Fortune 500 CISO • Cybersecurity Pioneer • Thought Leader

Leading Cybersecurity
for 30+ Years

Catharina "DD" Budiharto is a trusted cybersecurity executive who has protected Fortune 500 companies and shaped critical infrastructure security across the energy sector. From Phillips 66 to Baker Hughes, she brings unparalleled expertise in AI security and operational technology protection.

30+ Years Experience
4 Fortune 500 CISOs
19 Years Oil & Gas
50+ Countries

Catharina "DD" Budiharto, CISSP, CISM, CISA

Catharina "DD" Budiharto is a globally recognized cybersecurity executive with over 30 years of experience protecting Fortune 500 companies and critical infrastructure. As a four-time Fortune 500 CISO—including Phillips 66, Baker Hughes, Marathon Oil, and Halliburton—she has led enterprise security programs across energy, oil and gas, and industrial sectors spanning 50+ countries. Her unique expertise in operational technology (OT) and information technology (IT) convergence security makes her a trusted advisor to large enterprises navigating the complex intersection of industrial systems, artificial intelligence, and cyber risk.

Large companies seek DD's counsel for her rare ability to translate complex OT/IT security challenges into actionable boardroom strategies. She bridges the technical depth of securing SCADA systems, industrial control systems, and AI-powered automation with the business acumen to communicate risk in terms that resonate with executives and boards of directors. As founder of CyberPoint Advisory and a sought-after speaker at RSA Conference and industry forums, DD brings Fortune 500 CISO-level expertise to organizations seeking to elevate their cybersecurity posture while making strategic decisions grounded in real-world operational experience.

Career Timeline

A Three-Decade Journey in Cybersecurity

From Big Four consulting to Fortune 500 CISO roles, DD has shaped cybersecurity strategy for some of the world's most critical infrastructure.

2022 - Present
Founder & CEO
CyberPoint Advisory LLC
Founded SBA-certified Woman-Owned Small Business providing fractional Chief AI Safety Officer (vCAISO) services. "Fortune 500 CISO expertise at SMB prices."
  • Democratizing Fortune 500-level AI security expertise for SMBs
  • Specializing in critical infrastructure AI security
  • UEI: MPPALYA27VG6 | CAGE Code: 9XT11
2021 - 2022
Chief Information Security Officer (CISO)
Phillips 66 - Fortune 50
Led enterprise cybersecurity for $140B+ global refining, midstream, chemicals, and marketing operations with 14,000+ employees.
  • Secured AI-powered refining optimization systems across 12 refineries
  • Implemented enterprise AI risk management frameworks
  • Board-level cybersecurity and AI risk reporting
  • Established AI governance committee with cross-functional stakeholders
2018 - 2021
Senior Director, Cybersecurity
Baker Hughes - Fortune 500
Secured global oilfield services operations across 50+ countries with $20B+ revenue and 57,000+ employees.
  • Secured AI-powered drilling automation and predictive maintenance systems
  • Global AI deployment security across 6 continents
  • Industrial IoT + AI convergence security for connected oilfield equipment
  • Implemented AI model security testing for drilling automation
2015 - 2018
Cybersecurity Executive
Chicago Bridge & Iron
Led cybersecurity initiatives for global engineering, procurement, and construction firm.
  • Featured in BlackBerry Blog 2018: "From Janitor to CISO"
  • Recognized as SC Magazine Influencer in Cybersecurity
2014 - 2015
First CISO
Enable Midstream Partners
Established cybersecurity program as first CISO for $3.4B revenue oil & gas midstream company.
2011 - 2014
Director of Cybersecurity
Marathon Oil Corporation - Fortune 500
Directed cybersecurity for $15B+ E&P operations with onshore/offshore exploration and production.
  • Secured early AI/ML systems for seismic data analysis and reservoir modeling
  • Production optimization AI security
  • OT cybersecurity for AI-enhanced SCADA systems
  • NERC CIP compliance for power generation assets
2009 - 2011
IT Security Subcommittee Chairman
American Petroleum Institute (API)
Led development of cybersecurity standards for oil & gas industry with 600+ API member companies.
  • Published API security guidelines adopted across oil & gas sector
  • Collaborated with White House on Executive Order 13636
  • Established as recognized authority on oil & gas cybersecurity
2003 - 2011
Information Security Leadership
Halliburton - Fortune 500
Built enterprise information security program from foundation for $15B+ oilfield services company operating in 100+ countries.
  • Established cybersecurity program for operational technology in oilfield services
  • Secured industrial control systems for well services equipment
  • Developed global incident response capabilities
2001 - 2003
IT Security Consultant
KPMG LLP
Provided IT Advisory services specializing in enterprise risk management and cybersecurity consulting.
1999 - 2001
Risk Advisory Consultant
Ernst & Young
Conducted information security assessments and compliance audits. Transitioned from accounting to IT security.
1997 - 1999
IT Security Analyst
Texaco
Early career energy sector operational technology (OT) security experience. Foundation for oil & gas sector expertise.
1992 - 1994
Master of Accountancy (MAccy)
George Washington University School of Business
Focus on financial auditing, enterprise risk management, and compliance—foundation for cybersecurity risk quantification and board reporting.
1988 - 1992
Bachelor of Business Administration (BBA)
University of Houston
Major in Accounting. Worked as a janitor while earning degree through scholarships as an immigrant from Indonesia.
Recognition

