Mike Heim

Global Security Leader - Boeing Subsidiaries

Los Angeles Metropolitan Area

About

CISO | Cloud Security | Platform Security | SaaS Security | Software Security | DevOps | Security Solutions Architecture | Cybersecurity Leadership

Experience

  • Subsidiary Security Leader at Boeing
    Feb 2026 - Present · 5 mos

  • Chief Information Security Officer at Jeppesen ForeFlight
    Nov 2024 - Feb 2026 · 1 yr 4 mos

    Directed the enterprise security strategy for the successful $10.5B sale and separation of Jeppesen and ForeFlight from Boeing, leading 25 enterprise security workstreams to enable post-acquisition independence.

  • Boeing (24 yrs 11 mos)
    • Security Solutions Architecture, Senior Manager
      2022 - Nov 2024 · 2 yrs 11 mos

      Directed global SaaS security, enabling $1.5B in revenue through enhancements in cloud and platform security. Executed a Platform Thinking strategy including GitOps-managed cloud landing zones and integrated security enforcement within DevOps pipelines. Led the security innovation practice, including the capability roadmap and selection of tools and strategic suppliers. Conducted threat modeling (STRIDE), tabletop exercises, and risk assessments to identify vulnerabilities and devise mitigations.

    • AppSec & DevSecOps, Senior Manager
      2018 - 2022 · 4 yrs

      Developed the enterprise strategy for software and system security assessments, including DevSecOps security architecture and cloud workload security standards. Standardized enterprise software security practices in alignment with the NIST Secure Software Development Framework (SSDF).

    • Vulnerability Assessment Lead
      2016 - 2018 · 2 yrs

      Led the security program for three thousand applications, integrating SAST, DAST, and SCA into CI/CD pipelines to reduce risk and minimize friction. Conducted comprehensive product and supply-chain security assessments.

  • Vice President of Technology at Rapid Ascent
    1998 - 2000 · 2 yrs

    Led the digital transformation of nineteen brick-and-mortar businesses into global Internet services.