Managing Partner at QuietMove, Inc.
Phoenix, Arizona Area
Managing Partner at QuietMove, Inc.
Phoenix, Arizona Area
I am the Managing Partner at QuietMove, Inc. We help our customers identify their critical information assets and protect them from hackers, industrial espionage, and other less 007 sounding but equally dangerous threats.
In a nutshell, our customers hire us to break into their web applications, servers, and networks before the bad guys do. We enable better decision-making and planning, and help them to secure their systems and applications against attacks they are vulnerable to by more efficiently utilizing the resources they already have.
Our web site is http://www.quietmove.com
Web Application Security, Penetration Testing, Vulnerability management, PCI Data Security Standard, Information Security management, Public Speaking.
(Venture Capital & Private Equity industry)
September 2008 — Present (1 year 3 months)
(Computer & Network Security industry)
March 2006 — Present (3 years 9 months)
Co-Founder of QuietMove
(Media Production industry)
2003 — Present (6 years )
(Privately Held; 51-200 employees; Information Technology and Services industry)
February 2005 — February 2006 (1 year 1 month)
Led consultants on IT Security engagements for large organizations.
Developed service offerings including Web Application Security Education and Assessment.
Spoke at Information Security conferences including Texas Regional Infrastructure Security Conference and the Information Security Summit.
(Public Company; 501-1000 employees; PEGS; Information Technology and Services industry)
February 2003 — February 2005 (2 years 1 month)
Acting Information Security Officer for last 16 months at Pegasus, the largest hotel reservation distribution system vendor and a major vendor of Hotel Management systems.
Responsible for marshaling Pegasus through their first Sarbanes Oxley Section 404 audit. No material deficiencies were found by the auditors.
Initiated program to get Pegasus to be Visa CISP compliant, including evaluating and changing their handling of Payment Cardholder data. Visa CISP was the progenitor of the PCI standard.
Responsible for performance and management of vulnerability assessment and penetration testing activities.
(Public Company; 10,001 or more employees; IBM; Computer & Network Security industry)
August 2000 — January 2003 (2 years 6 months)
Founding member of IBM's Ethical Hacking Center of Competency.
Technical interviewer for new hires.
Penetration Testing Subject Matter Expert.
Led and performed consulting engagements for clients ranging from midsize companies and government agencies to the Fortune 500.
Later moved to IBM Managed Security Services Delivery, was responsible for the audit readiness of and all security delivery to Washington Mutual and Sunlife Financial whose e-Commerce systems are hosted by IBM.
Yoga, Hiking, Firearms, Jeeps, Information Security
CISSP,ISSA,OWASP,InfraGard