Zachary Paulsgrove

Information Security Manager | Enterprise Risk & GRC Leadership

Career Summary

Accomplished information security leader driving enterprise security strategy, risk governance, and compliance for a global organization of 400+ employees. Leads SOC 2 and ISO 27001 programs, enterprise risk assessments, and security roadmap development across identity, endpoint, and SaaS environments. Proven ability to partner with executive leadership to align security investments with business goals, manage risk tradeoffs, and strengthen security posture while supporting organizational growth.

Work Experience

Information Security Manager

Goodway Group
2024 - Present

Solely responsible for enterprise information security strategy, risk governance, and compliance, supporting a global workforce of 400+ employees.

Project manages the SOC 2 program, coordinating cross-functional stakeholders, overseeing audit readiness, and maintaining ongoing control alignment.

Leads ISO 27001 initiatives and enterprise risk assessments, including security governance and third-party risk considerations, mitigating security risks across identity, endpoint, SaaS, and cloud environments.

Develops and maintains the security roadmap in partnership with vCISO, translating requirements into actionable, phased initiatives.

Trusted advisor to IT leadership, providing regular briefings to the Director of IT and facilitating quarterly security committee meetings focused on risk posture, initiatives, and strategy.

Evaluates and recommends security tools and platforms, influencing decisions and partnering with IT leadership for approvals.

Drives adoption of security controls and policies, balancing risk reduction with operational efficiency and business needs.

Tech Operations Manager

Goodway Group
2020 - 2024

Led a Tier 3 technology operations team delivering critical business process and application support for a global organization of 450+ employees.

Owned the full lifecycle management of enterprise SaaS platforms, aligning tooling decisions with business strategy, budget, and user requirements.

Collaborated with IT and business leadership to implement and scale technology solutions that enhanced operational reliability and boosted employee productivity.

Contributed to the development of cybersecurity and disaster recovery strategies, partnering closely with information security to enhance organizational resilience and risk management.

Developed operational processes and escalation models, improving service consistency, accountability, and cross-functional collaboration.

Senior Operations Engineer

Goodway Group
2016 - 2020

Served as a Tier 3 support team member supporting our internal IT systems and applications developed using NodeJS, Javascript, and SQL.

Coached and mentored junior team members in their development.

Associate Software Application Engineer

Charles Schwab
2014 - 2016

Supported an online investment product as a Tier 3 production support team member assisting my team in the identification, logging, and resolution of bugs within a product developed using C# and TypeScript with a Mongo backend.

Developed and supported an existing desktop and online portfolio management software package. Tasked with programming new features, fixing existing bugs, and providing production support help using C#, C++, VB.Net, and SQL Server.

Sergeant, Infantry Unit

US Army
2009 - 2014 (Honorable Discharge)

Prepared and presented intelligence reports illustrating the results of military operations. Assisted in all levels of military mission planning for my team including researching, designing, reviewing, and implementation. Mentored and coached soldiers in all aspects of their personal and professional lives.

Achievements:

  • Pathfinder Qualified
  • Airborne Qualified

Education

  • MS Project Management
    Colorado State University
    2014 - 2017
  • MS Business Administration
    University of Texas at Arlington
    2005 - 2009
  • BS Information Systems
    University of Texas at Arlington
    2000 - 2004

Certifications

  • ITIL 4 Foundation
    PeopleCert - 2025
  • Project Management Professional (PMP)
    PMI - 2024
  • Certified Information Security Manager (CISM)
    ISACA - 2024
  • Certified Information Systems Security Professional (CISSP)
    ISC2 - 2024
  • Security+
    CompTIA - 2024

Interests

My interests include, in no particular order:

  • Running
  • Weight Lifting
  • Reading
  • PC Gaming
  • Fast cars