Dominic Pace

Austin, Texas, US

Dominic's Skills
Business Development
Product Management
User Experience

Startup Experience

First time founder

Age Group


About Dominic

Over 10 years of information security experience that encompasses the entire spectrum of IT and information security, including governance and architecture, regulatory compliance, business continuity, disaster recovery, policy creation, risk management, application security, network security, and physical security. Experienced in leading IT security teams and building an entire IT security department from scratch. Proficient in identifying performance gaps and implementing effective security policies and technology improvements. Skilled in developing and managing cohesive, top-performing teams.


Nothing ventured, nothing gained! - Benjamin Franklin

Work Experience

Lead Information Security Engineer

Tangoe, Inc.

February 2013 - Today

Recruited to build their information security program from scratch, starting with assessing business risks and objectives and creating an information security governance framework based on NIST, COBIT 5, PCI, and ISO 27000 that would meet and exceed regulatory compliance in the US, EU, Asia, and other emerging markets. Key Contributions: • Orchestrated a culture change at the company to prove that security can be achieved without impeding the business and demonstrated to the marketing and sales teams how good security can become a selling point for Tangoe products. • Implemented an IT risk management program to asses and mitigate risks to web applications and IT infrastructure that resulted in providing more comprehensive mitigation. • Conducted gap analyses for PCI-DSS, SSAE 16, and SOX which in turn, was used to properly budget mitigation controls to risk. • Wrote 14 corporate IT security polices, including AUP, BCP/DR, data classification, data retention, IT security, secure coding guidelines, incident response, and privacy policy. • Built out the security team by hiring three additional US resources and three international resources. • Responsible for vulnerability management, including scans and remediation for over 1000 physical and virtual devices. • Periodically conducted and supervised manual penetration testing based on OWASP Top Ten using tools like Burp Suite and Metasploit against web and Android apps. • Researched, purchased, and implemented new technologies for asset tracking, endpoint encryption, data loss prevention, log monitoring (SIEM), and endpoint anti-virus. • Created and vetted new Linux and Windows hardening guides to secure both corporate and production infrastructure. • Worked to revise Tangoe’s SDLC to include modern practices and secure coding standards that integrated with DevOps deployments and agile programming lifecycles. • Designed a scalable incident response policy and process that encompasses all of Tangoe’s business processes.

First Lieutenant

Army National Guar

January 2009 - Today

Currently lead a ten-soldier section that supervises two field artillery batteries. Manage all aspects of training, readiness, deployment, and mission execution. Accountable for vehicles, weapons, and equipment worth in excess of $1 million. Participated in planning, preparing, and executing disaster relief as Assistant Battle Captain during Hurricane Sandy and Hurricane Irene in New Jersey.

Information Assurance Security Officer

Chugach Alaska Corporation

May 2010 - January 2013

Recruited as a key security resource for ensuring all information systems remain compliant with DoD/Army information security regulations and enforcing acceptable use policies. Coordinated and performed network compliance and vulnerability scans to evaluate information systems for potential intrusions. Served as a subject matter expert in providing strategic improvements to contingency and disaster recovery plans and authoring IT security standard operating and information assurance procedures. Maintained communication with division chief and department heads, reporting on potential network threats, and monitored and tracked information assurance issues. Key Contributions: • Supervised three other security team members and served as liaison to security counterparts in R&D portions of DoD. • Regularly conducted vulnerability assessments of DoD assets and applications. • Instrumental in creating and deploying SharePoint infrastructure that actively collects and organizes information assurance incidents, allowing for the creation of a living procedural documentation process and providing knowledge management capabilities. • Developed a plan of action for a variety of security initiatives, including deployments, upgrades, vendor purchases, and special projects that required information assurance oversight. • Significantly revised incident response procedures to reflect modern standards, which resulted in faster response time and comprehensive mitigation. • Provided critical expertise on mobile devices, such as purchasing options, hardening, encryption, and accountability management solutions, which resulted in protection of data at rest at all times. • Awarded for automating redundant information assurance systems and combining several disparate procedures/systems into unified technology that eliminated 40 hours per week of manual interaction.

Security System Administrator

Newark Public Schools

November 2007 - May 2010

Provided high-level technical support in maintaining district / school IT networks. Directed field technicians and Tier 2 support team in troubleshooting and providing on-site and remote support to resolve ongoing issues. Coordinated with users to gather information, conduct failure analysis (FA) on affected systems and replace / repair system resources, improving network operations. Maintained communication with school administrators reporting on project status and achieved benchmarks. Supervised Tier 1-, 2-, and 3 support operations.


New Jersey Institute of Technology

MS in Information Technology Administration and Security

2009 - 2013

New Jersey Institute of Technology

BS in Information Technology

2003 - 2009


CompTIA A+


CompTIA Security+


Certified Information Systems Security Professional (CISSP)


Certified Information Security Manager (CISM)


Certified Information Systems Auditor (CISA)


Certified in Risk and Information Systems Control (CRISC)


AWS Certified Solutions Architect - Associate

Amazon Web Services