Scott Weaver

Chief Information Security Officer at Hartman Executive Advisors
  • Claim this Profile
Contact Information
us****@****om
(386) 825-5501
Location
Washington DC-Baltimore Area

Topline Score

Topline score feature will be out soon.

Bio

Generated by
Topline AI

5.0

/5.0
/ Based on 2 ratings
  • (2)
  • (0)
  • (0)
  • (0)
  • (0)

Filter reviews by:

Uzoamaka Lashon Ene

I reported to Scott when he was at the US mint as our new PM and I must say that he transitioned into our program smoothly and was there to guide the analysts with any tasks needed to support the program. He was nice, courteous and friendly. We wanted to know what each analyst goals were. He handled each task in a calm manner and made us feel like we can talk to him when needed. Scott is a great leader that any company would be grateful to have .

Russ Boteilho

Scott worked for me in developing operational and technical manuals in supporting Army Research Laboratory efforts on the M1A1 (Abrams) main battle tank and Mobile Integrated Tactical Tracking (MITT) system. He was highly instrumental and most diligent in creating and providing useful and effective documentation and engineering support.

You need to have a working account to view this content.
You need to have a working account to view this content.

Credentials

  • Certified Ransomware Specialist
    Proofpoint
    Apr, 2022
    - Nov, 2024
  • Certified Scrum Master
    Scrum Alliance
    Nov, 2015
    - Nov, 2024
  • Certified Information Systems Security Professional
    ISC2
    Sep, 2003
    - Nov, 2024

Experience

    • United States
    • IT Services and IT Consulting
    • 1 - 100 Employee
    • Chief Information Security Officer
      • Jun 2022 - Present

      CISO for multiple small and mid-market organizations, in finance and Healthcare. Builds security programs, develops policies, procedures and processes. Establishes Vulnerability Management programs, policies for encryption standards, endpoint protection, and Incident response. Establishes schedules and coordination procedures, runs Table Top Exercises, 3rd party Risk Assessments, and penetration testing for customers. Enterprise Risk Management. Participates in an active role with decisions and advice on organizational cyber risk. Provides expert actionable advice on risk appetite, risk management, and crisis management during cyber events. Expert in Security Operations and Incident Response. Well versed in Government Security Programs, manufacturing and financial institutions. Strategy and Planning. Actively participates as a member of the Senior Management Team in governance processes of the organization's security strategies. Leads strategic security planning to achieve business goals by prioritizing defense initiatives and coordinating the evaluation, deployment, and management of current and future security technologies using risk-based methodologies. Develop and communicate security strategies and plans to execute team, staff, partners, customers and stakeholders. Assist with the design and implementation of disaster recovery and business continuity plans, procedures, audits and enhancements. Acquisition and Deployment. Defines and communicates corporate plans, procedures, policies, and standards for the organization for acquiring, implementing, and operating new security systems, equipment, software, and other technologies. Enterprise Security and Operational Security. Provides leadership on Cybersecurity policies, compliance, training and education, and operational security and incident response for commercial, small market businesses. Board advisor on all aspects of cybersecurity for all corporate stakeholders and executive members. Show less

    • Consumer Services
    • 700 & Above Employee
    • Cyber SecOps
      • Nov 2019 - Jun 2022

      Security Operations Center and Incident Response Leader. Responsible for security operations, security tools, 15 staff members/contractors, Otis's SIEM, and Incident Response activities for an enterprise supporting 70K users in 180 countries. - Directs all activities of Managed Service Providers to deliver cost-effective and efficient SOC operations and incident response while ensuring fulfilment of Service Level Agreements (SLA). - Developed and maintained objectives and key results supporting the strategic direction of the SOC. - Supported and directed the design of maturity roadmap to continuously evolve SOC capabilities. - Developed and executed incident response and crisis communication plan to Director of Cyber Ops and other stakeholders. - Measured SOC performance metrics and communicate the value of security operations to business leaders and ensures they align with Otis Digital policies, controls, and standards. - Oversaw the monitoring, identification, and resolution of security incidents, detect threats through analysis, investigations, and prioritization of incidents based on risk/exposure. - Monitored key performance indicators and develop metrics, reporting and dashboards to ensure processes efficiency and recommend/execute change management techniques for efficiency/quality improvements. - Led engineering projects, such as network segmentation implementation and email security upgrades and migrations. Show less

    • United States
    • IT Services and IT Consulting
    • 700 & Above Employee
    • PM at US Mint SOC
      • Dec 2018 - Nov 2019

      Senior Program Manager and IT Security Strategist for the US Mint’s Security Operations Center. Led and managed a staff of 8 cyber staff in the SOC, Incident Response and Risk Management activities. - PM of Contractor Support for Security Operations Center. - Directed team supporting Data Loss Protection (DLP) program, Vulnerability Management, and Incident Response Management - Coordinated engagement with business owners / operations, program budgets - Led senior staff in executing cybersecurity activities - Conducted a series of Cybersecurity brown bag sessions - Built out US Mint's cyber project initiatives, scheduling of resources Show less

  • Northrop Grumman
    • Woodlawn, MD
    • Cyber Risk Management
      • Mar 2017 - Dec 2018

      As a Sr CyberSecurity advisor and Manager of multiple projects, I was responsible for a wide range of CyberSecurity support to the Social Security Administration's (SSA's) Office of Information Security (OIS). I've had up to 42 support staff providing an extensive and diverse span of cyber security services to the SSA. I led 6 projects, the management of staff for those projects (totaling $7M/yr.), customer relations, resource management, and at times I have provided my own expertise in technical and program management advice to the SSA's Senior Advisors and Division Directors. My focus area was improving customer Cybersecurity Risk Management. I provided guidance on accelerating the improvements to maturing the Agency's cyber programs. My staff provided Data Loss Protection support, secure software development, security testing of developed applications, support to upgrading to the Identity Credential and Account Management (ICAM) program, Incident Response management, Security Operations Center support, and compliance and security assessment activities. Show less

    • United States
    • IT Services and IT Consulting
    • 700 & Above Employee
    • Cybersecurity Program Manager
      • May 2016 - Mar 2017

      Successfully led team of cyber security professionals in the management of the Pension Benefits Guarantee Corporation’s (PBGC’s) Incident Response Management Program, Independent Validation and Verification program, SOC team, and ISCM Program. Managed 22 security professionals. - Program Manager for the Task Order to mature the Agency’s Cybersecurity program from a maturity Level 1 to Level 3 - Coordinated engagement with functional managers on business/operational reviews, overhead program budgets, and led senior staff in executing cybersecurity strategy - Managed the Agency’s RMF support (NIST standards) and Incident Response program in support of business owners, business functions, and the Agency’s financial systems - Active in SAIC's Cyber Security Community of Interest - I authored articles on cyber security topics and conducted lunch and learn training sessions. Show less

    • United States
    • IT Services and IT Consulting
    • 300 - 400 Employee
    • PM Cyber Incident Response Center
      • Aug 2013 - May 2016

      Successfully established the contractor team for supporting the Joint Cyber Security Coordination Center (JC3) Program Management Office (PMO) for the DOE; within two years advanced the PMO from CMMI Level 0 to CMMI Level 2. Led DOE’s CyberScope activities, including coordination of several critical vulnerabilities and risks identified across the Federal Agency. Expertly identified skillsets/technical support requirements needed to support the client. - Efficiently and actively executed DOE’s $29M budget for the JC3 - Managed Enterprise-wide data call activities on major cyber events (Incident Response) - Conducted multiple Brown Bags and training sessions for managers and senior staff members Show less

    • United States
    • IT Services and IT Consulting
    • 700 & Above Employee
    • Adjunct Instructor
      • Mar 2011 - Aug 2013

      As an Adjunct Instructor, I facilitated a course in management training for Junior Front line Managers in the Firm on a quarterly basis. The curriculum included people and team development, conflict resolution, identifying and correcting program/team problems, motivational techniques, and team collaboration. Subject topics also presented included workflow process improvements. The course was entitled “Managing People for Peak Performance."

