David London is a Managing Director at The Chertoff Group, where he helps companies address their most pressing cybersecurity risks.
David works with clients to strengthen cyber governance, drive control transparency and prioritize security investments. He assists operational personnel and senior decision-makers to effectively mitigate and communicate cyber risk. He has led high-profile cybersecurity engagements in energy, financial services, retail, health care, and technology sectors.
Prior to joining The Chertoff Group, David spent nine years at Booz Allen Hamilton where he led the design and development of some of the highest-profile cyber exercises in the world including NERC’s Grid Security Exercise Series. He also directed company-specific incident management engagements to exercise operational, tactical, and executive-level cyber readiness. In November 2022 David was appointed as a cybersecurity expert to the Advisory Board of NowNow, a digital baking system founded in Nigeria.
Recent Engagements:
- Conducted application security lifecycle review for a major software provider, piloting NIST’s Secure Software Development Framework (SSDF) to assess coding practices and national security risks
- Directed cybersecurity program resourcing and benchmarking assessment of one of the world’s largest online travel companies to baseline existing spend and optimize future security investments across portfolio companies
- Led C-suite and board-level cyber exercises that stress-test enterprise response to a disruptive cyber event for major financial institutions, manufacturers, and other critical infrastructure
Certifications:
- Certified Information Systems Security Professional (CISSP)
- Project Management Professional (PMP)
Education:
- M.B.A., George Washington University
- B.A., Emory University
Area of Expertise:
- Cybersecurity Maturity, Control Effectiveness, and Incident Management
- Cyber Governance, Resource Prioritization, and Security Metrics
- Software Development Lifecycle Security
Recent Publications
- “New Government Directives and Persistent Threats Reinforce Urgency of Securing Software”, October 25, 2022
- The Cyberwire Podcast, June 17, 2022
- “Software Lifecycle Security: Increased Scrutiny Offers Opportunity for Differentiation”, Chertoff Group Security Bulletin, July 2020
- “How Cyber Criminals Use Coronavirus Scams to Target Victims,” Security Management Magazine, June 1, 2020
- Boston University Law School Guest Lecturer, “Securing the Financial Sector Against Cyber Attacks” March 19, 2020
- More listed below
More Publications, Interviews and Panels
- “Closing the Security Gap in OT/IT convergence,” CSO Magazine, January 27, 2020
- “Cybersecurity Illusion—Enterprise Security Remains Reactive” Webinar Speaker, October 2019
- “Electric Grid Security Unites Public and Private Sectors,” GovTech, June 11, 2019
- “Four Ways to Protect your Device from Botnets,” The Parallax, October 26, 2018
- David has also been frequently interviewed and appeared on Chertoff Group podcasts