Security & infrastructure
Application security, identity and access, change management, data center and network operations, logging and monitoring, resilience, and disaster recovery.
Hello, I'm Ali.
I'm a technology risk and AI governance leader with 14+ years of experience across PwC, Deloitte, and Florida Blue. I help technical teams, risk leaders, and executives understand one another, make clearer decisions, and move ambitious technology forward responsibly.
A personal preface
AI has moved from research labs and chat windows into the systems people use to write, decide, build, hire, serve customers, and operate physical infrastructure. The data centers behind it are expanding so quickly that compute now intersects with power grids, water, land, semiconductors, and national competitiveness. Organizations are also connecting more sensitive data, more vendors, and more autonomous software than ever before.
The opportunity is extraordinary. So is the responsibility. Data can be poisoned, exposed, or used outside its intended purpose. AI can scale a sound decision or a flawed one. Ransomware, supply chain compromise, identity attacks, cloud concentration, and the security of AI itself have made technology risk a business and societal question, not merely an IT issue.
That is the space I work in. I help organizations understand what technology is doing, where meaningful exposure exists, and how to move forward with judgment. My career has spanned technology risk, cybersecurity, application security, internal audit, governance, and executive advisory. I still genuinely enjoy making complicated problems clearer.
Professional profile
Across professional services and industry, I have led work involving global application environments, complex technology agreements, internal controls, cyber risk, and emerging AI questions.
My strength is translation: understanding the technical issue, seeing the business context around it, and helping people arrive at a response that is proportionate, defensible, and practical.
application security and readiness reviews across a global technology environment
improvement in application readiness review time through process redesign and automation
Microsoft Power Platform connectors addressed through a purpose built governance framework
engagement scale spanning business, data, cyber, technology, and AI risk
consultants trained at Deloitte University in technology risk and assurance
financial records analyzed to surface control issues and business risk
Technical depth
Application security, identity and access, change management, data center and network operations, logging and monitoring, resilience, and disaster recovery.
AI governance, SOX and ITGC, SOC 1 and SOC 2, internal audit, third party risk, regulatory compliance, and executive risk advisory.
SQL, SAS, Tableau, Alteryx, ACL, and UiPath, with experience across Unix, Windows, C, C#, and Java.
Recognition: 10 PwC Recognition Awards and 5 Deloitte Applause Awards.
Experience
PwC
Advises partners and executives on cyber, data, technology, and AI risk in agreements ranging from $1 million to more than $100 million across more than ten industries.
PwC
Led more than 1,500 application readiness reviews, improved review time by 75%, and built a governance framework for more than 1,300 Microsoft Power Platform connectors.
Florida Blue / GuideWell
Redesigned technology risk audit and compliance practices and helped lead resilient audit operations through a period of rapid operational change.
PwC
Built global audit strategies, led multinational teams of more than 20 professionals, and presented emerging technology and business risk to senior leadership.
Deloitte
Managed complex assurance and advisory engagements, led data driven risk work across major industries, and trained more than 300 consultants at Deloitte University.
Education & credentials
M.S., Information Systems & Operations Management. Graduated in the top 10% of the class and awarded the honor of induction into Alpha Iota Delta and Beta Gamma Sigma.
B.S., Engineering Sciences with a focus on electronics and semiconductors. Earned third place for a portable heart attack monitoring system as the final year project.
Leadership & Management Essentials
Certified Information Systems Auditor
NIST AI RMF · ISO 42001 · ISO 27001 · SOC 1 & SOC 2 · SOX / ITGC · HIPAA · COBIT
A few words from others
“He possesses strong analytical skills.”
“Counted on to complete quality deliverables.”
“Knowledgeable... coached me into finding the right solution.”
An independent project
Alongside my professional career, I'm building Lucivence, a platform for technology and AI insights, practical experiments, and selective advisory work. It gives me a place to explore ideas beyond the boundaries of a traditional résumé.
Visit LucivenceContact
Send me a note about a professional opportunity, an idea worth discussing, or a reason to connect. Your message will be delivered privately.