Ron Lafond
Information Security Portfolio Management Chief @Cybersecurity And Infrastructure Security Agency
Signup · Get unlimited contacts
WORK HISTORY
Information Security Portfolio Management Chief @Cybersecurity And Infrastructure Security Agency
I oversaw the agency\'s Information Systems Security Managers (ISSMs) and our contract Information System Security Officers (ISSOs) to improve the risk posture of the Agency\'s information systems.
EDUCATION
The University of Texas at Austin
M.S. in Engineering, Biotechnology, Biochemical Engineering, Molecular Biology, Microbiology, Bacterial Genetics
Rice University
B.S. Chemical Engineering, Chemical/Biochemical Engineering and Environmental Engineering
SKILLS
ABOUT RON LAFOND
An experienced, intuitive, and highly credentialed cybersecurity and IT development leader with nearly 20 years’ worth of relevant consulting and professional experience in the preparedness, cybersecurity governance risk and compliance, and security and emergency management enterprises. Deep cybersecurity domain experience and knowledge in: Security and Risk Management; Security Architecture and Engineering; Asset Security; Security Assessment and Training; Security Operations; and Software Development Security. Currently manages and supervises a team of 20 Federal employee direct reports and oversees a contract support team of over 80 FTEs as COR and lead government technical manager for a 24x7x365 Network Operations and Security Center (NOSC). Oversees all aspects of cybersecurity operations management, including: 1) Operational Center (SOC, NOSC, Fusion Center) Design and Operational Planning; 2) Telemetry and Analytic Design; 3) Event Alert, Triage, and Attack Detection Design; 4) Incident Response (IR) Design, Planning, and Execution; 5) Blue Team and Red Team Design, Penetration Testing, and Adversary Emulation; and 6) Development of Metrics and Dashboards, Automation, and Continuous Improvement.Knowledgeable in theory and application of advanced SOC analytic and operational models, such as the Lockheed Martin Cyber Kill Chain, MITRE ATT & CK, NIST SP 800-61 Incident Response Cycle (PICERL), Cyber Threat Intel F3EAD Cycle, Threat Hunting, and MITRE D3FEND and Engage. Knowledgeable in emerging cybersecurity concepts such as Zero Trust, Active Defense, Purple Teaming, and IR for Cloud-based Infrastructures, Platforms, and Applications in AWS, Azure, GCP.Expert in working with security architects and engineers to synthesize these complicated concepts, subject matters, methods, theories, models, and tools to develop Security Concepts of Operations (CONOPs), Telemetry and Analysis CONOPs, IR Plans, Recovery Plans, and Technology Roadmaps. As an executive-level portfolio, program, and personnel manager, provides strategic direction for program and project activities, directs human resources, negotiates and oversees contracts, enforces policy compliance, and manages financial resources to ensure successful portfolio and program performance.An excellent writer and communicator with superior facilitation skills, and an ability to synthesize complicated technical concepts into work products that are useful to a variety of stakeholders and end-users, including C-suite and board executives.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.