Elevating Your Security Posture, Reducing Your Risk
About Eric
Eric Carroll is a cybersecurity leader specializing in strategic planning, risk management, and cyber defense. He helps global clients enhance their security postures by designing and implementing robust cybersecurity solutions, optimizing threat detection capabilities, and leading incident response preparedness initiatives. Eric's expertise in GRC and security operations allows him to develop and implement security strategies that are both effective and aligned with the organization's overall risk appetite and compliance objectives. He also leverages his deep understanding of security tools and technologies – including SIEM, SOAR, network and endpoint security, DLP, and risk management frameworks (e.g., NIST CSF) to drive impactful security improvements.
Throughout his career, Eric has successfully supported numerous multinational Fortune 500 corporations across diverse industries. He has secured financial transactions for leading banking institutions, implemented HIPAA compliant security controls for healthcare providers, and strengthened the cybersecurity posture of local, state, and federal government agencies. Eric has led over 80 consulting engagements that resulted in a significant reduction in vulnerabilities and developed comprehensive incident response plans that minimized downtime.
A skilled communicator and collaborator, Eric excels at translating complex technical concepts into clear and concise business terms. He has presented risk findings to executive leadership and delivered both strategic recommendations, such as developing a comprehensive cybersecurity roadmap to align with business objectives, and tactical recommendations, like implementing multi-factor authentication to secure critical systems. These recommendations have resulted in a measurable reduction in security incidents and improved the client's overall security posture.
Eric is passionate about cybersecurity and committed to staying current with the latest threat landscape by actively participating in industry conferences, including BSides, BlackHat, and DEF CON.
Outside of work, Eric enjoys spending time with his family and exploring new places.
See my LinkedIn profile for my career / job history.
Skills
- Security Domains
Security Governance
Risk Management
Security Architecture
Cyber Defense
- Security Technologies
SIEM (Google SecOps, Splunk, ArcSight)
SOAR (Google SecOps)
EDR (Velociraptor, Trellix Endpoint Security)
IDS (Snort)
Vulnerability Management (Tenable Nessus)
DLP (Trellix DLP)
Security Awareness Training (KnowBe4, Proofpoint)
- Leadership & Management
Project Management (Agile, Kanban)
Team Leadership
Process Improvement
Deductive Reasoning
- Consulting & Communication
Verbal and Written Communications
Public Speaking
Stakeholder Management
Technical Report Writing
- Productivity & Collaboration Tools
Google Workspace (Docs, Slides, Sheets, Meet)
Microsoft 365 (Word, Excel, PowerPoint, OneNote, Teams)
Certifications
Certified Information Systems Security Professional (CISSP)
-ISC2
Certified SAFe® 6 Product Owner/Product Manager (POPM)
-Scaled Agile Inc.
Certified Cloud Security Professional (CCSP)
-ISC2