Skip to main content
HimalayasHimalayas logo
AL
Open to opportunities

Alberto Leiva

@albertoleiva

Senior cybersecurity & compliance consultant delivering NIST/ISO governance, ITGC assessments, and audit-ready risk remediation plans.

Colombia
Message

What I'm looking for

I’m looking for a cybersecurity & compliance consulting role where I can run NIST-aligned risk reviews and ITGC assessments, deliver audit-ready evidence and executive reporting, identify control gaps, and drive practical remediation plans across global stakeholders—remote or hybrid.

I’m a senior cybersecurity, compliance, and technology risk professional with 20+ years supporting cybersecurity governance, NIST-based reviews, ITGC assessments, audit readiness, evidence validation, remediation tracking, compliance documentation, and executive reporting.

I’m a Certified ISO/IEC 27001 Lead Auditor, CISM, CCISO, ISO/IEC 42001 Lead Auditor, and ISC2 Certified in Cybersecurity, with strong working knowledge of NIST CSF/RMF and NIST 800-30/53/171. I translate technical findings into clear, risk-based remediation plans that stakeholders can act on.

In my consulting work, I conduct ISO and NIST-aligned cybersecurity maturity assessments, technology risk reviews, control evaluations, and remediation planning. I maintain audit-ready documentation—audit workpapers, risk records, control observations, evidence summaries, remediation trackers, and executive reports—while coordinating globally with platform owners, delivery teams, infrastructure teams, engineering teams, and business stakeholders.

Earlier in my career, I led nationwide telecommunications security and infrastructure operations, worked with agencies including FBI/CISA/DOJ and partners during investigations, and supported OT/ICS environments for critical infrastructure. I bring that operational rigor to modern governance—covering access management, privileged access, change management, logging/monitoring, vulnerability management, incident response, and ITGC control evidence.

Experience

Work history, roles, and key accomplishments

VL
Current

Founder & Managing Principal

VCISOPRO LLC

Jan 2024 - Present (2 years 5 months)

Provided cybersecurity governance, compliance readiness, and technology risk advisory for regulated and infrastructure-oriented organizations. Conducted ISO/NIST-aligned maturity assessments, control evaluations, risk mapping, and audit-ready documentation with remediation roadmaps and executive reporting.

WT
Current

Senior Cybersecurity Consultant

Jan 2024 - Present (2 years 5 months)

Led cybersecurity advisory and technology risk initiatives supporting manufacturing, energy, financial services, and critical infrastructure environments. Performed NIST 800-82-aligned OT/ICS risk assessments using Purdue Model and Zero Trust principles and translated findings into executive-ready governance documentation and remediation guidance.

LW

Senior Security Engineer Consultant

Los Angeles County Department of Public Works

Jan 2023 - Jan 2024 (1 year)

Supported cybersecurity governance, risk management, policy development, and compliance reviews for public-sector critical infrastructure. Developed SCADA/IoT/OT security policies and performed NIST-based control and risk assessments to prioritize remediation and improve governance maturity.

AT&T logoAT

Security & Infrastructure Lead

Jan 2000 - Jan 2021 (21 years)

Led security and infrastructure operations for nationwide telecommunications environments supporting enterprise, government, healthcare, and critical infrastructure customers. Delivered NIST-aligned risk analysis, reviewed and approved security designs, and advanced segmentation and authentication improvements; led organizations exceeding 350 personnel and mentored 1,000+ professionals.

Education

Degrees, certifications, and relevant coursework

Excelsior College logoEC

Excelsior College

Bachelor of Arts, Information Technology

Earned a Bachelor of Arts in Information Technology.

New Mexico Military Institute logoNI

New Mexico Military Institute

Associate of Arts, Computer Science & Leadership

Earned an Associate of Arts focused on Computer Science & Leadership.

San Francisco State University logoSU

San Francisco State University

Graduate-Level Certificate

Completed graduate-level studies and a graduate-level certificate program.

Find your dream job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan