The author

J Damien Scott, Trusted Advisor

SRMP GRCP · Marine Corps and law enforcement veteran · Fourteen countries

Converged security executive and U.S. Marine Corps veteran with 21 years directing enterprise physical security, executive protection, investigations, intelligence, and crisis response across 14 countries, including eight years embedded inside Ericsson Telecommunications and the Inter-American Development Bank as their accountable in-country security leader, layered with a second documented competency in cybersecurity governance, risk, and compliance. I lead from the operating side of the business: full-charge P&L ownership of a $24 million portfolio across 127 accounts, 24/7 guard force and GSOC operations across 238 sites in 28 states, and nationwide executive protection programs serving 22 C-suite principals. Across 21 years of accountability for people, sites, and operations, no client, principal, or site under my accountability has suffered a critical injury, a fatality, or a significant loss. The same governance discipline extends to the information domain, where I authored enterprise cybersecurity policy from inception and maintained ISO 27001, HIPAA, and NIST 800-series compliance for a federal, healthcare, and critical-infrastructure client base. I hold an accredited ISO/IEC 27001 Lead Auditor certification, five OCEG governance credentials, and senior physical security and counterterrorism certifications. I am built for organizations converging physical and information security under one accountable risk function.

LEARNALIGNPERFORMREVIEWPrincipledPerformancePRAESTANTIA PRINCIPIATA

21 years

Continuous corporate security leadership, January 2005 to February 2026, after military police and civilian law enforcement service.

Zero

Critical injuries, fatalities, or significant consequential losses across every organization, principal, and site under his accountability.

14 countries

Protective, investigative, and advisory operations across the United States, EMEA, Haiti, and Latin America.

8 years embedded

Inside Ericsson Telecommunications and the Inter-American Development Bank, reporting to their senior leadership, not delivering from outside as a vendor.

Principled Performance as a practice

The four phases are not a framework adopted for the website. They are how the work was done.

Reliable achievement of protective objectives, honest assessment of residual risk, and integrity in how you execute protection. Each phase serves that purpose. Learn and Align ensure you know what you are protecting and why. Perform and Review ensure you stay effective under adversarial pressure.

Learn

Knowing what is being protected, from whom, and under what obligations, before a single post order is written.

  • Led a threat and vulnerability assessment program covering 22 C-suite principals, combining OSINT, behavioral threat analysis, and geopolitical risk data into individualized protection architectures.
  • Engineered a protective intelligence platform integrating real-time open-source monitoring, dark web surveillance, and social media threat detection for 18 executive principals, cutting mean time to threat identification from 72 hours to under 4.
  • Directed advance security assessments for 200+ high-risk executive movements a year across 12 countries: route analysis, venue hardening, counter-surveillance, and TSCM sweeps.
  • Maintained 98%+ currency across country security plans, site assessments, and route risk assessments in four Level 4 and conflict-affected environments.
Align

Governance that connects protective decisions to the organization's objectives and its regulatory obligations.

  • Led a cross-functional team of 16 security, intelligence, and legal professionals to author and publish an enterprise executive protection governance policy aligned to ISO 31030 and ANSI/BEP EPS 2026, reaching full compliance within 90 days of deployment.
  • Built an ISO/IEC 27001 information security management system from inception, carried it to a held certificate in 2020, and sustained it through the standard's revision to 2024. Certified scope: federal and government contracts and company headquarters.
  • Architected a nationwide executive protection program from inception on a risk-tiered framework across 12 states, reducing unmitigated threat exposure by 60% in the first year.
  • Led CMMC compliance: scoped the CUI environment, implemented the 110-control NIST SP 800-171 baseline, and carried the program to assessment readiness for federal contract eligibility.
Perform

Protection executed with discipline, in environments where the threat was never distant.

