Management
Security Innovation is guided by professionals who are heralded pioneers, expert practitioners and seasoned veterans in the software security and quality industry.
EDWARD A. ADAMS - President & CEO
Ed
Adams is a seasoned software executive with successful leadership
experience in various-sized organizations that serve the IT security and
quality assurance industries.
As CEO, Mr. Adams applies his information security and business skills,
as well as his pervasive industry experience in the Application Quality
space, to direct software security experts in helping organizations
understand the risks in their software systems and developing programs
to mitigate those risks. His organization has delivered high-quality
risk solutions to the most recognizable companies in the world including
Microsoft, IBM, Visa, Fedex, ING, Sony, Symantec, Nationwide and HP.
Mr. Adams is the founder and business owner of the Application Security
Industry Consortium, Inc.,
an association of industry technologists and leaders establishing and
defining cross-industry application security guidance and metrics. He is
on the board of the National Association of Information Security
Groups (NAISG).
No stranger to the podium, Mr. Adams has presented to thousands at
numerous seminars, software industry conferences, and private companies.
He has contributed written and oral commentary for business and
technology media outlets such as New England Cable News, CSO Magazine,
SC Magazine, CIO Update, Investors Business Daily,
Optimize and CFO Magazine. Mr. Adams is in the process of
writing a book titled “Information Security Management: Survival Guide”,
which will be published by Wiley & Sons and is due out in November
2008. He also maintains a
blog with CSO Magazine and is a
columnist for CIO Update.
Topics of interest on which Mr. Adams has spoken:
- Considering IT security from a contextual standpoint; What security means to [my] business
- Assessing risks and vulnerabilities in an enterprise
- Marrying security with risk management frameworks
- Integrating security into the software development lifecycle (SDLC)
- Creating a security-aware organization: effective techniques for training and awareness programs
- Measuring/assessing security investments
- Understanding the leadership, staffing and ownership of security in an organization
Mr. Adams earned his MBA degree with
honors from Boston College and has B.A. degrees in Mechanical
Engineering and English Literature from the University of
Massachusetts.
FLORENCE MOTTAY - Managing Director, EMEA
Ms. Mottay is a seasoned Business Manager and adept Security
Expert. She is responsible for the tight management and
successful completion of all client assessment, mitigation and
education projects for all of EMEA and parts of the U.S. She
serves as the primary point of contact with customers, where she
assesses their principal security concerns and assembles an
operative plan designed to meet and exceed their stated
objectives. She has managed a diversity of client projects
ranging from e-commerce applications to biometric authentication
devices to embedded systems.
As a leader in the organization, Ms. Mottay is tasked with
maintaining a pulse on key application security business and
technical drivers. She uses this knowledge to continuously
refine Security Innovation’s processes and service offerings to
meet our clients’ evolving security needs. Ms. Mottay was the
visionary behind
TeamMentor, a first-of-a-kind application
security best practices knowledge management system that guides
software development and test teams through the process of
consistently developing secure applications. Her specialty areas
include:
- Threat Modeling for the Enterprise. Through years
of tight interaction with customers, Ms. Mottay has amassed an
understanding of the wide array of environments and concerns
our clients face. Subsequently, she often leads her team in
designing threat models of most critical applications to
determine what the imminent threats are to our clients’
applications and enterprise
- Customized Enterprise Security Solutions. Our customers are often faced with unique challenges and in need of customized business solutions. Ms. Mottay has taken the lead on several projects and successfully created and implemented new processes, programs and methodologies for our clients including integrating security at the test phase (for Compliance Standards) and the creation of customized training courses specific to a client’s underlying technology and processes.
Prior to joining Security Innovation, Ms. Mottay served as
Software Test Engineer for J.D. Edwards. She was also
Project Leader at the Center for Software Engineering
Research at the Florida Institute of Technology where she
worked with Dr. Whittaker, the founder of Security
Innovation and world-renowned expert in application
security.
Ms. Mottay earned a B.S. in Applied Mathematics and an M.S. in
Software Engineering from the Florida Institute of
Technology.
JASON TAYLOR - Chief Technology Officer
Mr. Taylor leads the strategic direction
for all technology initiatives and manages world-class development teams
for the company's product lines. He has spent his career focused on application development and testing with a primary focus on application security. His unrivaled understanding of application behavior provided the impetus for Security Innovation’s industry pioneering fault injection tool, Holodeck Enterprise Edition, and critical enhancements to the
company’s internal testing and development tools. Mr. Taylor was the visionary and designer of the Company’s “Creating Secure Code”
methodology and course which has been taught to several of the world's
largest technology organizations.
