Leading cybersecurity at global banks and Fortune 100 companies.
Teams of 300+ across four continents. Cyber strategy, insider threat, regulatory compliance, supply chain risk, and product innovation with top-tier vendors.
Slow inbox by design — I'll get back to you. Also on Substack.
I lead enterprise-wide cybersecurity and risk programs at global financial institutions and Fortune 100 companies, building and transforming security organizations and leading teams of 300+ across four continents. I sit at the intersection of boards, regulators (SEC, OCC, FRB), and engineering teams, aligning technology strategy with business resilience.
+ Select any role for the full record
Lead cybersecurity for networks building AI and manage cyber risk across the enterprise network.
Built and secured the trading environment for market-making and broker-dealing operations.
Owned strategy and portfolio for enterprise cybersecurity products at the largest cybersecurity company by revenue, with $8B annual ARR.
Founded and scaled the firm's global cybersecurity consulting practice; managed a team of 50.
Led 200+ professionals to establish the firm's global cyber risk program.
Directed 150 staff with a $30M budget, overseeing all aspects of cybersecurity and risk.
Directed 300 personnel across global footprint; partnered with C-level executives to mitigate technology risks.
Led the red team and penetration testing practice within Financial Services for major banks and insurers.
Managed security and operations for global FX trading platforms.
Contributed to modernization of defense technology infrastructure across multiple branches of the U.S. military.
+ Select any piece for the full abstract and link
The practical security challenges around AI deployment in enterprise environments.
An authoritative treatment of the practical security challenges around AI deployment in enterprise environments — governance, threat modeling, and the unique risk surface introduced by ML at scale, drawn from operational experience across global financial institutions. Volume V · Chapter 6 · pp. 113–124.
Read at De Gruyter →Testimony before the House Committee on Financial Services on threats facing the U.S. financial system.
Public-private cooperation, the inadequacy of the SSN as a digital identity credential, and the case for modernizing federal procurement of next-generation security solutions.
"The financial sector is ready and waiting. As good a job as institutions like Bank of America and US Bank are doing, they can't be expected to deter a nation state on their own." — Statement for the Record · Subcommittee on Financial InstitutionsRead full testimony (PDF) →
A profile on the evolving role of the CISO at the intersection of technology and business strategy.
Building trust with business partners, the rise of organized cybercrime targeting financial institutions, and the shift from infrastructure-centric security to business-risk leadership. CISO Profile · Fifth Third Bank.
Read profile →A discussion on the human element of cybersecurity.
Why people are the first and most important line of defense against social engineering and advanced threats. Podcast transcript · BNY Mellon.
Read transcript (PDF) →Featured speaker profile covering decades of leadership across financial-sector cybersecurity and global technology risk.
Featured speaker profile covering a career in global financial cybersecurity.
Featured speaker profile from the International Economic Forum of the Americas, covering a career in global financial cybersecurity and work with FS-ISAC and the Federal Reserve.
View profile →Slow inbox by design — I'll get back to you. Reach me directly by email, or connect on LinkedIn. For writing and ongoing analysis, find me on Substack and at the Internet Cyber Health Index.
bernik@gmail.com