  • Directed a 56-agent executive protection team providing 24/7 coverage for 8 senior principals nationwide on a $4.2 million annual budget, without a principal safety incident and at 99% budgetary compliance.
  • Executed two full-scale country evacuations, Haiti and Kurdistan, during acute civil unrest, with full accountability and the safety of every expatriate.
  • Orchestrated post-earthquake disaster recovery in Haiti, holding Ericsson's business continuity intact while coordinating life support and logistics for 60+ expatriate personnel.
  • Directed a formal investigations program spanning 900+ cases: threats, workplace violence, misconduct, fraud, insider risk, and critical incidents, held to evidentiary discipline and legal defensibility.
  • Cut average incident response time by 75% through redesigned dispatch protocols, defined escalation pathways, and disciplined post-incident review.
Review

Measuring what protection achieved, auditing it against the standard, and feeding the findings back.

  • Delivered six ISO/IEC 27001 Clause 9.2 internal audits for external client organizations: full-scope audits against the standard and the client's documented information, findings classified by severity, results presented to client leadership.
  • Reduced revenue leakage by 95% through redesigned timekeeping controls, billing reconciliation, contract compliance, post coverage validation, and formal exception review.
  • Rebuilt an underperforming client executive protection program within 35 days of award with a KPI-driven quality management system that closed every identified gap and improved agent retention by 50%.
  • Translated operational and security risk into Board-level reporting, with customer health dashboards and corrective-action tracking through closure.

Career at a glance

Twenty-one years, from the operating side.

DatesTitleOrganizationTheater
Jun 2024 to Feb 2026Chief Operations OfficerSorsen Inc.Salt Lake City, UT · six-state footprint
Apr 2014 to May 2024Chief Security OfficerBedrock Protection Agency LLCSalt Lake City, UT · 238 sites, 28 states
Dec 2007 to Jan 2013Country Security ManagerTacforce International, embedded with Ericsson TelecommunicationsHaiti · Afghanistan · Kurdistan/Iraq · South Sudan
Jan 2005 to Dec 2007Country Security ManagerVDI, Inc., embedded with the Inter-American Development BankHaiti
EarlierClose protection and force protection, government contractsPersonal security detail leader, Coalition Provisional Authority, Iraq, 2003Bosnia-Herzegovina · Iraq
EarlierPeace OfficerTexas law enforcementTexas
EarlierMilitary Policeman · Military Working Dog Handler · SWATUnited States Marine CorpsUnited States and overseas

Additional protective, investigative, and advisory engagements from the early career are held privately. Serves on the Technical Committee of the Board of Executive Protection Professionals, the body that authored ANSI/BEP EPS 2026, the ANSI-accredited executive protection standard. Member, International Supply Chain Protection Organization.

Credentials

Fourteen held credentials.

SRMP · INSSA
Security Risk Management Professional
CPSC · CCTB
Certified Physical Security Consultant
CCTP · CCTB
Certified Counter Terrorism Practitioner
CITA · CCTB
Certified Intelligence Analyst
CMEPS · ATAB
Certified Master Executive Protection Specialist
CMAS · ATAB
Certified Master Antiterrorism Specialist
CCAP · University of South Florida
Certified CARVER Assessment Professional
ISO 27001 LA · GRC Mastery
ISO/IEC 27001 Lead Auditor, Exemplar Global accredited
GRCP · OCEG
Certified GRC Professional
GRCA · OCEG
Certified GRC Auditor
IRMP · OCEG
Integrated Risk Management Professional
ITGRCP · OCEG
Certified IT GRC Professional
IAIP · OCEG
Certified Integrated AI Professional
ISO 22301 · Alison, CPD certified
Business Continuity Management Systems Essentials

Education

  • Postgraduate Certificate, Business Administration
    University of Wales Trinity Saint David, 2022
  • Associate of Arts, General Studies
    Western Nevada College
  • Diplomas
    Cyber Security Operations; Project Management. Alison, CPD certified, 2026

Languages

English, native. Spanish, conversational, with intermediate reading and writing.

Contact

Let’s discuss the security problem you are trying to solve.