FractionalCXO
Wells Larsen

Wells Larsen

Fractional CISO

Enterprise Technology Executive | CIO · CTO · CISO | Cloud, Platform & Security Leader | DC100 Top 100 Deputy CISO (2025)

Minneapolis, United States

About

** In Transition - Open to my next executive role **

TRUST | SERVICE | PROTECTION

My WHY: To earn and honor trust with integrity and authenticity, serving generously and protecting people — by bringing clarity and shaping conversations so innovation moves quickly and safely.

I am an enterprise technology executive with dual fluency in platform engineering and security — a combination most organizations have to hire two people to cover.

Over 20+ years, I have built cloud platforms, served as a founding leader of Optum Connect — a managed services business I helped establish from a five-person team into the foundation of a multi-billion dollar line of business that expanded well beyond technology as other functions recognized the model and scaled it horizontally. I was an early architect of Epic-on-Azure, serving as the cross-vendor bridge between Epic and Microsoft when enterprise healthcare cloud architecture was still being defined — work that later influenced Microsoft's formalized guidance for the space. I have led post-breach security transformations — most recently at INTEGRIS Health, Oklahoma's largest healthcare system — and served as virtual CIO and CISO across six healthcare systems simultaneously through Optum Connect. I operate at the intersection of strategy, architecture, and culture — translating complexity into clear decisions and building self-sustaining teams that hold their standard through change.

My technical foundation spans cloud platform engineering (Azure, AWS), enterprise architecture, identity and access management, Zero Trust design, and policy-as-code delivery. My security depth covers GRC, TVM, SOC/Cyber Fusion, IAM, and enterprise risk. Most executives bring one or the other. I bring both — and I know where they connect.

I build capability by teaching, not directing — enabling leaders to carry the mission forward long after I have stepped away. I believe a culture of trust is the ultimate control, and communication is the bridge that makes it work.

What I am looking for: A senior technology or security leadership role (CIO, CTO, CISO, VP) in healthcare or a regulated environment where the mandate is to protect people and enable progress — and where leadership is measured by resilience and outcomes, not activity and optics.

By temperament, I'm an INFJ and Enneagram 9-5-1 with a situational Type 8 "protector" streak — a quiet, principled systems-builder with executive presence, leading with empathy, long-range thinking, and a bias toward protecting people while driving meaningful improvement.

Experience

Mufasa Security

Founder & Fractional CIO | CTO | CISO

Mufasa Security · Greater Minneapolis-St. Paul Area

Mar 2024 – Present(2 yrs 2 mos)

Independent advisory and fractional executive practice. I engage as virtual CISO, CTO, or CIO — embedding at the executive level to help organizations align technology, security, and governance to business outcomes. I see security the way an architect sees a system: inputs, dependencies, failure modes, and the second- and third-order ripple effects that most people don't see until it's too late. That's what lets me move between a boardroom and a design session without losing fidelity to either side. ----------------------------------------------- Selected Client Engagements: ◆ Leading an organization through end-to-end CMMC audit readiness, including gap analysis, policy alignment, and control implementation. ◆ Designed and deployed AI Agents modeled on human behavioral patterns to stress-test decision-making in high-stakes operational scenarios. ◆ Contained a live deepfake-enabled impersonation incident — validating identity and coordinating a rapid, policy-based takedown with platform stakeholders.

Chief Architect Network

Member

Chief Architect Network

Mar 2026 – Present(2 mos)

A global community of chief architect executive thought leaders, with 500+ members from Fortune 500-scale companies, advancing the discipline and practice through egoless collaboration and shared learning. A 501(c)(3) nonprofit organization with no-cost, vendor-neutral membership. Mission: Maximizing the value of Architecture practices through our network that widens our perspectives, shares best practices, grows us as leaders and develops our talent to drive outcomes. Services include: • In-person and virtual events. • Peer-led calls on our practice’s top priorities. • 13 local communities in the US and Europe. • Matching, Mentoring and Coaching leadership development. • LIVE broadcast events.

CyberRisk Collaborative

Leaderhip Board Member - Minneapolis Chapter

CyberRisk Collaborative · Greater Minneapolis-St. Paul Area

Mar 2025 – Present(1 yr 2 mos)

The Twin Cities Leadership Board is a group of local leaders committed to the idea that national security and critical infrastructure resiliency is strengthened through peer-to-peer knowledge sharing, diversity, and leadership development. Serve on the Twin Cities Leadership Board, supporting peer-to-peer knowledge sharing and leadership development focused on critical infrastructure resilience and cybersecurity readiness. ◆ Delivered a speaker engagement on building “Strong Ground” trust with the Executive Leadership Team (ELT) and the board, and on translating security metrics into business metrics that drive clear decisions. ◆ Facilitated and contributed to peer discussions, sharing practical patterns for governance, risk ◆ Facilitated and contributed to multiple peer discussions, sharing field experience to help members compare approaches, lessons learned, and emerging risks. ◆ Provided board-level input on chapter priorities, programming topics, and community engagement to strengthen value for members. ◆ Supported planning for future events and speaker programming to broaden participation and increase relevance.

