Rock Lambros — CEO
30 years in cybersecurity and tech. Author of two AI governance frameworks adopted by Fortune 500 organizations. OWASP Agentic Security Initiative core team member, shaping the global Top 10 for AI agent security. I built RISE (Research, Implement, Sustain, Evaluate) for AI strategy and CARE (Create, Adapt, Run, Evolve) for AI governance because most organizations treat AI risk management as a compliance checkbox. It is not. It is an operational discipline that either accelerates your business or quietly destroys trust in every model you deploy. I have spent 30 years in cybersecurity and tech, watching organizations confuse documentation with protection. Now the same pattern is repeating with AI. Companies adopt frameworks, check compliance boxes, and call it governance. Meanwhile, their AI agents are making autonomous decisions with tools they never approved, using data with no lineage, and interacting with other agents no one monitors. As CEO of RockCyber, I advise Fortune 500 boards and C-suites on AI governance, cybersecurity strategy, and AI risk management. My clients include organizations navigating agentic AI security, multi-agent system risks, and regulatory alignment across the EU AI Act, ISO 42001, NIST AI RMF, and Colorado SB24-205. Where I focus: AI agent security and the emerging attack surface of multi-agent systems, MCP/A2A protocols, and autonomous tool use. Responsible AI programs that produce measurable risk reduction, not reports that collect dust. Security risk quantification that translates technical exposure into board-level decisions. vCISO and fractional CISO engagements for organizations building or scaling security programs. I also co-authored "The CISO Evolution: Business Knowledge for Cybersecurity Executives" and write the RockCyber Musings newsletter for security leaders and AI practitioners. I contribute to the OWASP AI Exchange and OWASP GenAI Security Project as an author and contributor. Currently pursuing graduate work in Data Science and AI at the University of Denver because I refuse to advise on systems I have not built myself. If you are evaluating AI governance advisors for your board or portfolio companies, let's talk. If you lead a security team navigating agentic AI risk, follow me here. I write about what is actually working and what is quietly failing in AI security every week.
Stackforce AI infers this person is a cybersecurity and AI governance expert with extensive experience in enterprise risk management.
Location: Denver, Colorado, United States
Experience: 28 yrs 5 mos
Skills
- Ai Security
- Governance
- Cybersecurity
- Ai Governance
- Risk Management
- Application Security
- Policy Development
- Strategic Leadership
- Information Security
- Information Technology
- Database Management
Career Highlights
- 30 years of experience in cybersecurity and tech.
- Authored AI governance frameworks for Fortune 500 companies.
- Core team member shaping global AI security standards.
Work Experience
OWASP GenAI Security Project
OWASP Top 10 for LLMs Co-Lead (1 mo)
Core Team Member - Agentic Security Initiative (4 mos)
AIUC-1
Consortium Member (2 mos)
Zenity
Director of AI Security and Governance (3 mos)
PsyberCog Labs
Advisory Board Member (4 mos)
Enterprise Risk Quantification Institute
Distinguished Fellow (5 mos)
Enkrypt AI
Advisory Board (5 mos)
Grip Security
Customer Advisory Board (6 mos)
Global Council for Responsible AI
Ambassador (1 yr)
Chambers Capital Ventures, Inc.
Board Member (1 yr 6 mos)
Valusync
Member of the Board of Advisors (1 yr 6 mos)
Our Shades of Blue
Board Member (2 yrs 4 mos)
TechTarget
Security Editorial Advisory Board (3 yrs)
National Cybersecurity Center
Advisor - Secure Smart Cities (2 yrs)
Blue Lava, Inc.
Advisory Board (4 yrs 3 mos)
RockCyber, LLC
CEO & Founder (8 yrs)
Marathon Petroleum Corporation
Information Security Manager (2 yrs 8 mos)
ISSA Denver Chapter
Rocky Mountain Information Security Conference Co-Chair (ISSA) (1 yr 11 mos)
SOUNDFi
Board Member (3 yrs 10 mos)
MarkWest Energy Partners, L.P.
Head of Information Security (CISO) (4 yrs 3 mos)
Solutions By Design II, LLC
Corporate Advisory Board (4 yrs)
Agilent Technologies
Information Security Threat Manager (1 yr)
General Dynamics Information Technology
Senior Manager, Information Security (2 yrs)
eBay
Staff Network Security Engineer (6 yrs)
CSC
Principle Information Security Consultant (1 yr)
Wells Fargo
Senior Security Consultant (0 mo)
Mesa Community College
Adjunct Faculty (4 yrs)
Copperkey Technologies
IT and Information Security Manager (2 yrs)
Tririga
Oracle DBA (2 yrs)
Las Vegas Valley Water District
Programmer (2 yrs)
Purchase Pro
SQA Analyst (1 yr)
Education
Master of Science - MS at University of Denver - Ritchie School of Engineering & Computer Science
MBA at W. P. Carey School of Business – Arizona State University
Bachelors at University of Nevada-Las Vegas
at Ed W. Clark High School
at Heritage Christian