Michael Timms, MBA

Get In Touch

About Me

Michael Timms

Professional Summary

Cybersecurity and infrastructure leader with 24+ years of experience delivering secure, scalable systems across defense, government, and commercial sectors. Known for aligning technology strategy with mission-critical objectives, managing 500+ infrastructure deployments, and closing 600+ high-risk vulnerabilities. Leads certified, high-performing teams and drives measurable outcomes through NIST-compliant frameworks, Zero Trust planning, and DevSecOps practices. Michael was featured in a published interview on ransomware trends, best practices, and defense techniques by CyberCory, a respected voice in cybersecurity media.

Key Strengths

  • A cybersecurity and network management expert with over 24 years of experience
  • Specializing in revenue growth, product launches, complex solutions engineering, and partnership building
  • Extensive leadership experience in highly sensitive and secure environments
  • Strong senior leadership engagement skills and stakeholder management
  • Known for fostering positive team atmospheres and influential leadership

Key Achievements

  • Launched new security solutions at GDIT, resolving all critical vulnerabilities within first month
  • Successfully delivered multinational contract worth over $800 million across seven countries
  • Developed AI-assisted security automation suite for DevSecOps pipelines
  • Achieved NSA compliance for all HAIPE devices
  • Received outstanding DISA audit reviews and managed over 500 IT projects

Services

My core services include:

  • Cybersecurity Risk Assessments – Identify vulnerabilities and assess your organization's security posture.
  • Compliance & Regulatory Readiness – Support for GDPR, ISO 27001, NIST, and other industry standards.
  • Security Policy Development – Create or refine cybersecurity policies, procedures, and employee training.
  • Network & Endpoint Security – Secure your infrastructure with best-practice configurations and monitoring.
  • Incident Response Planning – Prepare your team with customized incident response plans and tabletop exercises.
  • Penetration Testing & Vulnerability Scanning – Test defenses proactively to uncover exploitable weaknesses.
  • Virtual CISO (vCISO) Services – Strategic guidance and leadership for businesses without an in-house CISO.
  • Cloud Security – Secure cloud-based environments, including Microsoft 365, AWS, and Google Workspace.

Professional Experience

Senior Network Security Manager

General Dynamics Information Technology (GDIT) | 03/2016 - Present

  • Technology Strategy & Business Alignment
    • Partnered with the CTO and CISO to deliver security programs aligned with U.S. Department of Defense mission requirements.
    • Provided ongoing strategic recommendations and technical leadership for high-impact network defense projects.
    • Delivered 500+ secure infrastructure deployments supporting military leadership, including classified VIP access.
    • Supported delivery of a $800M multinational defense contract across 7 countries, ensuring secure infrastructure aligned with compliance and operational requirements.
  • System Modernization & Infrastructure Overhaul
    • Led infrastructure upgrades across a 3,500-user secure campus network, improving reliability and system readiness.
    • Integrated Cisco ISE (IAM), SolarWinds (SIEM), and GEM One (network management) to centralize visibility and control.
  • Cybersecurity & Risk Management
    • Closed 600+ critical vulnerabilities in 30 days, drastically reducing risk across endpoints and systems.
    • Maintained NSA/NIST compliance across 350+ devices; initiated Zero Trust planning across the environment.
    • Secured $10M+ in infrastructure assets with SIEM coverage across 2,600 users, earning top DISA audit performance reviews.
  • Agile Delivery & DevSecOps
    • Built custom remediation scripts for repeated incidents; improved resolution times and reduced engineer workload.
    • Managed delivery timelines and execution across multiple concurrent security and infrastructure programs.
    • Developed an AI-assisted security automation suite integrating GitHub Actions, SSL/TLS validation, and secure DevSecOps pipelines.
  • Leadership & Capability Development
    • Led 15 cybersecurity professionals within a 100-person IT department; delivered role-based training to upskill team.
    • Supported certification targets; over 80% of team obtained advanced credentials under his leadership.

