John Young

Experienced CTO, CSO, and founder with nearly 35 years of industry experience.

NOV 1995 - OCT 2017

IBM Cloud Division | Cyber Security Defense Expert

Led a team that ensured that the division’s most vulnerable servers were compliant. Worked as the infrastructure manager for the enterprise network, servers, computer labs, help desk, and email system. Reported directly to VPs, CIOs, and other C-suite executives.

Cybersecurity.

  • Managed IT operations and security at more than 40 offices worldwide, including: (1) applications, networks, and workstations, (2) setting all company IT standards, and (3) helping to create an enterprise disaster recovery plan.

  • Performed all of the following tasks: (1) moved networks to new buildings and campuses, (2) leased network pipes from internet service providers, (3) built and configured Windows and Linux servers and Microsoft Windows clusters, (4) deployed a global antivirus from PCs to central servers, and (5) registered internal and external websites.

  • Ran at least 10,000 vulnerability scans and fixed any problems they uncovered.

  • Bought servers and laptops, and deployed the latter as configured systems to customers worldwide.

  • Worked on endpoint campaigns for thousands of nodes involving configuration control, inventory, and security patching. o Worked: (1) as a beta customer on the development and implementation of BigFix, ITM, QRadar, and other IBM software security tools, and (2) as a VMware beta stage technical resource, consolidating dozens of server footprints.

Operations Management.

  • Managed an annual $11 million infrastructure budget, mergers and acquisitions, software licenses for applications, and RFPs.

  • Ran a 15,000 sq. ft. data center, including environmental controls, rack configurations, cabling, and network entry points.

  • Negotiated multimillion-dollar: (1) SLAs for provider services, (2) maintenance contracts for data center UPSs, PDUs, the diesel backup generator, and all failover equipment, and (3) equipment contracts.

  • Opened new offices around the world, including setting up new networks.

  • Handled all moves, adds, and changes for the global network as the infrastructure manager for multiple teams.

  • Made more than 1,000 presentations to VPs, CIOs, CTOs, directors, and division employees.

  • Worked with: (1) attorneys on intellectual property and global compliance requirement contracts, (2) the finance department on budgets, and (3) the facilities department on data center management.

Personnel Management

  • Managed contractors and more than 30 IT direct reports worldwide.

  • Led: (1) a network design team, and (2) a team of software developers from the Blue Wash stage through the first general availability (GA) release of IBM’s Tivoli Monitoring (ITM) product. o Recruited, interviewed, hired, and terminated employees.

  • Trained employees about cybersecurity guidelines.

Achievements.

  • Passed hundreds of compliance audits conducted by the business controls division with perfect scores.

  • Discovered employees who were: (1) concealing obsolete webservers that would have voided $40 – $50 million in revenue, and (2) hiding network subnets that were not on network diagrams in order to avoid corporate oversight.

  • Negotiated a network equipment contract that saved more than $2 million.

  • Coded the automation program that automatically upgraded the Windows operating system on all employee PCs.

  • Created a “one-stop shopping” portal for IBM asset management to register and simultaneously track thousands of devices.

JAN 1992 - APR 1995

Kaiser Permanente | Consulting CSO.

Kaiser Permanente. Helped a large call center team manage its data, from development through startup.

  • Performed all of the following tasks: (1) server deployment and troubleshooting, (2) configuration of voice recording units for operations menus, (3) software configuration, and (4) data center monitoring.

  • Worked as the main technical resource after the call center opened.

  • Achievement. Assisted a team that brought 200 call center operators online, on time and under budget.

Unocal Corp. Helped close down its Los Angeles office, including all software, hardware, and networking operations

MAY 1984 - APR 1990

McDonnell Douglas | Sr. Systems Manager, Network Director

Network director of the $41.8 billion C-17 cargo plane program, which was run in collaboration with the U.S. Air Force. Network director and senior systems manager for the MD-11 commercial airplane program.

  • Managed the computer lab, including the $4 million supercomputer that controlled multiple flight simulators.

  • Performed all of the following tasks: (1) led teams of systems managers and computer operators, (2) wrote utilities that automated

    functions for backups and batch job scheduling, and (3) upgraded the operating systems on the main computer systems.

  • Achievement. Recognized as one of the first people to successfully cluster DEC Vax 11/780 supercomputers.

JAN 1984 - FEB 1985

IDI | Computer Operator

Tasks included:

  • Monitoring all programs to make sure they didn’t hog resources, and freeze the system

  • Backup scheduling and implementation

  • Terminated out-of-control programs

  • Monitored network activity

  • Put paper and ink in printers

  • Started at the lowest entry-level job imaginable, working a night shift no one wanted after returning to college

APR 2017 - PRESENT

CyberDef | Founder & President

CyberDef is a B2B consulting company that provides proprietary and real-world information, education, and solutions to companies about how to prevent, or find and fix cybersecurity problems, including data breaches. Work with and advise C-suite executives, including CEOs, CIOs, CISOs, and CTOs.

  • Handle cybersecurity walkthroughs, compliance auditing, and policy and change control management based on the NIST and ISO

    27001 frameworks.

  • Find cybersecurity gaps and data breaches not discovered by penetration testing and vulnerability scans.

  • Serve as an interim or a temporary CISO or Fractional CTO, whether remote or on-site.

  • Achievement. Wrote “Don’t Hack: How to Kick Hackers to the Curb,” an 800-page cybersecurity book that is available on Amazon.

PEOPLE

Meet our other CTOs

Bring order to your chaos

Benefit from an experienced CTO in your back pocket for a fraction of the cost