Frederic D. Carter Jr.
Details
Finance
Austin Peay State University
1989 : 1994
NewRez LLC
Chief Information Security Officer
The design and implementation of Cyber Security infrastructure reporting to the CISO, building the cyber security architecture for the international enterprise.
• Asked to rebuild the Cyber Security team and refocus the team on strategic initiatives and while minimizing security capability outages which had prevented the team from aligning with business needs.
• Operationalized Cyber Security functions to enable 24x7x365 monitoring and emergency response to potential cyber events.
• Oversaw emergency cyber response for cyber events while training the Cyber Security Incident Response Team to take the lead in response to such events while responding to customer C-Level executives concerning the protection of systems.
• Established the strategies for data protection, internet protection, and end point protection to improve the security posture and align with business needs while maximizing ROI.
• Lead multiple PCI risk assessments in response to potential security issues and ensure remediation plans are developed to protect the security posture of Fiserv.
• Continued to lead the Cyber Security Architecture function focusing on building out the function with engagement across all business units ensure they followed new security guidance and to provide consulting services.
2017 : 2020
Fiserv
Director of Cyber Security Incident Response Team
The Director of Cyber & Information Security reporting to the CISO, building the Cyber security organization for the international enterprise.
• Recruited a team of information security analysis to engage with business owners and technical leaders to provide technical security design support and develop necessary enterprise security controls.
• Worked across business units and with customers to ensure customer security requirements are implemented in multi-tenant hosted environments.
• Developed strategic vision for information security and infrastructure capabilities as part of long-range planning to ensure security needs are met cohesively across the organization.
•Defined security requirements and develop security guidance for the global enterprise to consume as part of the SDLC.
•Developed strategies for solving complex problems including identity and access management, and migration to for hosting multi-tenant applications.
•Developed and implemented the organization and engagement models for the cyber security team to effectively engage across the organization including business units.
2016 : 2020
Fiserv
Director of Cyber Security & Information Security
Director of Cyber Security, including development of information security strategic and tactical improvement roadmaps/plans to mitigate risk identified during IT operational and cyber security risk assessments;
- Managed and performed concurrent information security, privacy, and audit engagements for mid-size and Fortune 500 companies across the US, including associated staff, deliverable, and allocated project budgets (e.g., time and expenses);
- Developed long-term, risk-prioritized cyber security strategic plans to assist clients in achieving long-term, business-linked goals and objectives;
- Presented engagement report deliverable and results to executive management;
- Allocated staff and ensured that resources were adequately utilized based on experience level;
- Created client proposals and statements of work for new engagements;
- Identified, interviewed, and recruited Cyber Security Risk Advisory Practice interns and staff to grow and develop advisory teams;
- Presented firm and practice information during information sessions for university recruiting efforts;
- Responsible for on-boarding and training of new Cyber Security Analysis staff;
-Manages, coordinates and prioritizes the schedules, projects and activities of direct reports.
-Develops the support structure of the organization, managing and developing existing staff as well as recruitment.
-Works closely with the CISO, VP, Infrastructure and Director of IT Operations in developing the strategy for the future direction of the company’s Enterprise IT services, supporting all Business Units.
-Responsible for managing vendors including Approved Scanning Vendors, Managed Security Service
-Oversees Company Information security operations.
-Executes and improves the core functions of the Network Security Operations, including : threat detection and prevention, incident response, systems and network security monitoring, forensics, vulnerability management, and data loss prevention at enterprise scale.
2007 : 2016
Milestone Systems, Inc.
Director of Cyber Security
2001 : 2007
MILA
Vice President of Risk Management
Skills
Active Directory, Application Security, Budgeting, Business Analysis, Certified Information Security Manager (CISM), Change Management, Cloud Security, Compliance PCI, Computer Security, Customer Relationship Management (CRM), Customer Service, Cyber-security, Data Center Management, Data Privacy, Data Security, Disaster Recovery, Healthcare Information Technology (HIT), HIPPA Compliance, Identity & Access Management (IAM), Information Management, Information Security, Information Security Management, Information Technology, IT Infrastructure Management, Leadership, Malware Analysis, Malwarebytes, Malware Detection, Management, Microsoft Excel, Microsoft Office, Microsoft Word, Network Security, NIST, Penetration Testing, PowerPoint, Procedure Manuals, Process Improvement, Risk Management, Security Architecture Design, Security Controls, Security Engineering, Security Incident Response, Security Operations Management, SOC 1, SOC 2, Strategic Planning, Team Buillding, Team Leadership, Vendor Management, Sales
About
Accomplished and highly motivated business leader, cyber security subject matter expert, and security architect overseeing geographically dispersed teams and international projects. Driven business leader experienced in technology implementations for large-scale enterprise projects supporting over 70,000 users. Experienced in leading teams with on-time and on-budget deliveries.
Selected Leadership and Performance Highlights:
• Business leader overseeing multiple projects with budgets up to ten million dollars from creation through implementation.
• Developing unique cyber strategies with adaptive architectures to mitigate threats to reduce risk while enabling systems to be resilient to a changing threat environment.
• Leader in designing, planning, and implementing enterprise multi-site international deployments of infrastructure and security enhancements to improve the overall security posture of an organization.
• Assigned multiple times to lead teams of architects and engineers who are behind schedule to ensure on-time on-budget completion by focusing on deliverables and customer needs, recovering months of schedule, saving in excess of ten million dollars in potential cost overruns.
Specialties:
• Security Leadership
• Cyber Strategy
• Security Architecture
• Security Engineering
• Systems Engineering
• Operations Management
• Risk Management
• Project Management
• Security Assessments
• Process Management
• Strategic Planning
• ISO 27001 / PCI / NIST / FFIEC / NYDFS / GLBA
Technologies:
• Cloud (AWS, Azure, GCP)
• Containers
• Cryptography / Key Management / PKI
• DLP
• DevOps
• Firewalls
• Host based security
• Identity and Access Management
• IDS / IPS
• Microservices
• Mobile
• Network Access Control
• Privilege Access Management
• Packet capture / Net Flow
• Security Information Event Management (SIEM) / Logging
• Service Oriented Architecture
• SDNs
• Vulnerability Management
• Web Application Firewalls (WAF)