Skip to main content
Charles HuntCH
Open to opportunities

Charles Hunt

@charleshunt

I lead GRC-driven information security, turning PCI DSS into deployable controls.

United States
Message

What I'm looking for

I’m looking for a security leadership role where I can own GRC-to-control translation, strengthen vendor risk and compliance automation, and partner with engineering to remediate fast—without slowing delivery.

I’m an Information Security Officer with end-to-end GRC ownership across a 30+ location, multi-state retail enterprise. I combine framework discipline (PCI DSS, NIST CSF 2.0) with hands-on technical depth, translating audit findings into controls you can deploy—without slowing delivery.

In my current role, I own the annual PCI DSS Self-Assessment Questionnaire (SAQ) for evidence collection, audit timelines, remediation tracking, and continuous compliance readiness. I also authored the organization’s IT security policy library (acceptable use, access control, data handling, incident response, escalation), establishing the governance baseline across all sites.

I design and execute internal control testing across endpoint, identity, and network domains, driving gaps to closure through structured ticketing and engineering follow-through. I run third-party vendor risk reviews and ongoing posture assessments across the security toolchain (SentinelOne, Tenable, Blumira, ScreenConnect, Fortinet), validating control alignment and onboarding documentation.

I’ve built compliance automation and operational visibility: a PowerShell + GPO provisioning pipeline auto-installs and verifies EDR (SentinelOne), SIEM agent (Blumira), and vulnerability scanning (Tenable) across ~300 workstations, with chassis-aware logic for laptops vs. desktops. I activate Windows Security event log auditing (Event IDs 4800/4801) into Blumira via a Logmira template, monitor enterprise-wide SIEM telemetry, and frame incidents to executives with scope, impact, response, and residual-risk context.

Experience

Work history, roles, and key accomplishments

SH
Current

Information Security Officer

1915 South / Ashley HomeStore

Jan 2024 - Present (2 years 5 months)

Owned end-to-end PCI DSS SAQ and continuous compliance readiness across 30+ retail locations, and authored the IT security policy library to set enterprise governance. Drove enterprise phishing click rate from 28% to 7.1% and reduced cardholder-environment vulnerability exposure by 35% through structured remediation and deployable control improvements.

SH

Network Manager

1915 South / Ashley HomeStore

Feb 2016 - Jan 2024 (7 years 11 months)

Led network and PCI-scoped security operations across 30+ retail and distribution sites, including switching/routing, firewall infrastructure, vulnerability remediation, and DR readiness for 20+ servers. Built and ran the organization’s first security awareness program with KnowBe4, reducing enterprise phishing click rate from 28% to 7.1% over five quarters and cutting vulnerability exposure by 35

Education

Degrees, certifications, and relevant coursework

Western Governors University logoWU

Western Governors University

Bachelor of Science, Information Technology

Earned a Bachelor of Science in Information Technology from Western Governors University.

Wiregrass Georgia Technical College logoWC

Wiregrass Georgia Technical College

Associate of Applied Science, Information Security

Earned an Associate of Applied Science in Information Security from Wiregrass Georgia Technical College.

Wiregrass Georgia Technical College logoWC

Wiregrass Georgia Technical College

Associate of Applied Science, Networking Specialist

Earned an Associate of Applied Science in Networking Specialist from Wiregrass Georgia Technical College.

Tech stack

Software and tools used professionally

Find your dream job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan