
Torrain Findley
CISO, Cybersecurity GRC and Compliance Consultant
Compétences

Voir mes services

Portfolio
Expérience professionnelle
Florida Institute of Technology
Temps plein • 3 yrs
Chief Information Security Officer
Jun 2026 - Present • 2 mos
As the Chief Information Security Officer (CISO) for Florida Institute of Technology, I provide strategic leadership for the University's enterprise Information Security Program, overseeing cybersecurity strategy, governance, risk management, and the protection of institutional information assets. I lead the development and implementation of security policies, standards, and initiatives that strengthen the University's overall cybersecurity posture while supporting its academic, research, and administrative missions. I direct the University's cybersecurity incident response program and lead Governance, Risk, and Compliance (GRC) efforts to ensure compliance with regulatory and contractual requirements, including GLBA, CMMC, etc.
Information Security Officer
Aug 2023 - Jun 2026 • 2 yrs 10 mos
As an Information Security leader, I oversee security operations, including SOC activities, threat detection, incident response, vulnerability management, and enterprise security technologies such as SIEM, EDR, firewalls, IDS/IPS, email security, and endpoint protection. I manage security personnel, investigate security events, coordinate remediation efforts, oversee security change management, and work closely with IT leadership to develop and execute enterprise cybersecurity initiatives. I also lead cybersecurity governance, risk, and compliance efforts, including the development and maintenance of the Information Security Program, security policies, standards, procedures, and technical documentation. My responsibilities include leading CMMC readiness and assessment activities, conducting enterprise risk assessments, and supporting compliance with frameworks and requirements such as CMMC, NIST SP 800-171, GLBA, and FERPA, while continuously evaluating emerging technologies and threats to strengthen the organization's overall security posture.
Cybersecurity Consultant
Akamai Technologies • Temps plein
Jan 2021 - Jul 2023 • 2 yrs 6 mos
In this role, I conducted security assessments, threat modeling, and forensic investigations to identify vulnerabilities and strengthen organizational security. I managed EDR and SIEM technologies, customized security dashboards for proactive threat detection, led external penetration testing and remediation efforts, and integrated Akamai security solutions with platforms such as Splunk and QRadar. I also supported incident response activities and updated security policies to align with industry best practices and regulatory requirements. Additionally, I implemented Zero Trust security principles through MFA, SSO, IAM, and continuous monitoring, while automating security operations using Python and Bash. I collaborated with DevSecOps teams to integrate security controls into CI/CD pipelines and provided clients with technical training and guidance on Akamai security solutions, helping organizations improve their overall security posture and operational resilience.