Cybersecurity leader.
Regulatory strategist.

I lead cyber and operational risk programs at the Federal Housing Finance Agency, overseeing governance, technology risk, and regulatory compliance for the nation's housing finance system. Two decades deep in cybersecurity, from penetration testing to policy.

CISSP CCSP CISM GSEC CEH eJPT
Brian Schwartz - Cyber Risk Analyst & Branch Chief

Where cybersecurity meets public service

I'm a Cyber Risk Analyst and Branch Chief at the Federal Housing Finance Agency (FHFA), where I lead a team specializing in governance, technology, and operational risk management. My work spans cybersecurity, fraud, third- and fourth-party risk, payment systems, and process risk across the regulated enterprises.

Before FHFA, I served as a National Information Systems Examiner at the Consumer Financial Protection Bureau, conducting security assessments of collocated data centers, and as a Computer Security Incident Response Center Manager at the Office of the Comptroller of the Currency, where I led incident management and improved FISMA compliance.

My career started in the private sector. I founded iMova Web Studio in Cleveland, Ohio, building and scaling web infrastructure for companies with 2,000+ employees. That hands-on foundation in technology, combined with a master's in Information Assurance from Iowa State University, gives me a unique perspective that bridges technical depth with regulatory strategy.

Beyond my professional work, I'm an active member of St. Mary Orthodox Church, participating in Men's Fellowship and community outreach. I'm also a husband and father of two, based in the Washington, D.C. metro area.

20+
Years in cybersecurity and IT risk
9
Professional certifications
MS
Information Assurance, Iowa State

Two decades across federal regulation and private enterprise

A progression from building web infrastructure to leading national-level cyber risk programs.

Cyber Risk Analyst & Branch Chief
Federal Housing Finance Agency (FHFA)
Oct 2025 - Present

Lead a team specializing in governance, technology, and operational risk management. Cover key risk areas including cybersecurity, fraud, third- and fourth-party risk, payment systems, and process risk. Provide subject matter expertise on IT and cyber risk to support examination activities across the Division of Enterprise Regulation.

Supervisory Operational Risk Analyst
Federal Housing Finance Agency (FHFA)
Jun 2023 - Nov 2025

Supervised operational risk analysis, developing supervisory policy and guidance. Managed IT/Ops risk briefings and led examination support for enterprise risk assessments.

Senior Operational Risk Analyst - Cybersecurity
Federal Housing Finance Agency (FHFA)
Nov 2016 - Jun 2023

Served as cybersecurity subject matter expert for enterprise regulation. Conducted risk assessments, developed examination procedures, and evaluated cyber posture of regulated entities.

National Information Systems Examiner
Consumer Financial Protection Bureau (CFPB)
2011 - 2016

Conducted security assessments of collocated data centers and information systems. Evaluated compliance with federal security standards and identified risk across financial institutions.

Computer Security Incident Response Center Manager
Office of the Comptroller of the Currency (OCC)
Jul 2009 - May 2011

Led management of computer security incidents and improved FISMA compliance. Coordinated response activities and developed incident reporting protocols.

Founder & Developer
iMova Web Studio, LLC
Aug 1996 - Jul 2009

Founded and led a web development studio in Cleveland, Ohio. Enhanced web structures for large companies (2,000+ employees), screened talent, trained a highly skilled team, and maintained reliable hosting infrastructure.

Industry-recognized credentials

A comprehensive portfolio spanning security management, cloud security, offensive operations, and mortgage regulation.

CISSP
Certified Information Systems Security Professional
ISC2
CCSP
Certified Cloud Security Professional
ISC2 - Dec 2017
CISM
Certified Information Security Manager
ISACA
GSEC
GIAC Security Essentials Certification
SANS / GIAC
CEH
Certified Ethical Hacker
EC-Council
eJPT
Junior Penetration Tester
INE Security - Apr 2021
AMP
Accredited Mortgage Professional
Mortgage Bankers Association - Aug 2025
CNSSI 4013
National IA Training Standard for System Administrators
NSA - May 2007

Core competencies and technical depth

Risk & Governance
Operational Risk ManagementCybersecurity GovernanceRegulatory ComplianceFISMASupervisory PolicyEnterprise Risk Assessment
🔒 Security Operations
Incident ResponsePenetration TestingVulnerability AssessmentDisaster RecoveryCloud SecurityOffensive AI Techniques
🏢 Enterprise & Third-Party
Third-Party RiskFourth-Party RiskPayment SystemsData Center SecurityFraud RiskProcess Risk
💻 Technology & Infrastructure
Information AssuranceWeb InfrastructureVirtualizationNetwork SecurityNAS / Server ManagementCloud Infrastructure
📈 Leadership & Strategy
Team LeadershipTalent DevelopmentStakeholder BriefingsExamination SupportPolicy Development
🏠 Domain Expertise
Housing Finance RegulationMortgage IndustryFinancial ServicesFederal Government

Academic foundation

MS, Information Assurance
Iowa State University
Sep 2007 - May 2009
  • CyberCorps Scholarship for Service (SFS)
  • Information Assurance Student Group
  • ISEAGE Lab Participant
  • Radio DJ, 88.5 KURE
  • Iowa State Crew Team
BS, Computer Information Systems (Business)
Kent State University
Sep 2000 - May 2004
  • Graduated Cum Laude
  • Departmental Honors
  • Delta Sigma Pi Professional Fraternity
  • Management Information Systems Association
  • Business President's Roundtable

Let's connect

Whether it's cybersecurity strategy, regulatory compliance, speaking engagements, or advisory work, I'm always open to meaningful conversations.