    • Lead Associate - Cyber Security
      • Feb 2009 - Aug 2013

      I supported the USMC Cross Domain Solutions Office as well representing the USMC in the Multi-National Information Sharing (MNIS) program. I was named Task Manager for a team of 9 Cyber Security professionals. Within a year, I was promoted to Lead Associate. I led eight consultants supporting multiple cyber security disciplines.I managed charge authorizations, time cards submission, travel budgets, expense reports and submission of monthly status reports for the team. I provided technical support in the following manner;- proposed risk management recommendations to the client on CDS implementations - mentored four other Lead Associates and supervised five direct report staff members in career development and team development activities- led team training exercises on a quarterly basis, as part of a career development for the Firm - decomposed high level requirements into manageable tasks, and developed work breakdown schedules - conducted Quality Assurance reviews on all Cyber Security Directorate deliverables Show less

    • Associate - Cyber Security Lead
      • Dec 2006 - Feb 2009

      I provided security engineering support for two government agencies as a subcontractor. I authored white papers on the understanding of implementing a security solutions for Identity Credentialing and Access Management. I provided Certification and Accreditation support for two classified programs, per security guidelines defined by the Director Central Intelligence Directive.

    • United States
    • Defense and Space Manufacturing
    • 700 & Above Employee
    • Sr. InfoSec Analyst, Project Lead
      • Oct 2000 - Dec 2006

      As the project lead, I directed team activities to support multiple US Government Agencies and their IT systems. I briefed officials on security architectures and the overall system security plans. I prepared white papers and point papers on network security issues for various programs. I evaluated and provided recommendations on Department of Homeland Security (DHS) system security documents and ensured proper protection of sensitive government information. I conducted security assessments of facilities for classified DHS systems sites, and I provided recommendations for system connections. From 2000-2004, I was the technical lead for all Certification and Accreditation activities at Marine Corps Systems Command. Show less

    • United States
    • Armed Forces
    • 700 & Above Employee
    • CPO
      • 1990 - 2004

      While on active duty from 2001-2002, I managed the "Request for Intelligence" Desk on the Global War on Terrorism Intelligence Task Force. This was a 24x7x365 operation, where we compliled the daily Intelligence briefing to the Secretary of Defense. During my reserve duties, I served as an Intelligence Analyst for the Maritime Shipping Directorate, as a Watchstander for the Chief of Naval Operations (CNO) Intelligence Plot (another 24x7x365 operation), as a Rate Training Facilitator for 300 enlisted reservists in the Intelligence Specialist occupation. I developed curriculum each quarter, and presented Rate training subjects over a two day period. Show less

    • United States
    • Information Technology & Services
    • 700 & Above Employee
    • Sr. Analyst
      • 1998 - 2000

      I provided technical support to Marine Corps Systems Command for a Signal Intelligence system upgrade program. The system was used by the Radio Battalions in the Marine Corps. I also supported the Operational Test and Evaluation for the system at Fort Huachuca, by providing personnel to assist with the evaluation, compiling statistical data for the evaluation. I provided technical support to Marine Corps Systems Command for a Signal Intelligence system upgrade program. The system was used by the Radio Battalions in the Marine Corps. I also supported the Operational Test and Evaluation for the system at Fort Huachuca, by providing personnel to assist with the evaluation, compiling statistical data for the evaluation.

Education

  • Excelsior College
    Bachelor of Science (BS), General Studies
    1995 - 1998
  • Penn State University
    Project Management Program, Business Administration and Management
    2007 - 2008

Community

You need to have a working account to view this content. Click here to join now