me@willpressly.com · (704) 389-0839 · Charlotte, NC
Leadership – Security – Development – Execution – Operations
Wells Fargo, Charlotte NC 2025 - Present
Cyber Security Manager - Triage and Response of the Data Loss Prevention Team
Managed ~$15M team mitigating data leakage risks by triage response efforts in DLP, CSPM compliance
· Manage daily data-loss incident triage, resource allocation, escalation, quality and talent development, directing team capacity toward the highest-risk events while maintaining disciplined, audit-ready operations.
· Partner with Cyber Insights, EDLP Solutions, BISOs, Legal, Conduct ER, business leadership and all three lines of defense to translate risky-user behavior patterns into actionable DLP rule tuning, detection enhancements and control recommendations.
· Lead complex cross-LOB security initiatives and operational risk-control change, articulating issues, risk exposure and proposed solutions to senior Cybersecurity leadership while supporting NIST, GLBA, GDPR, CCPA, audit and regulatory obligations.
· Advance next-generation DLP triage through analytics, machine-learning-assisted disposition and workflow automation, improving operational consistency, efficiency and risk-based event prioritization.
· Lead talent development and workforce strategy through Early Careers leadership, intern program management and mentorship of high-potential talent; strengthening leadership pipelines, organizational capability and development of future cybersecurity professionals while reinforcing accountability, adaptability and continuous improvement.
· Transformed the enterprise talent pipeline by shifting technical staffing from expiring contract resources toward Early Careers cybersecurity talent, enabling extended real-world capability assessment, reducing onboarding risk, strengthening workforce sustainability and delivering measurable organizational value with zero incremental enterprise cost.
· Modernized enterprise on-call and incident-response operations through implementation of xMatters automated scheduling, paging and escalation workflows across DLP teams; eliminating manual call-tree processes, accelerating engagement of appropriate responders and integrating Splunk, BigPanda and xMatters to reduce business friction and improve executive response efficiency.
· Conceived and drove deployment of an enterprise Generative AI-powered DLP Assistant, providing real-time guidance for data-transmission restrictions across email, web, applications and endpoints; reducing support-resolution timelines by ~300%, accelerating issue resolution and shifting customer engagement from multi-day manual intake toward a scalable self-service model.
· · Serve as an Early Careers Development Officer and intern-program leader, guiding cohorts of 12–15 undergraduate and graduate students through Wells Fargo’s summer internship program; translating nearly two decades of enterprise experience into practical expectations for professional accountability, leadership, communication and career readiness while engaging former mentees and enterprise leaders as guest speakers, strengthening continuity with the complementary eight-month development program and preparing high-performing interns to return as full-time talent positioned to contribute from day one.
Northgate Engineering, Charlotte NC 2024 - 2025
Cyber Security Engineer, Internal Consultant – Northgate Secure Solutions Team
Lead ~$1M contract for MFA roll out, CSPM compliance, security audit & governance review
· Revamped Decommission Strategy of Hybrid-Cloud Infrastructure (*NIX, GCP), reduced fleet by ~25%, and $800K; guided the C-Level panel in deprecation planning, and risk tracking
· HashiCorp Vault was implemented to encrypt data at rest/in transit (TLS 1.3); hashing sensitive data
· Installed, configured and trained onsite engineering team in the configuration and management of OPNsense firewall with LibreNMS network monitoring; monitoring and alerting improved network visibility where previously there was no dashboarding to identify anomalous behavior
· Reduced security audit findings by ~20% reviewing known gaps identified by a third-party audit team; keystone efforts were made to change compliance tactics; NIST 800-53 and STIGs utilized in the implementation of configs changes to adhere to regulatory compliance (PCI-DSS, SOX, NIST, CMMC)
