Jack Rumbaugh

Jack Rumbaugh

About

Detail

Cybersecurity Executive
New Braunfels, Texas, United States

Contact Jack regarding: 
work
Full-time jobs

Timeline


work
Job
school
Education

Résumé


Jobs verified_user 0% verified
  • V
    Virtual CISO (vCISO)
    Aug 2025 - Current (1 year 3 months)
    As a Virtual Chief Information Security Officer (vCISO), I partner with organizations to design, implement, and mature their cybersecurity programs. My work spans conducting comprehensive risk assessments, aligning controls with frameworks such as NIST CSF, ISO 27001, SOC 2, HIPAA, and PCI DSS, and building governance structures that enable executive oversight and board reporting. I guide incident response readiness, third-party risk management, vulnerability management, and policy development while ensuring compliance with regulatory and contractual obligations. Acting as both strategist and hands-on advisor, I help organizations balance security and business priorities, strengthen resilience, and reduce enterprise risk.
  • PosiGen
    Director of Cyber Security
    PosiGen
    Aug 2024 - Aug 2025 (1 year 1 month)
    Responsible for the company’s cybersecurity practice. Duties include: Developing and overseeing governance frameworks to align security efforts with business objectives. Leading efforts in email security, endpoint protection, and network security to safeguard our systems and data. Conducting comprehensive security audits to identify risks and implement actionable improvements. Driving the maturation of our cybersecurity program, building resilience, and aligning with industry best practices. Collaborating across departments to foster a culture of security awareness and proactive risk management.
  • Speedcast
    Vice President, Cyber Security/CISO
    Speedcast
    Sep 2022 - Apr 2024 (1 year 8 months)
    Responsible for all cyber security activities for a global satellite communications company. Executed a forward-thinking cybersecurity strategy, aligning security initiatives with business objectives to foster growth and resilience. Oversees risk assessment and mitigation strategies, ensuring the protection of assets and the integrity of data across all business verticals. Ensures adherence to pertinent industry regulations and compliance standards including GDPR, ISO, NIST, and other regional and sector-specific frameworks. Developed and led an effective incident response team. Serves as the principal cybersecurity liaison with senior leadership, stakeholders, and Board members, articulating security strategies and fostering trust through
  • P
    Principal Network Cyber Security Manager
    Mar 2021 - Sep 2022 (1 year 7 months)
    Principal Network Cyber Security Manager responsible for day-to-day cyber security operations for the Operations and IT Engineering group. Served as a direct liaison between the Information Security organization and Operations. Managed ISO 27001 certifications for several voice products.
  • AT&T
    Senior Security Consultant
    AT&T
    Dec 2017 - Mar 2021 (3 years 4 months)
    Senior Security Consultant serving as Risk Manager and Change Manager for a managed services organization for a number of commercial clients and the State of Texas. Identifies and documents IT risk for the organization, manages risk treatment. Oversee change management program and serves as Change Manager for multiple review boards.
  • iHeartMedia
    Manager, Security Operations
    iHeartMedia
    Aug 2015 - Dec 2017 (2 years 5 months)
    Oversee information security for a global Fortune 500 organization with multiple business units encompassing over 250 sites, 20,000 employees, and 30,000+ assets. Develop, implement, and maintain the Information Security Program. Translate business goals into technical roadmap.
    • Interface with C-Suite Executives for strategic planning.
    • Advise Legal and Risk departments on corporate risk appetite and risk reduction in 3rd-party contracts.
    • Manage PCI compliance and work with stakeholders to ensure compliance in all business units.
  • REI Systems
    Senior System Security Administrator
    REI Systems
    Feb 2014 - Jul 2015 (1 year 6 months)
    Ownership over daily security activities and the development of long-term policies and procedures. Worked in concert with a variety of internal teams as well as Federal and Corporate clients.
    • Conceptualized, developed, and implemented a wide variety of corporate security policies.
    • Presented general end-user security training and assisted in the development of target training for Project Managers, Developers, Business Analysts, and Quality Assurance personnel.
    • Security Subject Matter Expert for ISO 27000 certification with no non-conformances.
  • I
    ISSO, Certification and Accreditation
    May 2011 - Feb 2014 (2 years 10 months)
    Orchestrated security response, produced documentation, and managed vulnerability assessment and remediation.
    • Information System Security Officer (ISSO) for a DHS/TSA Moderate system
    • As Interim Chair for the Change Control Board, established new procedures and guided implementation.
    • Independently produced Security Plan, Contingency Plan, Plan of Actions, and Milestones documentation.
  • SAIC
    Senior Cybersecurity Analyst
    SAIC
    Dec 2008 - Aug 2011 (2 years 9 months)
    Supported Certification and Accreditation for multiple high-profile clients.
    • Performed numerous audits in accordance with ISO 27001, SOX, PCI DSS, and HIPAA standards.
    • Undertook FISMA audits following NIST guidelines as well as document and security control reviews.
  • ITT
    IT Manager
    ITT
    Nov 2007 - Jun 2008 (8 months)
    Oversaw all IT operations of a growth-oriented 75-person multiple site infrastructure.
    • Installed and supported Windows 2000 servers running a custom application suite and Juniper Steel-Belted RADIUS built to DISA Gold Disk standards for the Department of Defense.
    • Managed perimeter security through the use of custom firewall rules and managed access control, identification, and authorization through Active Directory.
  • SAIC
    Director of Operations
    SAIC
    May 2004 - Nov 2007 (3 years 7 months)
    Versatile role requiring direct leadership of SAIC FBI/LEO (Law Enforcement Online), INFRAGUARD, and National Alert System Projects, risk management, and inventory management. Managed personnel issues including scheduling, vacations, and task delegation. Member of the Change Control Committee.
    • Ensured the Confidentiality, Integrity, and Availability of the LEO system through implementation of NIST SP 800-53 and DOJ/FBI agency-specific controls appropriate to a FIPS 199 High system.
    • Audited and managed a $10M inventory of LEO/INFRAGARD/NAS assets.
Education verified_user 0% verified
  • Strayer University
    Strayer University — Master of Science - MS Computer and Information Systems Security/Information Assurance
    Strayer University
    Jan 2017 - Dec 2019 (3 years)
  • Strayer University
    Strayer University — Bachelor of Science Information Systems Security Administration
    Strayer University
    Jan 2010 - Dec 2012 (3 years)
This is a community-created genome.