Tadashi Kamitaki
Manager, Threat Detection and Response @ CarGurus
About
Security leader with experience across financial services and high-growth startups. Focused on technology, risk management, data-driven decision making, and building strong teams. I believe great security practices can delight users and let teams move fast and ship with confidence.
United States
Somerville
Internet
Software Development, Web Services, Powershell, Cybersecurity, DevOps, Continuous Integration (CI), Continuous Delivery (CD), Orchestration, Ansible, Cloud Computing, ITIL, Leadership, Terraform, Representational State Transfer (REST), Amazon Web Services (AWS), Google Cloud Platform (GCP), ServiceNow, Customer Service, Research, Open Heart Surgery
Experience

Security Operations Manager
Boston, MA
Transformed security operations from reactive alert triage to strategic engineering, improving security outcomes while creating space for team growth and development. • Reduced alert MTTR by 75% by replacing an MSSP, streamlining response processes, updating on-call rotation, and tuning alerts • Oversaw log and detection infrastructure redesign reducing cost by 30% and improving detective control effectiveness • Developed insider risk program from tool selection through deployment, operationalizing response processes across HR, IT, and Compliance • Managed budget and renewal negotiations, reducing costs to the program • Deployed or replaced tooling for third-party risk, application control and vulnerability management • Provided mentorship and feedback to drive individual development and accountability

Associate Director, Security
Boston, Massachusetts, United States
Led a team to implement a new security program for a startup with $900M in funding. Performed critical risk reduction in a fast-paced, agile environment. • Performed program review, identified deficiencies, developed remediation strategies, and tracked completion with leadership • Analyzed alignment against NIST CSF and ISO 27001 frameworks • Collaborated in procuring cyber insurance, responded to questionnaires • Managed procurement and budget, negotiating terms, and justifying investment to leadership • Authored acceptable use, third party risk, incident response, and other security policies • Promoted security across the organization through collaboration with other leaders, company-wide announcements, and regular training • Oversaw GDPR and other regulatory compliance, including Massachusetts 201 CMR 17 • Designed a third-party-risk program to ensure adequate security practices in partners • Authored and delivered training to a variety of audiences, including universal awareness, high risk phishing, and targeted developer training • Mentored team members in technical skills and career growth opportunities • Deployed and managed core security tools including EDR, IAM, and SIEM • Implemented a developer security stack (SCA, SAST, and CSPM) integrated with CI/CD pipeline • Selected and deployed Zero Trust Network Access (ZTNA) and device trust tools

Lead Security Engineer
Boston, Massachusetts, United States
• Deployed and maintained EDR, MDM, and VPN tooling on Windows, Mac and Linux endpoints • Automated the installation and management of endpoint software using PowerShell and a modern cloud based MDM tool • Implemented Okta, enabling automated provisioning, SAML/OIDC SSO, and MFA/2FA controls • Selected and implemented a SIEM, configuring alerting, detections and automation • Audited corporate productivity suite security posture including mail security, data sharing, data classification, administrative access and more • Designed and implemented ZTNA and device trust strategy for high risk users • Authored and delivered general security training to all users and advanced phishing training to high risk users • Performed investigations and documented findings in response to security alerts, anomalous behavior, and user reports • Authored procedures for repeatable incident response and disseminated to the team • Mentored team members in industry practices, technical skills and career goals • Performed least privilege and configuration audits for critical infrastructure tools including AWS, GCP, Snowflake, and more • Implemented a developer security stack (SCA, SAST, and CSPM) integrated with CI/CD pipeline, allowing for remediation of 100% of critical and over 80% of high priority vulnerabilities • Collaborated with engineering teams to make use of modern secrets management tooling to improve privileged access management • Performed code reviews focusing on OWASP Top 10 and CWE Top 25 vulnerabilities • Authored developer security training targeted against commonly observed vulnerabilities

Senior Information Security Engineer
Boston, MA
Technical lead of the Information Security Engineering team responsible for our Identity and Access Management (IAM), Zero Trust (ZTNA), software security (DevSecOps), and cloud security programs for a leading global investment firm with over $120B AUM. Focused on automation via infrastructure as code (IaC), CI/CD pipelines and git based workflows. - Led DevSecOps and ZTNA discussions fostering collaboration across organizational lines - Developed software security program with a focus on developer efficiency and visibility - Maintained the core identity provider (IDP) for the firm through the 2020 lock-downs and transition to remote work - Authored Zero Trust strategy for the firm - Led cloud security strategy and implemented security alerting and vulnerability management tools - Authored developer training on secure coding practices.

Senior ServiceNow Engineer
Greater Boston Area
Managed a ServiceNow implementation used project management, procurement, asset, helpdesk, infrastructure and other teams. This included direct experience with development from requirements gathering through implementation as well as managing engagements with professional services teams to achieve larger project goals. Specific achievements include: Managing upgrades including communication and testing strategy Developing custom integrations with 3rd party tools to automate common tasks Developing applications for teams outside of IT to track work Improving the maintainability of existing customizations and alignment with the ITIL framework. Implementing the ServiceNow Service Portal Implementing the ServiceNow Project Management application Reducing workload to maintain CMDB data through automated data imports and ServiceNow Discovery.

Remote Services Consultant
Waltham, Ma
Worked in ServiceNow Remote Administration Services to provide access to certified consultants who provide technical guidance and remote services to help maintain and enhance customer’s implementation of ServiceNow applications and platform. Consultants work individually with clients to design and implement custom solutions on the ServiceNow platform.

Student
Wesleyan University

Summer Intern
Pfizer
Tadashi Kamitaki's Contact Information
Phone
Find the Right Leads
Find Verified Contact Data
What LeadContact does well
Find verified emails, phone numbers, and decision-makers with 98% accuracy.
Find Leads
Find the right people by company, role, industry, location, and more.
925M+ professional profiles

Find Emails
Access verified email addresses for your target contacts.
657M+ emails

Find Phone Numbers
Get cross-validated phone data from multiple top sources.
239M+ phone numbers

More Accurate. Lower Cost.
Find contact data in 1 tool with 98% accuracy
LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.
Great conversations start with the right contact.
It’s time to find yours.