(Part-Time) Cybersecurity Consultant

Independent | 04/2024 - Present

  • Technology Strategy & Client Enablement
    • Supported SMEs across various sectors in establishing security baselines and aligning IT posture with business objectives.
    • Acted as primary advisor to CEOs, translating cybersecurity into actionable, cost-aligned recommendations.
  • Security Architecture & Scalable Solutions
    • Delivered IAM, firewall, and SOCaaS recommendations suited to organizational maturity and resource constraints.
    • Assisted in cloud migration planning and data governance for clients lacking dedicated IT or compliance teams.
  • Cyber Risk Reduction & Measurable Impact
    • Reduced phishing incidents by 80% through endpoint protection rollout and awareness training.
    • Decreased external attack surface by 60% via asset decommissioning, patching, and access hardening.
    • Achieved full adoption of proposed strategies by offering tiered security options based on business capacity.

IT Consultant

Reality Communications | 08/2013 - 02/2016

  • Technology Consulting & Architecture
    • Designed infrastructure upgrades and network systems to support business growth across MEA clients.
    • Combined technical delivery with pre-sales input to tailor solutions to evolving customer needs.
  • Scalability & Performance Improvement
    • Reduced IT outages, saving ~120 hours/month in staff downtime.
    • Lowered annual operational overhead by 40% (~$36K) through improved infrastructure and resource use.
  • Leadership & Team Development
    • Mentored 20 technical specialists, using a transformational leadership style focused on intrinsic motivators.
    • Initiated recurring "Team Training Tuesday" sessions, improving cross-team collaboration and accountability.

Lead Communications Specialist

Black Box Network Services | 12/2006 - 07/2013

Led the UAE's development and enhancement of voice and data systems. Spearheaded initiatives to optimize telecommunications solutions for businesses across various sectors. Coached, mentored, and reviewed the work of 9 personnel.

  • Directed large-scale telecom upgrades across the UAE, enhancing voice and data infrastructure for government and private sector clients.
  • Developed and implemented disaster-resilient communication protocols adopted across multiple Middle East sites, improving operational continuity.
  • Led and coached a 9-member team, raising delivery standards and accelerating project turnaround.

Lead Voice Systems Specialist and Outside Plant Project Manager

Lockheed Martin | 09/2002 - 11/2006

  • Managed end-to-end infrastructure projects for a 800+ user secure campus in Crete, aligning systems delivery with U.S. defense standards.
  • Delivered a new telecommunications backbone using PMI-based planning, improving network reliability and project transparency.
  • Re-engineered voice system automation, reducing operational costs by $300K annually.
  • Mentored junior team members, ensuring quality execution across mission-critical environments.

Technical Skills & Certifications

ISC2 & ISACA

CISSP Logo
Certified Information Systems Security Professional (CISSP)
CISM Logo
Certified Information Security Manager (CISM)

Project Management

PMP Logo
Project Management Professional (PMP)

Cisco

CCNP Enterprise Logo
CCNP - Enterprise
CCNA Logo
CCNA
Cisco Security Core Logo
Specialist - Security Core

CompTIA

CNSP Logo
Network Security Professional (CNSP)
CNVP Logo
Network Vulnerability Assessment Professional (CNVP)
CSAP Logo
Security Analytics Professional (CSAP)
CySA+ Logo
CySA+ CE
PenTest+ Logo
PenTest+ CE
Security+ Logo
Security+ CE
A+ Logo
A+ CE

Additional Certifications

MCSA Logo
Microsoft MCSA

Microsoft Server 2012

Linux LPI Logo
Linux LPI

Linux Essentials

ITIL Logo
ITIL 4

AXELOS

Education

WGU Logo

M.S. in Information Technology Management (MBA)

Western Governors University, Utah, United States

01/2025
WGU Logo

B.S. in Cybersecurity and Information Assurance

Western Governors University, Utah, United States

05/2024
Need Cybersecurity Help? Chat Now