Stephen D. Dake - Resume

Stephen D. Dake

Cambridge, WI • stephen.dake@gmail.com • (608) 354-3036 • stephendake.us
linkedin.com/in/stephendake • CISSP, CISM

Summary

Cybersecurity and Risk Executive with over 22 years of hands-on and leadership experience helping SMBs, startups, and enterprises protect critical assets, meet compliance goals, and mature their security posture. Proven expertise in audit remediation, control uplift projects, security program development, vulnerability management, and aligning with frameworks such as ISO 27001, SOC 2, HIPAA, NIST, and GDPR. Trusted consultant and former CISO with deep experience in regulated industries including finance, healthcare, energy, and SaaS.

Core Skills

Professional Experience

Stephen Dake Consulting, LLC – Remote

Principal Security Consultant (2014–Present)

JP Morgan Chase (FROSCH International Travel) – Remote

Executive Director, Cybersecurity Risk & Compliance (2022–2025)

Madison Gas & Electric – Remote

Director of Information Security & Risk (2018–2022)

American Family Insurance – Sun Prairie, WI

Director of Cybersecurity Engineering & Architecture (2015–2017)

QBE – Sun Prairie, WI

VP of Information Security (2013–2015)

 AES-256, antivirus, ATT&CK, Autopilot, Avanan, Azure Application Gateway, Azure Cloud SIEM, Azure DevOps, Azure Key Vault, behavioral analytics, BitLocker, blue team, Box, certificate management, Cisco AnyConnect, control alignment and testing, corrective action plans, CrowdStrike, cybersecurity awareness training, data at rest encryption, Delinea, DLP, Docker, Docusign, due diligence integration support, DUO MFA, email security, encrypted file transfer, endpoint detection and response, endpoint encryption, EFS, FTPS, full disk encryption, GDPR, HITECH, HTTPS, IAM, identity and access management, incident response, InTune, Kali, Linux, LLM security, log correlation, malware detection, MARS-E, Microsoft 365, Microsoft Sentinel, Microsoft Teams, mobile device management, multi-factor authentication, Nessus Pro, network access control, network security, OneDrive, OneTrust, Optiv, OWASP, PAM vault, penetration testing, people management, phishing protection, privileged access management, project management, PCI scanning, PCI vulnerability scanning, Qualys, Red Hat, remote access protection, SailPoint, SANS, SCP, security automation, security event monitoring, security program management, ServiceNow, SFTP, SOC2, SOX, strategic planning, SSH, system monitoring, Tenable.io, threat hunting, TLS, Ubuntu, vendor management, VPN, vulnerability management, WAF