· Automation of security audit cadences to reduce time to identify vulnerabilities and ensure compliance with standards, remediation and risk management strategies used to identify outliers
· Eliminated 94% of out of non-compliant configurations, software and firmware from infrastructure with an aggressive policy, audit and vulnerability management program; ensuring that configurations, software and firmware are patched up to date as well as running policy compliant configurations
· Utilizing Cloud Security Posture Management to manage the security posture of cloud services, ensuring that configurations are secure and compliant. Leadership training was implemented to fully encompass policy modifications and assess the needs for Risk Registrations offering gap oversight
Charter Communications, Charlotte NC 2019 - 2024
Team Lead - Security & Compliance Engineer III, Infrastructure - Audit & Compliance Team
Led *NIX Security Audits, Hybrid-Cloud Security Audits, IT Transformation for $2M revenue team with ~70 engineers
· Strategized, defined and championed a new vulnerability management policy, which resulted in ~1.1M system/application vulnerabilities closed in 2023, 40k High risk vulns were remediated
· Fulfilled an O.S. agnostic patch initiative which reduced overall time to remediate risks down from 3 months down to a patch timeline of 30-45 days maximum across DEV, UAT and Production environments
· CMMC, NIST, CIS, SANS and OWASP best practices were utilized for prioritization, standardization and guidance in most all efforts and initiatives; examples of big impacts can be seen were vulnerability mitigation and internal preparation for TLS 1.3 improving security offered by our transport layer ciphers
· Developed and implemented an API driven Tableau “Risk Dashboard” which improved senior leadership’s visibility to Kenna reporting live vulnerability data points; this dashboard ultimately accelerated vulnerability mitigation driving down overall data center risk scoring
· Lead Security and Compliance of Cloud (AWS, Oracle PCA) & Containerized Infrastructure (Kubernetes, Docker, and LXC containers), improved configuration compliance by reduced config drift by ~40%
· Key efforts were made to improve EDC’s CMMI level from Level 1 to beyond Level 3 in 1 year; ‘Risk reduction and Engagement Process and Policy’ documentation guided CMMI Level II & III efforts driving least privileged access, current industry best practices with other key gap solutions implemented
Charter Communications, Charlotte NC 2017 - 2019
Systems Engineer III, Patching Audit & Compliance Team
Led Windows* and *NIX PCI Audits, IT Transformation of $1M revenue team with ~50 engineers
· Architect level changes recommended to system build configurations to limit vulnerabilities
· Managed UNIX and VMware product line PCI 3.2.1 audit; identifying and resolving non-compliance of scoped hosts, reducing known thread vectors by ~22-25% each year by implementing a pre-audit
· Securing threat vectors via cross-teaming with team leads to develop and implement updates to processes and procedures resulting in the closing of major risk gaps
· Utilized Agile/SCRUM methods to drive improvements to Enterprise Data Center’s patching process reducing time to patch by ~30% through DEV, UAT and production CI’s
· ~20% reduction of annual PCI-DSS 3.2.1 findings was achieved by teaming with internal / external resources, as well as other security and audit teams to mitigate non-compliance of the PCI-DSS scoped systems
Charter Communications, Charlotte NC 2015 - 2017
DevOps Engineer / Video Application Engineer, Video Application Center
Team Lead and New Hire Coach, Hybrid-Cloud system configuration management
· Identification of code level bugs, vendor engagement and co-ownership of planning application-level upgrades with tracking through vendor CI/CD platforms
· Developed, provisioned and maintained a multi-node containerized solution to solve complex subnet access issues for engineers supporting highly visible market head end
