Live operational intelligence
Ask the platform
Ask Eric

Interrogate Eric's body of work.

A conversational interface for executives, hiring managers, and MSP leaders to evaluate real operational capability.

Eric OS
Welcome. Ask anything about Eric's operational experience, MSP exposure, governance work, or consulting methodology. Answers are grounded in the indexed Experience Eric OS corpus and cited below. Try a suggested investigation or type your own.
Suggested investigations

Sample investigations

See how the platform answers.

Every response is drawn only from Eric's documented record and cited to source — the same behavior you'll get when you ask your own question above.

Q

Has Eric actually led an audit end-to-end, or just supported one?

Led, not supported. In 2025, Eric took a government account through a full SOC 2 audit end-to-end — coordinating readiness across control owners, mapping controls to the Trust Services Criteria, gathering evidence, and engaging directly with the auditors to bring the engagement to successful completion.1

In parallel, he ran a HIPAA compliance review for the same account, assessing administrative, physical, and technical safeguards against the Security and Privacy Rules, then documenting gaps and remediation recommendations for the account team.1

Source1RÉSUMÉ · Cybersecurity Consultant · Kyndryl · 2020–present
Q

What's the largest environment Eric has run security operations for?

At Truist Bank, Eric led enterprise security operations supporting 50,000+ endpoints across Windows, Linux, and AIX — deploying and managing the tooling used to scan, assess, and enforce compliance on systems handling sensitive, regulated data.1

That work included partnering across cybersecurity, server, and application teams on vulnerability remediation and zero-day response, plus implementing privileged access controls with CyberArk under least-privilege principles.1 Earlier, at the Federal Reserve Bank, he ran vulnerability assessments and penetration testing across roughly 30,000 endpoints.2

Sources1RÉSUMÉ · Systems Engineer · Truist · 2010–20202RÉSUMÉ · Sr. Security Analyst · Federal Reserve · 2002–2010
Q

Is Eric a hands-on engineer or someone who can talk to the board?

Both — and the record shows the range rather than a claim. The hands-on side is 20+ years of operational work: data classification and scanning controls, platform onboarding, RBAC and identity integration, and control execution with evidence collection in banking and regulatory environments.1

The translation side shows up in the audit and governance work — producing control evidence for audits and attestations, and aligning security to NIST, FDIC, and ISO 27001 standards that leadership and regulators act on.1 One honest note: Eric's documented titles are engineer and consultant, not CISO — his strength is the operator who can make the posture legible to executives, not a figurehead.

Source1RÉSUMÉ · Professional summary & core competencies

These are three of many. Ask your own.