Prior to joining Security Innovation, Mr. Taylor served as test architect, security lead and development manager at Microsoft for various releases of Internet Explorer and Windows. He was the first member of the Internet Explorer security test team, and as the security team lead, he grew it from a solitary operation to the leading application security test team at Microsoft. Later, he built the Test Model Toolkit which became the standard model-based testing tool at Microsoft, winning a Best Practice Award along the way.
Mr. Taylor is an external reviewer, contributor and primary author for
Microsoft patterns & practices security guidance. He has published
several whitepapers including “Web Services Risk Assessment and Recommendations” and “Security Threats: Risks, Protection & Limitations"
for CIO Update and co-authored "Team Development with Visual Studio Team
Foundation Server" with J.D. Meier of Microsoft. Mr. Taylor received his C.S.
degree from Montana State University.
PETER JENNEY - VP of Products
Mr.
Jenney brings more than 20 years of high-tech experience to Security
Innovation where he leads all product management and strategic vision
for the firms cutting edge security testing and guidance products. He works closely
with Security Innovation's senior management, engineering and
business development teams, as well as the company’s business
partners to identify new opportunities that will further
diversify the Company’s product portfolio and
penetrate the security market.
Prior to joining Security Innovation as a full-time employee,
Mr. Jenney worked with the Company as a consultant on product
planning and development for Holodeck and other internal service
tools. Previously, Mr. Jenney served as director of product
management & strategy at such companies as Rational Software,
Dataware, Ipswitch and Legato, where he successfully rolled out
world-class products and managed technology relationships with
industry leaders such as Cisco, IBM and Microsoft. Mr. Jenney
received his B.A. degree from the University of Massachusetts.
REED AUGLIERE - VP of Operations
Drawing
on his more than 20 years of high-tech experience in the security
software and professional services industries, Mr. Augliere defines and
develops high-end consulting and training solutions for long-term
programs with enterprise customers. Mr. Augliere also helps to build and
manage Security Innovation’s regulatory compliance line of business.
As the security consulting marketplace continues to mature in the
direction of holistic security risk management, Mr. Augliere will lead
the adoption of application security best practices into risk management
frameworks such as ISO 27002 and the PCI DSS.
Prior to Security Innovation, Mr. Augliere worked for RSA, the security
division of EMC, leading the PS integration of RSA’s recently-acquired
Tablus data leakage scanning technology. Prior to RSA, Mr. Augliere was
employed at Greenwich Technology Partners, Expound, and Compaq Computer
Corporation, serving in principal solutions architect and chief
technology officer roles. In these roles, Mr. Augliere specialized in
application software development, consulting service definition, and the
delivery of large projects in financial services, pharmaceutical and
consumer verticals, while building trusted advisor relationships with
executives on the customer side.
Mr. Augliere is a distinguished academic and author of numerous
technical papers. He received an Ed.D. in Organizational
Science/Operations Research from Harvard University, a C.E.T. in Digital
Electronics from the Massachusetts Institute of Technology and a B.A. in
Liberal Arts/Aerospace Engineering from Syracuse University.
MICHAEL GAVIN - Security Strategist
Michael is an accomplished security expert with unyielding
passion for application security and a history of helping
clients implement risk mitigation strategies. His balanced skill
set of technical depth and industry intelligence places him at
the apex of developing solutions that address the real world
problems that end-users face on a daily basis. Michael’s primary
responsibility at Security Innovation is defining and executing
defensive and mitigation solutions that encompass education,
process consultancy, and/or design improvements.
Prior to joining Security Innovation, Michael was a highly
respected Senior Analysts at Forrester. While there, he was a
member of the Security & Risk Management team covering software
security, vulnerability management, and incident response and
digital investigations. Michael was responsible for following
relevant vendor companies, trends and new technologies and
providing analysis to his clients and the press. He also served
as a Security Architect with @Stake and as a Security Engineer
with Black Dragon Software.
Michael has been quoted in articles for Application
Development Trends, CNET, Computer World,
Dark Reading, Federal Computer Week, Forbes.com,
Information Week, InfoWorld, Internet News,
Investors Business Daily, Linux News, Linux
World, Network World, Processor, SC
Magazine, Software Development Times, Tech News
World, Tech Target, and ZD Net. He has also
written several intelligence reports including "Trends 2006:
Application Security Testing", “Application Firewalls –
Are They Worth The Investment?”, “CSI: Cyberspace –
Investigations, Evidence, and Forensics In The Digital World"
and "To Secure Web Applications, Start With The OWASP Top Ten".
Michael holds an Sc.M. in Computer Science from Brown University and an A.B. in Mathematics from Boston College.