· Provided advanced application engineering support of video-on-demand applications, IP provisioned video streams, related databases and back-office systems
· Operating system and database performance with optimization and automated maintenance via scripting as well as scripted monitoring of performance
· Reduced MTRS by ~30% for critical outage states by deploying Splunk aiding with mass log indexing and subsequently developed event dashboards with automated synthesis of critical event reporting
Time Warner Cable, Charlotte NC 2013 - 2015
DevOps Engineer, Application Center of Excellence
· Implemented metric-driven agile engineering project management process, driving accountability through root cause counter measures that increased organization project output by 25%
· Deployed SIEM (Splunk) on ~12K servers; managed performance, maintenance, and security on 12,000+ *NIX, Oracle Solaris, Windows systems
· Maintenance and modification of custom scripts to improve efficiency of critical system administration tasks, such as system error reporting, backups, utilization rates, and capacity and security checks, use of various protocols at enterprise scale
Mr. Fix I.T. LLC, Charlotte NC 2007 - 2016
Solutions Engineer, Sole-Proprietorship
· Improved first pass fault diagnosis from +/- 70% to +/- 90% accuracy across all OSI Layers on industry standard operating systems, network devices isolating fault or packet flow impedance
· Exceeded expectations on long term Tier II and Tier III enterprise server support contracts -The Walt Disney Co. Da | Fujitsu Ltd. | AT&T | Harris Teeter | Husqvarna | Automated System Design Inc. | Essential Enterprise Solutions LLC | Blue-Point Technologies LLC)
· Alcatel-Lucent (AT&T) storage array services-5 years of contracted site service fulfilled and ended 2016
Certifications & Training: CCSP | ITIL Fundamentals & Practitioner Certified | Agile | SCRUM | CMMI | RHEL | RHCSA 6.5 | PCI ISA & PCI-P | SCTE DVEP | Puppet | Docker | Splunk Fundamentals I & II | Splunk Adv. Searching & Reporting | Splunk SOAR | Tanium- Converge 2022 & 2023 | Tripwire FIM | Kenna | Operating Systems: RHEL | Debian | AIX | OEL | Solaris | OSX | ProxMox w. SRIOV | VMware vSphere & vRealize | Windows Azure & Sever 2008, 2012 & 2016 | Identity / PAM: JumpServer | Centrify / Delinea | RBAC | Least Privilege | Secrets Management | Privileged Session Management | Service Accounts / Non-Human Identities | SSO | MFA | OAuth 2.0 | OIDC | SAML | Zero Trust / Workload Identity: SPIFFE | SPIRE | mTLS | PKI | X.509 | Certificate Lifecycle Management | Infrastructure / Networking: OPNsense | Pi-hole | LibreNMS | Proxmox VE 3-Node Cluster | SR-IOV | VLAN Segmentation | NGINX | Storage / Resilience: ZFS | UNAS / NAS | Backup & Recovery | Cloud-Native / DevSecOps: Kubernetes | Docker | Git | CI/CD | Ansible | Infrastructure Automation | API Integration | Security Operations: DLP | UEBA | SOAR | SIEM | Threat Detection & Response | Security Automation | Platforms & Services: Symantec DLP | Varonis | Splunk SOAR + XSOAR | Symantec RiskFabric ICA & UEBA | ProxmoxVE | Metasploit | OpenStack | Oracle PCA | Docker | Kubernetes | AWS | Azure | NGFW | vSphere SDDC | Skyline Advisor + LogInsight | MySQL | Elasticsearch | Splunk | HPSA | Remedy | Jira Service Desk | Confluence | Service Now | Cherwell & Thick-client Automation | IDE’s | CI/CD Pipelines | Centrify | Alteryx | Ansible | Puppet | Git | CrowdStrike | NGINX | CDN | Tripwire FIM | SOAP | Tableau | Tanium | Grafana | Qualys Engine with Kenna UI | Frameworks: .NET Core | jQuery | Spring | Programming Languages: Bash | Python | Perl | HTML5 | shell | node.js | CSS | Golang | Java | JavaScript | SQL | C# | Objective-C | hex | binary | Home Lab & Technology Stack: JumpServer PAM | 3-Node Proxmox VE Cluster / Hypervisor Administration | OPNsense NGFW | Pi-hole DNS Security & Filtering | LibreNMS | Multi-VLAN Network Segmentation | Multi-Node Linux & macOS Infrastructure | Docker & Kubernetes | SSH, RBAC & MFA Privileged Access | Credential & Secrets Management | Git & CI/CD Automation | Bash & Python | API / SaaS Provisioning & Integration | ZFS NAS Backup & Data Protection | UniFi UNAS Production Storage | Infrastructure Monitoring, Logging & Security Automation | Local AI/LLM Infrastructure