Stanley Zheng
Stanley Zheng
About
Detail
Security ∧ Tech ∧ Optimist
United States
Security professional with a software engineering background and over a decade of experience designing, building, and protecting cloud-native environments. As the first security hire at Voltus, I built, scaled, and now own the security program within a regulated critical infrastructure environment. My core belief is that technology is easy, humans are hard. Security should act as a transparent enabler for high-impact innovation, not a bureaucratic roadblock.
Having spent most of my career as a software engineer, I became obsessed with system design that integrates security naturally with employee workflows and organizational objectives.
My career has moved from augmented reality engineering to full-stack development, cloud architecture, city-scale security infrastructure, and now security leadership. The hardest problems keep shifting, and I follow them. I enjoy navigating complexity, picking up new domains fast, and building from first principles.
At Voltus, I've put that into practice as the first security hire in a regulated critical infrastructure environment. Over three and a half years, I built and now own the full program for governance and compliance, incident response, penetration testing, vulnerability management, AI governance, and strategic advisory to executive leadership and the Risk and Audit Committees. I achieved three consecutive SOC 2 Type 2 clean audit cycles. An incident response lifecycle designed from nothing. An enterprise-wide LLM governance framework deployed at the pace the business demanded.
My approach is fundamentals first in understanding the root of problems. Threat model before tool selection. Design before Code. Process before product. Understanding the risk before committing to the control. The goal is a more secure, compliant, and resilient organization but pragmatic and focused on whatmatters most to the business.
I'm always up for the latest and new challenges. Right now I am focused right now on the AI and enterprise security space, where the foundational frameworks are still being defined in real time.
I'm deliberate about where I put my effort. I like to spend my time and energy for work and problems something that is beneficial for the world and my time.
Targeting a CISO role. Open to conversations at the intersection of security, AI, and critical infrastructure and solving hard problems that benefit society.
Having spent most of my career as a software engineer, I became obsessed with system design that integrates security naturally with employee workflows and organizational objectives.
My career has moved from augmented reality engineering to full-stack development, cloud architecture, city-scale security infrastructure, and now security leadership. The hardest problems keep shifting, and I follow them. I enjoy navigating complexity, picking up new domains fast, and building from first principles.
At Voltus, I've put that into practice as the first security hire in a regulated critical infrastructure environment. Over three and a half years, I built and now own the full program for governance and compliance, incident response, penetration testing, vulnerability management, AI governance, and strategic advisory to executive leadership and the Risk and Audit Committees. I achieved three consecutive SOC 2 Type 2 clean audit cycles. An incident response lifecycle designed from nothing. An enterprise-wide LLM governance framework deployed at the pace the business demanded.
My approach is fundamentals first in understanding the root of problems. Threat model before tool selection. Design before Code. Process before product. Understanding the risk before committing to the control. The goal is a more secure, compliant, and resilient organization but pragmatic and focused on whatmatters most to the business.
I'm always up for the latest and new challenges. Right now I am focused right now on the AI and enterprise security space, where the foundational frameworks are still being defined in real time.
I'm deliberate about where I put my effort. I like to spend my time and energy for work and problems something that is beneficial for the world and my time.
Targeting a CISO role. Open to conversations at the intersection of security, AI, and critical infrastructure and solving hard problems that benefit society.