Experience
Career History
NIKE Inc.
April 2013 — Present
Global Chief Information Security Officer (CISO)
December 2022 — Present
- Secured NIKE against double-digit annual threat increases while maintaining flat-to-negative budgets.
- Led quarterly cybersecurity briefings for Audit and Finance Committee and annual Board updates, influencing risk prioritization across Technology, Legal, Finance, and HR.
- Reduced tech-related SOX deficiencies to historic lows with zero repeat findings over 18 months; secured SAP S/4HANA rollout in US and EMEA.
- Reduced mean-time-to-contain from 94 minutes to 28 minutes.
- Implemented global MFA for all NIKE and Converse consumers, reducing bot access by 99%+.
- Implemented new audit governance program, eliminating audit rebaselines and closing a record 29 audit issues and 7 audits in the last 12 months.
Deputy CISO
November 2021 — December 2022
- Established first overseas Follow-the-Sun SOC and IR capability, unlocking increased operational effectiveness and local alignment for regulatory requirements.
- Led key cross-functional incident response teams, analyzing 75TB+ of daily data to surface indicators of malicious activity.
- Expanded vulnerability management, cutting external exposure by 55%+ in 6 months.
Senior Director, Office of Cybersecurity (Strategy, Portfolio, Business Operations)
March 2018 — October 2021
- Oversaw management of $100M+ financial portfolio, including annual financial planning cycles.
- Developed all executive storylines and products for briefings to the NIKE Inc. Executive Leadership Team and Board of Directors.
Director, Cybersecurity Governance and Metrics
June 2016 — March 2018
- Established global information security governance program aligned to NIST, including portfolio-wide metrics.
- Remediated 7/7 critical audit findings in the first year, including 2 that were previously behind schedule.
- Developed, released, and socialized new data classification framework, greatly simplifying the end-user experience.
Director, Cyber Threat Analytics
April 2013 — May 2016
- Established first security analytic team and capability focused on collecting 10TB+ of daily security logs and identifying malicious behavior.
- Designed and implemented automation across security function, reducing mean time to resolution by 92%.
- Consolidated Splunk across five groups into one instance, saving $75M+ over 3 years; earned NIKE Technology Maxim Award for execution.
- Led computer forensics capability in coordination with Legal and Incident Response teams.
Prior Experience
Senior Information Security Analyst
Baylor University
2004 — 2009, 2010 — 2013
- Technical lead for PCI compliance effort, including project management of technical implementations. Led Payment Card Oversight committee responsible for payment card usage university wide.
- Led development and operation of technical detection mechanisms for security incidents, including incident response team.
- Provided computer forensic support for internal and criminal investigations in coordination with Baylor Police and Office of General Counsel.
Adjunct Professor of Computer Science
Baylor University — School of Computer Science
2012
- Taught Data Structures (CSI 3334) — Spring 2012 and Fall 2012.
Senior Cyber Security Specialist
Lawrence Livermore National Laboratory
2009 — 2010
- Provided in-depth network forensics and cybersecurity incident response across the DOE. (Requires DOE Q/SCI security clearance with SSBI.)
Education
Baylor University
M.Sc., Computer Science
Emphasis in Applied Algorithms · 2009
Thesis: Solving the F/A-18 Mission Computer Virtual Memory Problem
Baylor University
B.Sc., Computer Science
With Honors · 2004