Ron Lafond

Information Security Portfolio Management Chief @Cybersecurity And Infrastructure Security Agency

Wilmington, NC, US
MOBILE NUMBERS
+17•••••••45

Signup · Get unlimited contacts

WORK HISTORY

Dec 2024 — Present

Information Security Portfolio Management Chief @Cybersecurity And Infrastructure Security Agency

View department →

I oversaw the agency\'s Information Systems Security Managers (ISSMs) and our contract Information System Security Officers (ISSOs) to improve the risk posture of the Agency\'s information systems.

EDUCATION

1998 — 2001

The University of Texas at Austin

M.S. in Engineering, Biotechnology, Biochemical Engineering, Molecular Biology, Microbiology, Bacterial Genetics

1993 — 1997

Rice University

B.S. Chemical Engineering, Chemical/Biochemical Engineering and Environmental Engineering

SKILLS

PolicyQualitative ResearchProtein ChemistryGovernmentPoliticsStrategic CommunicationsPolicy AnalysisMolecular BiologyPatentsManagementProgram ManagementNanotechnologyManagement ConsultingData AnalysisNational SecurityResearchPatentabilityBiotechnologyMicrobiologyInternational RelationsAnalysisIntellectual PropertyLeadershipPublic PolicyStatistics

ABOUT RON LAFOND

An experienced, intuitive, and highly credentialed cybersecurity and IT development leader with nearly 20 years’ worth of relevant consulting and professional experience in the preparedness, cybersecurity governance risk and compliance, and security and emergency management enterprises. Deep cybersecurity domain experience and knowledge in: Security and Risk Management; Security Architecture and Engineering; Asset Security; Security Assessment and Training; Security Operations; and Software Development Security. Currently manages and supervises a team of 20 Federal employee direct reports and oversees a contract support team of over 80 FTEs as COR and lead government technical manager for a 24x7x365 Network Operations and Security Center (NOSC). Oversees all aspects of cybersecurity operations management, including: 1) Operational Center (SOC, NOSC, Fusion Center) Design and Operational Planning; 2) Telemetry and Analytic Design; 3) Event Alert, Triage, and Attack Detection Design; 4) Incident Response (IR) Design, Planning, and Execution; 5) Blue Team and Red Team Design, Penetration Testing, and Adversary Emulation; and 6) Development of Metrics and Dashboards, Automation, and Continuous Improvement.Knowledgeable in theory and application of advanced SOC analytic and operational models, such as the Lockheed Martin Cyber Kill Chain, MITRE ATT & CK, NIST SP 800-61 Incident Response Cycle (PICERL), Cyber Threat Intel F3EAD Cycle, Threat Hunting, and MITRE D3FEND and Engage. Knowledgeable in emerging cybersecurity concepts such as Zero Trust, Active Defense, Purple Teaming, and IR for Cloud-based Infrastructures, Platforms, and Applications in AWS, Azure, GCP.Expert in working with security architects and engineers to synthesize these complicated concepts, subject matters, methods, theories, models, and tools to develop Security Concepts of Operations (CONOPs), Telemetry and Analysis CONOPs, IR Plans, Recovery Plans, and Technology Roadmaps. As an executive-level portfolio, program, and personnel manager, provides strategic direction for program and project activities, directs human resources, negotiates and oversees contracts, enforces policy compliance, and manages financial resources to ensure successful portfolio and program performance.An excellent writer and communicator with superior facilitation skills, and an ability to synthesize complicated technical concepts into work products that are useful to a variety of stakeholders and end-users, including C-suite and board executives.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.