Strategic Focus
Bridging legacy stability and future intelligence. Leading organizations through the transition from digital-first to AI-native.
I lead information security and DevOps at SavvyMoney, a fintech platform serving 1,500+ financial institutions as they deliver credit and financial-wellness products to the people they serve. My work sits at the intersection of three things that don't always get along: moving fast, staying secure, and proving it to auditors, regulators, and demanding partners. I came up through security and risk — holding the CISSP, CISA, CISM, and CRISC — but I also own DevOps, so I don't treat security as something that happens to other people's systems. I'm responsible for the pipelines, the cloud architecture, and the uptime as well as the controls that protect all of it. That dual mandate shapes how I think: the best security makes the business faster and more credible, not slower and more annoyed. Lately I spend a lot of time on AI — as a threat and as a tool — and on the controls layer underneath it: audit trails, scoped tool authority, and the boundary between an output a system can act on and one that needs a human first.
20+
Years in Security & DevOps
CISSP · CISA
CISM · CRISC
Industry Certifications
About
I lead information security and DevOps at SavvyMoney, a fintech platform serving 1,500+ financial institutions as they deliver credit and financial-wellness products to the people they serve. My work sits at the intersection of three things that don't always get along: moving fast, staying secure, and proving it to auditors, regulators, and demanding partners.
Explore
Latest writing
All posts- Jun 9, 2026 · 4 min
Your Security Program Is a Sales Asset. Start Treating It Like One.
Why provable security closes deals in regulated industries — and why the next budget conversation should lead with revenue, not fear.
- May 21, 2026 · 5 min
The Boundary Layer Is the Actual AI Control
Every AI governance framework describes the same controls. The one that actually matters is a single design decision: does this output get acted on, or interpreted first?
Featured case studies
All work- SavvyMoney ·
Making Security a Sales Asset
Built the program so its maturity could be demonstrated up front — external attestations, a documented control environment, and a recurring intelligence offering — turning security from a deal-blocker into part of the pitch.
- SavvyMoney ·
Automating Security Operations
Automated the repetitive core of security operations — scheduled, structured operational briefings — so humans review the exceptions and machines handle the recurring work.
Let's work together
Advisory engagements, fractional security leadership, or just an intro call.