INTEGRIS Health

Cybersecurity Executive | Chief Architect | Deputy CISO scope

INTEGRIS Health · Oklahoma City, Oklahoma, United States

Apr 2024 – Mar 2026(2 yrs)

Recruited by the CISO — with CTO endorsement — to rebuild and modernize security for Oklahoma's largest healthcare system ($3.3B revenue, 15K caregivers, 20 hospitals, 184 clinics) following a significant breach. Brought a proven program-building playbook refined across multiple healthcare systems and applied it to a 24-month enterprise-wide transformation spanning governance, engineering, SOC, IAM, TVM, awareness, and resilience. Redesigned the operating model into dedicated security functions, insourced 38 roles, and hired senior engineering and operations leaders — increasing project delivery 132% and reducing MTTR 67%. Partnered with ELT and board committees to translate risk into financial clarity, formalized shared accountability, and unified HIPAA, NIST, and ISO 27001 under a single governance framework. Built automated Power BI dashboards providing board-level clarity across risk, performance, and investment. Cleared a backlog of 100K+ CVEs in seven months, rescued a failed SailPoint deployment reducing onboarding incidents 78%, and evolved the SOC into an integrated Cyber Fusion Center combining threat hunting, intelligence, and response. Established an enterprise AI governance framework — defining policy, risk controls, and oversight structure to enable responsible AI adoption aligned with regulatory and ethical standards. Developed a three-year Zero Trust roadmap sequencing identity, least privilege, network segmentation, and cloud adoption into a durable modernization path. Recognized as DC100 Top 100 Deputy CISO (2025). The INTEGRIS security program was named to Becker's Hospital Review "53 CISOs & CPOs to Know" (2025) — one year after a significant breach.

Optum

Director & Chief Architect, IT, Cloud & Security (vCIO / vCISO)

Optum · Greater Minneapolis-St. Paul Area

Oct 2017 – Apr 2024(6 yrs 7 mos)

Founding leader of Optum Connect, Optum's managed services line of business — scaling from a five-person team into the foundation of a multi-billion dollar enterprise that expanded well beyond technology into revenue cycle management, business operations, and clinical services as other functions recognized the model and scaled it horizontally. Carried dual responsibility for enterprise transformation across six health systems and product delivery of Optum Connect's managed services platform. Served as virtual CIO and CISO across six healthcare systems simultaneously — partnering directly with CIOs, CISOs, and executive leadership to design enterprise roadmaps, embed compliance by default, and deliver shared platforms that reduced IT spend, improved service quality, and accelerated modernization without disrupting local operating models or culture. Health systems served: Triple-S of Puerto Rico, John Muir Health, Bassett Health, Northern Light Health, Owensboro Health, and Allina Health. Led Product Delivery for Optum Connect, owning two flagship offerings that formed the technical backbone of the business: ◆ Fully Managed Cloud-as-a-Service — conceived and built a policy-as-code cloud guardrail system on Azure and AWS, reducing provisioning and compliance cycles from months to days with security enforced by default through CI/CD automation and integrated SAST/DAST testing. Served as the cross-vendor bridge between Epic and Microsoft Azure when enterprise healthcare cloud architecture was still being defined — work that later influenced Microsoft's formalized guidance for the space. ◆ SOC-as-a-Service — designed and delivered a shared detection and response capability extending security operations into customer environments through a scalable, standardized operating model. Built high-performing teams through psychological safety, clear decision rights, and a coaching culture — developing leaders who carried standards and ownership forward through change.

Optum

Principal Enterprise IT Security Architect, Director

Optum · Eden Prairie, MN

Jan 2015 – Oct 2017(2 yrs 10 mos)

Brought to Optum with a proven track record in Privileged Access Management, having led enterprise PAM architecture at Target. Designed and deployed the largest CyberArk implementation in the world at the time — establishing the privileged access foundation for Optum's enterprise and commercial client environments. Conceived and designed the centralized shared services model for delivering IT and security capabilities to Optum's commercial healthcare clients — the architectural idea that became the foundation for Optum Connect, generating billions of dollars in revenue through decade-long contracts.

