The business problem
Corporate and plant environments depended on technology for daily operations. The leadership problem spanned detecting threats, managing access, maintaining systems, and preparing to recover the services the business needed most.
Ricky’s role
Ricky directed security operations center coverage, strengthened access protections, and established enterprise policies. The work connected cybersecurity operations with business continuity and governance.
Approach & decisions
Coordinate monitoring and access protection
Directed 24/7 security operations center coverage in prior employment. Strengthened multifactor authentication, privileged-access controls, and third-party access protections across corporate and plant environments.
Treat recovery as work to validate
Achieved patch compliance above 90% and validated recovery solutions for all mission-critical systems. These are distinct measures of maintenance and recovery readiness.
Give the work a policy foundation
Established enterprise IT policies covering operational technology security, cloud services, data retention, third-party risk, disaster recovery, and AI governance.
The documented result
Achieved patch compliance above 90% and validated recovery solutions for all mission-critical systems in a prior leadership role.
Recovery solutions were validated for all mission-critical systems in that prior environment. This does not establish a specific recovery time or guarantee uninterrupted operations.
Tradeoffs to consider
For a business facing similar decisions, these are the tradeoffs to work through.
Stronger controls and operational continuity
Access and maintenance decisions need to account for the systems people use to keep a plant or office operating. Plan changes with the relevant business and system owners.
Recovery expectations and evidence
A recovery plan should connect business priorities with evidence from validation. Start with the services that matter most and make unresolved gaps visible to leadership.
What this means for your business
Resilience is a coordinated management practice: access, maintenance, policy, and recovery need to work together. A tool or a written plan alone cannot demonstrate readiness.
An advisory engagement can review access governance, policy coverage, and recovery readiness, then turn the findings into a prioritized improvement plan.
Discuss a similar challenge