Elevating Your Security Posture, Reducing Your Risk

About Eric

Eric Carroll is a cybersecurity leader specializing in strategic planning, risk management, and cyber defense. He helps global clients enhance their security postures by designing and implementing robust cybersecurity solutions, optimizing threat detection capabilities, and leading incident response preparedness initiatives. Eric's expertise in GRC and security operations allows him to develop and implement security strategies that are both effective and aligned with the organization's overall risk appetite and compliance objectives. He also leverages his deep understanding of security tools and technologies – including SIEM, SOAR, network and endpoint security, DLP, and risk management frameworks (e.g., NIST CSF) to drive impactful security improvements.


Throughout his career, Eric has successfully supported numerous multinational Fortune 500 corporations across diverse industries. He has secured financial transactions for leading banking institutions, implemented HIPAA compliant security controls for healthcare providers, and strengthened the cybersecurity posture of local, state, and federal government agencies. Eric has led over 80 consulting engagements that resulted in a significant reduction in vulnerabilities and developed comprehensive incident response plans that minimized downtime.


A skilled communicator and collaborator, Eric excels at translating complex technical concepts into clear and concise business terms. He has presented risk findings to executive leadership and delivered both strategic recommendations, such as developing a comprehensive cybersecurity roadmap to align with business objectives, and tactical recommendations, like implementing multi-factor authentication to secure critical systems. These recommendations have resulted in a measurable reduction in security incidents and improved the client's overall security posture.


Eric is passionate about cybersecurity and committed to staying current with the latest threat landscape by actively participating in industry conferences, including BSides, BlackHat, and DEF CON.


Outside of work, Eric enjoys spending time with his family and exploring new places.


See my LinkedIn profile for my career / job history.

Skills


  • Security Domains
    • Security Governance

    • Risk Management

    • Security Architecture

    • Cyber Defense

  • Security Technologies
    • SIEM (Google SecOps, Splunk, ArcSight)

    • SOAR (Google SecOps)

    • EDR (Velociraptor, Trellix Endpoint Security)

    • IDS (Snort)

    • Vulnerability Management (Tenable Nessus)

    • DLP (Trellix DLP)

    • Security Awareness Training (KnowBe4, Proofpoint)

  • Leadership & Management
    • Project Management (Agile, Kanban)

    • Team Leadership

    • Process Improvement

    • Deductive Reasoning

  • Consulting & Communication
    • Verbal and Written Communications

    • Public Speaking

    • Stakeholder Management

    • Technical Report Writing

  • Productivity & Collaboration Tools
    • Google Workspace (Docs, Slides, Sheets, Meet)

    • Microsoft 365 (Word, Excel, PowerPoint, OneNote, Teams)

Certifications


  • Certified Information Systems Security Professional (CISSP)

    -

    ISC2

  • Certified SAFe® 6 Product Owner/Product Manager (POPM)

    -

    Scaled Agile Inc.

  • Certified Cloud Security Professional (CCSP)

    -

    ISC2