Open to Director-level roles · Ashland, MA
Roger Figuereo
Cybersecurity & Infrastructure Leader
I build and run enterprise security programs — identity, cloud, network, endpoint, and application — and translate technical risk into decisions executives can act on. Most recently I stood up an enterprise AI governance program from nothing.

Highlights
- 15+years
- Security & infrastructure leadership
- Enterprise, federally funded research, and U.S. Army environments.
- 5,000+users
- On systems I secured
- Mission-critical communications across bases and three deployments.
- CISSPcertified
- Plus CompTIA Security+
- SOC 2 Type II and NIST CSF program experience.
What I do
Three things I get hired for
Security programs
Identity, cloud, network, endpoint, and application security — built as a program, not a pile of tools.
- Zero Trust architecture
- SIEM/SOAR operations
- Threat detection & IR
Infrastructure at scale
Multi-site environments that stay consistent: standardized endpoints, identity, and connectivity.
- Microsoft 365 & Entra ID
- SD-WAN & network security
- Backup, DR & continuity
Governance & compliance
Turning frameworks into controls people actually follow, and evidence auditors accept.
- SOC 2 Type II
- NIST CSF & CIS Controls
- AI governance & risk
Track record
Where I've done it
Senior Systems & Security Administrator
NOBULL
Sole senior owner of security and infrastructure for a national footwear and apparel brand, with direct executive leadership visibility.
Information Security Analyst III
Education Development Center
Protected sensitive research and grant data across network, endpoint, and cloud in a federally funded research environment.
Senior Systems Analyst
Elkus Manfredi Architects
Platform owner for hybrid Azure and Microsoft 365 environments serving ~300 users across a decade.
Lead Security Analyst & Signal Operations Leader
United States Army
Owned mission-critical communications systems for 5,000+ users across domestic bases and three combat deployments.

Beyond the work
How I got here
I came to security through the U.S. Army, where I spent nine years running communications and signal operations — including three deployments between 2011 and 2014. That work taught me the thing I still lead with: systems fail people long before they fail technically, and the job is to notice which one is happening.
I'm bilingual in English and Spanish, based just outside Boston, and I spend a fair amount of time translating between the people who run the technology and the people who fund it. Happy to talk shop with either.
Looking for someone to own it end to end?
I'm open to Director-level roles leading security, infrastructure, or AI governance. The fastest way to reach me is the contact form.