decisions.

Currently building ProfytAI, an AI-native compliance automation platform for regulated financial institutions in Southeast Asia. Combines deep practitioner experience across GRC, cloud security, NIST RMF, and FedRAMP with the operational discipline to build products, teams, and market positions in high-growth, regulated environments.


ProfytAI

Now

2025 – Present

Ho Chi Minh City, Vietnam

Co-Founder & CEO

Founded 2025. Building AI-native compliance infrastructure for regulated financial institutions across Southeast Asia.

  • Architecting an AI-native TrustOps platform that replaces manual GRC operations with continuous, automated compliance monitoring for banks and regulated enterprises
  • Securing design partnerships with digital banks across Southeast Asia, validating product-market fit in high-compliance regulatory environments
  • Driving product direction, engineering execution, and go-to-market strategy across a cross-functional team spanning AI, cloud infrastructure, and compliance
  • Building core platform capabilities including regulatory obligation mapping, evidence traceability, and real-time audit readiness monitoring
  • Establishing the complete operational foundation from zero: team structure, hiring standards, culture, and execution rhythms across engineering, product, and revenue
  • Positioning the platform as scalable compliance infrastructure, reducing institutional reliance on manual processes and external advisory spend

LinkedIn

2021 – 2025

Washington, DC

TPM Leader

Four years leading enterprise security programs at one of the world's largest professional networks.

  • Spearheaded enterprise security programs across multiple engineering organizations at a 1B+ member platform, advancing compliance posture, automation, and platform resilience across one of technology's most scrutinized security environments
  • Engineered and executed Root Certificate Authority rotation and TLS compliance program, protecting continuous global service delivery and maintaining encryption integrity across all platform traffic
  • Designed and deployed automation frameworks that reduced manual compliance effort by 40% and accelerated compliance reporting cycles across security engineering
  • Synchronized delivery across 9+ globally distributed engineering teams, driving program velocity and alignment across time zones without delays to critical security milestones
  • Shaped executive investment and risk decisions through direct briefings on security posture, compliance readiness, and strategic threat priorities
  • Embedded security-by-design practices into agile development workflows, reducing remediation cycles and strengthening platform resilience

Deloitte Consulting

2019 – 2021

Arlington, VA

Manager, Cyber & Strategic Risk

Federal consulting engagement: U.S. Department of State cybersecurity and $431M IT modernization portfolio.

  • Directed cybersecurity strategy and operations across a $431M U.S. Department of State modernization portfolio, overseeing 4 enterprise programs and 30+ mission-critical applications
  • Reduced system vulnerabilities by 50% and secured Authorization to Operate (ATO) under NIST RMF for systems supporting global visa and passport issuance
  • Unified security architects, engineers, and compliance specialists across all four concurrent programs, meeting federal security requirements across 30+ applications without schedule slippage
  • Consolidated fragmented monitoring tools across 4 programs into a unified threat detection capability, accelerating incident response across 30+ mission-critical State Department applications
  • Integrated security controls into Agile delivery models, doubling team efficiency and eliminating compliance debt across development cycles

Booz Allen Hamilton

2018 – 2019

McLean, VA

Lead Technologist, Cloud Security

Federal consulting engagement: U.S. Department of the Treasury cloud security and mission-critical systems migration.

  • Led FedRAMP-compliant cloud migration strategy for U.S. Department of the Treasury financial systems, maintaining regulatory posture throughout a high-risk infrastructure transition
  • Developed migration roadmaps, risk models, and governance frameworks that accelerated cloud adoption while protecting compliance standing
  • Established cloud security architecture standards and governance frameworks adopted across Bureau of the Fiscal Service engineering teams, building institutional capability that outlasted the engagement

Aetna

2016 – 2018

San Antonio, TX

Cloud Security Lead

Enterprise cloud security and compliance at one of the nation's largest health insurers.

  • Drove enterprise cloud security strategy across hybrid environments, ensuring full HIPAA and PCI-DSS compliance across Aetna's most sensitive data infrastructure
  • Reduced system vulnerabilities by 30% and improved risk detection accuracy by 40% through new assessment methodologies for hybrid cloud environments
  • Delivered R&D initiative introducing biometric-based authentication, eliminating legacy credential infrastructure and generating $10M in cost savings

Cigna

2012 – 2016

Philadelphia, PA

Information Security Advisor & Early Career Roles

Career foundation: four years of growth from cybersecurity analyst intern to Information Security Advisor.

  • Advanced from cybersecurity analyst intern to Information Security Advisor, progressively owning endpoint security, infrastructure engineering, and enterprise compliance programs across a Fortune 100 healthcare organization
  • Managed endpoint security and compliance for 14,000+ enterprise devices across Windows and macOS environments, overseeing hardware and software lifecycle
  • Delivered 100% on-time enterprise OS migration across 14,000+ endpoints, maintaining full security posture through the Windows XP end-of-support transition

Penn State

University Park, PA

B.S. Information Sciences & Technology

College of Information Sciences & Technology


CISSP

Certified Information Systems Security Professional

CISM

Certified Information Security Manager

PMP

Project Management Professional

CTPRP

Certified Third Party Risk Professional


Technical Program Management Platform & Product Strategy Cloud Security & Zero Trust DevSecOps & Automation GRC · SOC 2 · ISO 27001 NIST RMF · FedRAMP HIPAA · PCI-DSS Executive & Board Communication Cross-Functional Leadership Risk & Compliance Operations