Fractional CISO · Fractional CTO · Security Advisory
Enterprise oversight for the systems that guard everything else.
Faithful Oversight provides fractional CISO, fractional CTO, and enterprise identity security consulting — senior-level leadership for organizations that need it without the overhead of a full-time hire.
Senior security & technology leadership, engaged on your terms.
Every engagement draws on 28+ years of hands-on enterprise experience — not theory. From storage and virtualization to identity architecture to executive advisory, the work is grounded in systems actually built, hardened, and run at scale.
Fractional CISO
Ongoing security leadership for organizations that need executive-level ownership of their security posture — risk management, compliance strategy, incident readiness, and board-level reporting — without a full-time executive hire.
Fractional CTO
Technical leadership for infrastructure strategy, architecture decisions, and engineering direction. Suited to organizations navigating modernization, scaling challenges, or a technical leadership gap.
Identity, Access & MFA
Architecture and hardening for Active Directory, Okta, Kerberos, RBAC/ACL design, and privileged access management. Design and rollout of modern authentication — hardware security keys (YubiKey), passkeys, and enterprise MFA programs — plus strategic guidance on zero-trust identity models.
Security Compliance
Practical guidance toward PCI DSS and CIS Benchmark compliance for commercial environments, plus 21+ years of hands-on DISA STIG hardening and continuous oversight experience — including authoring USAF-wide security policy, as Global Functional Lead for Storage & Virtualization, that was used to inform updates and modernization to the relevant DISA STIGs — grounded in what audits actually check, not just what documentation says.
Infrastructure, Storage & Virtualization
Enterprise architecture and modernization across storage, virtualization (VMware), and core infrastructure — moving legacy systems toward automated, version-controlled, resilient platforms built to survive a team change, not just a demo.
AI-Enabled Engineering
Helping technical teams put AI to work in ways that actually move the needle — faster, more precise engineering, tighter software development cycles, and streamlined day-to-day operations. Practical adoption strategy, hands-on team training, and custom tooling, not hype.
IT Cost Optimization
Reducing software and licensing spend by identifying where open-source alternatives and internally-developed tooling can replace paid platforms without sacrificing capability — a discipline applied consistently across every role held, commercial and federal alike.
Faithful Oversight is built on one conviction: the organizations trusted with the most sensitive systems deserve leadership that has actually run them.
Founder Filip Pantovich brings 28+ years of enterprise infrastructure and security engineering to every engagement — a career that started in 1998 as a GS civilian IT hire while still in high school and college, continued through nearly 21 years of U.S. Air Force service across joint assignments and USAF-level lead functional representative roles, including global functional leadership of Storage & Virtualization for the entire U.S. Air Force and architecture for a $300M classified infrastructure enclave supporting the DoD Joint Staff, and carries forward today through four-plus years architecting enterprise Identity & Access Management managing 40,000+ identities across 6 AD domains for a global entertainment organization.
That combination — 900,000-user network enclaves directed at peak USAF scale, 300+ personnel led globally, 21+ years of hands-on DISA STIG hardening and continuous oversight experience (including authoring USAF-wide security policy that informed STIG updates), and current, hands-on technical depth across infrastructure, security, and identity — is what Faithful Oversight brings to every fractional engagement. A consistent thread throughout: driving process automation and streamlining, and reducing operational cost by favoring open-source and internally-developed tooling over paid licensing wherever it's the right fit. Not a consultant reciting frameworks, but someone who has built, hardened, and operated the systems being discussed.
- EDUCATIONM.S., Information Systems — Technology Management, Liberty University
- MILITARY SERVICEU.S. Air Force, Retired — nearly 21 years, joint assignments
- SCALE900,000-user network enclave at peak (USAF); 40,000+ managed identities in current role
- SPECIALIZATIONEnterprise Infrastructure & Storage, Virtualization (VMware), Identity & Access Management, MFA/Passkey/Hardware Authentication, Zero-Trust Architecture, PCI DSS & DISA STIG Compliance, IT Cost Optimization, Infrastructure Modernization
- AVAILABILITYPart-time & project-based engagements
Identity Platforms
Active Directory, Okta, Kerberos, LDAP, RBAC/ACL design, privileged access management
MFA & Authentication
Hardware security keys (YubiKey), passkeys, enterprise MFA rollout, zero-trust access policy
Infrastructure, Storage & Virtualization
Enterprise storage architecture, VMware virtualization, AWS, Kubernetes, Terraform, HashiCorp Vault
Compliance
PCI DSS, CIS Benchmarks, DISA STIG, identity threat detection
AI-Enabled Engineering
Practical AI adoption for faster, more precise engineering and day-to-day operations
IT Cost Optimization
Open-source and internally-developed alternatives to reduce licensing spend
Let's talk about what oversight should look like for your organization.
Available for fractional CISO, fractional CTO, and project-based security consulting engagements.
Trenton, IL · Remote-native · USAF Disabled Veteran