Awards & Honors

Recognized as one of the most influential leaders in cybersecurity

ORBIE Award
2024
HoustonCISO ORBIE Leadership Award
Outstanding Recognition of Business Innovation and Excellence. Only woman CISO honored at 2024 awards. Peer-nominated recognition and keynote speaker.
DIVAS Award
2022
Cybersecurity DIVAS Award
Recognized as Driven, Inspirational, Visionary, and Action-oriented leader in Security.
SC Magazine Award
2018
SC Magazine Influencer in Cybersecurity
Designated as one of the most influential women in cybersecurity by SC Magazine.
Specializations

Areas of Expertise

Deep technical expertise across critical infrastructure and emerging technologies

🤖
AI Security
  • OWASP Top 10 for LLM Applications
  • NIST AI Risk Management Framework
  • Generative AI governance (ChatGPT, Copilot)
  • AI/OT convergence security
  • Model poisoning & prompt injection defense
🏭
Critical Infrastructure
  • Oil & Gas OT/ICS security (19 years)
  • SCADA systems security
  • IEC 62443 standards
  • Industrial IoT security
  • Energy sector threat intelligence
🛡️
Enterprise Security
  • Zero Trust Architecture
  • Cloud security (Microsoft Azure)
  • Identity & Access Management
  • Data Loss Prevention (DLP)
  • Incident response & crisis management
📋
Governance & Compliance
  • NIST Cybersecurity Framework
  • NERC CIP compliance
  • ISO 27001/27002
  • Board-level risk reporting
  • Third-party risk management
Thought Leadership

Speaking Engagements

Sharing insights at industry-leading conferences worldwide

🎤
RSA Conference 2025
  • April 28, 2025 • San Francisco
  • Panel: "How to Survive as a CISO"
  • 40,000+ global cybersecurity professionals
🌍
Stormwater Conference 2025
  • October 28, 2025 • Netherlands
  • Cybersecurity for Smart Water Infrastructure
  • International water infrastructure leaders
🏛️
API Cybersecurity Conference
  • Annual speaker since 2009
  • Third-party & supply chain risk
  • 600+ oil & gas companies
🎓
Universities & Mentorship
  • University of Houston MIS Advisory Board
  • Texas Southern University Cybersecurity
  • Rice University Baker Institute
  • 5-10 mentees annually
Community Impact

"Lifting as I Climb"

Advancing diversity and inclusion in cybersecurity through mentorship and community leadership

👥
The Cybersecurity Circle
  • Founder & Leader
  • Uniting cyber enthusiasts and practitioners
  • Monthly community events at Ion Houston
♀️
Women in CyberSecurity (WiCyS)
  • Houston Chapter Leader
  • Mentoring women entering cybersecurity
  • Executive Women's Forum member
🌐
Minorities in Cybersecurity (MiC)
  • Community builder
  • Advancing diversity and inclusion
  • Cyversity diversity advocate
🏛️
Board Leadership
  • LINK Houston Board of Directors
  • Evanta CISO Governing Member
  • SecureWorld CISO Advisory Board
  • Junior Achievement volunteer
Recent Insights

LinkedIn Thought Leadership

Follow DD's latest perspectives on cybersecurity, AI security, and CISO leadership

in
AI security isn't just about protecting models—it's about understanding how AI decisions impact business risk. Fortune 500 boards need CISOs who can translate technical AI vulnerabilities into strategic business language.
👍 256
💬 42
🔄 18
in
The intersection of OT and IT security is where critical infrastructure protection happens. 19 years in oil & gas taught me that securing SCADA systems requires a fundamentally different approach than traditional IT security.
👍 312
💬 58
🔄 24
in
Excited to speak at RSA Conference 2025 on "How to Survive as a CISO." After 4 Fortune 500 CISO roles, I've learned that success isn't just about technology—it's about resilience, communication, and building the right team.
👍 428
💬 67
🔄 35
in
Mentorship matters. Every month I mentor 5-10 professionals entering cybersecurity. Lifting as I climb isn't just a phrase—it's how we build a more diverse and capable security workforce for tomorrow's challenges.
👍 521
💬 89
🔄 41
in
The OWASP Top 10 for LLM Applications is essential reading for every CISO. Prompt injection, model poisoning, and supply chain vulnerabilities are the new attack vectors we must master in the AI era.
👍 387
💬 72
🔄 29
in
From janitor to Fortune 50 CISO—grateful for every step of this journey. To anyone doubting their path: hard work, continuous learning, and staying authentic to who you are will open doors you never imagined.
👍 1,243
💬 156
🔄 94
in Follow DD on LinkedIn

Work with a Proven Leader

Get Fortune 500 CISO expertise for your organization. DD personally leads every engagement, bringing 30+ years of experience protecting critical infrastructure.