Technology Audit & GRC Leadership · San Francisco Bay Area
30+ years building, managing, and auditing technology at scale — from enterprise infrastructure to cloud security, payment systems, and regulatory compliance at two of America's largest financial institutions.
About
Most technology auditors come up through accounting. I came up through the machines. Starting in 1994 with tech sales and helpdesk, I scaled through desktop support, server administration, and enterprise-scale email and mobile infrastructure — before moving into product management, risk & compliance, and ultimately technology audit at VP level.
"I don't just identify risks — I understand the operational realities of the teams managing them."
That bottom-up trajectory is the foundation of everything I do. When I sit across from an engineering team, I've been where they've been. When I brief the board, I translate technical complexity into the language decisions are made in. The result: audit findings that stick because the teams receiving them feel heard, not accused.
Based in the San Francisco Bay Area, I'm actively exploring Technology Audit Manager, GRC leadership, and related opportunities where technical depth and business acumen both matter. My real estate investment portfolio — spanning California, Colorado, and Arizona — reflects the same disciplined, analytical approach I bring to every audit engagement.
Volunteer board member, San Bruno Education Foundation (K–8 public schools) · Real estate investor since 1999
Experience
Leading complex technology audits and issue validations across Wells Fargo's most critical platforms. Driving testing strategy, providing staff mentorship, and delivering credible challenge communications to senior management. Continuously building reusable audit methodologies that improve speed and quality across engagements.
Audit coverage spans cloud solutions, application configuration, electronic trading, home lending, IVR and customer authentication, consumer digital platforms, identity and access management, payment systems, and wealth and treasury technologies. Control testing includes encryption systems, RPA, automated trading controls, data interfaces, SDLC, and access management tooling.
Led end-to-end risk identification and remediation for infrastructure supporting 250,000+ internal users. Partnered across InfoSec, Engineering, and Audit to align complex technologies with enterprise risk appetite. Developed risk-based policies reducing operational and reputational risk while minimizing compliance costs.
Synthesized governance frameworks across 160+ Subject Matter Experts. Launched an Executive Dashboard delivering real-time visibility into requirement adherence and control quality to senior leadership.
Primary Product Manager for global mobile platforms serving 116,000+ users (BlackBerry and Good for Enterprise). Architected annual operational budgets and led vendor contract negotiations with Apple, Microsoft, AT&T, and Verizon. Led a team of 7 senior technologists deploying messaging and collaboration suites for a 130,000-user environment.
Authored 228 editions of This Week in Mobility — a curated intelligence briefing for 600+ stakeholders including 80+ senior executives — establishing a publishing track record of translating complex technology trends for leadership audiences.
Redesigned enterprise messaging environment: 42 servers across 17 countries serving 8,000 recipients in 57 offices. Email security remediation and anti-virus infrastructure management.
Credentials
Testimonials
Writing
From 228 executive mobility briefings at Bank of America to hands-on explorations of AI tools and modern audit practice — writing clearly about complex technology has always been part of how I think.
More articles coming soon — exploring what happens when a technology auditor goes deep on AI tools, vibe coding, and modern GRC workflows. Follow along on LinkedIn.
Connect
I'm actively exploring Technology Audit Manager, GRC leadership, and related opportunities in the San Francisco Bay Area. If you're building a team that values technical depth alongside strategic thinking, I'd welcome the conversation.
Connect on LinkedInAlso at stonemonk.com