Target

Lead Security Engineer - Security Technology Operations

Target · Minneapolis, MN

Sep 2012 – Jan 2015(2 yrs 5 mos)

Led engineering and operations for 22 enterprise security platforms supporting retail and corporate environments for one of the world's largest retailers — in a post-breach environment demanding the highest standard of platform stability and resilience. Scaled the team from 8 to 25 engineers in under a year. ◆ Identified recurring SSL certificate outages caused by manual renewal processes — proposed and was denied budget for an enterprise solution, then built a homegrown certificate lifecycle management system from scratch with automated tracking, alerting, and renewal workflows. Prevented millions in potential lost revenue on Target.com and eliminated the need for future third-party tooling. ◆ Led the overhaul of Target's Root Cause Analysis and problem management program, delivering $500K+ in documented savings. ◆ Developed and deployed automation services streamlining platform operations, achieving $200K in additional savings. ◆ Led the enterprise PAM architecture — a CyberArk deployment that later became the foundation for the largest CyberArk implementation in the world at Optum.

Boston Scientific

Software, Infrastructure, & Security Engineer

Boston Scientific · Arden Hills, MN

May 2007 – Aug 2012(5 yrs 4 mos)

Production and platform engineer for LATITUDE, a medical device-classified global patient monitoring system operating across the United States and Ireland — built and maintained under HIPAA and FDA governance where platform failures carried direct patient safety implications. ◆ Architected the first-generation LATITUDE NXT platform, defining the secure and resilient global architecture and engineering durable software mitigations to sustain compliant patient-care operations through FDA validation cycles. ◆ Owned Business Continuity and Disaster Recovery for LATITUDE — leading annual tabletop exercises and coordinating cross-functional recovery planning across two continents. ◆ Designed automation and diagnostic tooling (Linux, Bash) to improve repeatability of log analysis and reduce time to resolution — an early expression of a career-long instinct to automate what humans forget or mishandle. ◆ Expanded into network security engineering and infrastructure hardening (firewalls, load balancing, segmentation), improving availability, fault tolerance, and scalability.

Evolve Systems

Software Engineer

Evolve Systems

2005 – 2007(2 yrs)

Developed custom web and e-commerce applications for small business clients, designing secure, database-driven systems to support online transactions and customer-facing workflows. ◆ Built bespoke shopping cart and e-commerce platforms on the Linux, Apache, MySQL, and PHP (LAMP) stack. ◆ Designed back-end services and database integrations to improve performance, reliability, and transaction integrity. ◆ Integrated credit card payment gateways and implemented secure development practices for authentication, input validation, and protection of sensitive transaction data.

M

Operations Manager & Software / Infrastructure Engineer

Murphy McGinnis Internet / Superior Broadband

2001 – 2005(4 yrs)

Began career providing technical support for dial-up, Digital Subscriber Line (DSL), and point-to-point wireless broadband services. Advanced into service operations leadership and later expanded into software development and Linux infrastructure engineering, contributing to custom applications and systems supporting rural broadband delivery across northern Minnesota. ◆ Led service operations and customer experience improvements. ◆ Designed and built custom web applications on the Linux, Apache, MySQL, and PHP (LAMP) stack. ◆ Developed reservation and scheduling systems for regional hospitality clients. ◆ Built and maintained Linux server infrastructure supporting wireless broadband reliability.

Education

Technological Leadership Institute, University of Minnesota

Technological Leadership Institute, University of Minnesota

Masters of Science, Security Technologies

University of Wisconsin-Superior

University of Wisconsin-Superior

BS, Computer Science / Mathematics

W

Watermark Learning

Expertise

Specialties

Executive LeadershipTransformational Leadership Servant Leadership Strategic PlanningOperating Model Design / Organizational DesignExecutive Communication Cross-functional Team Leadership Talent Development / Team BuildingStakeholder ManagementDigital TransformationEnterprise ArchitectureCloud ComputingIT StrategyMicrosoft AzureAmazon Web Services (AWS)Zero Trust Architecture AutomationSoftware EngineeringApplication SecurityLinuxBusiness Continuity Management (BCM)Managed ServicesProduct ManagementSecurity Architecture DesignRegulatory ComplianceSecurity StrategyOrganizational Change ManagementBudget ManagementPublic SpeakingInterpersonal RelationshipsBuilding TrustNetwork Security EngineeringIntrusion Detection System (IDS) / Intrusion Prevention System (IPS)Root Cause Analysis (RCA) and Problem ManagementPrivileged Access Management (PAM)Security Operations Center (SOC)Go-to-Market (GTM) Strategy (Go-to-Market)Threat and Vulnerability Management (TVM)Security GovernanceSecurity Metrics and ReportingThird-Party Risk Management (TPRM)Incident Response and Crisis ManagementSecurity Program ManagementRisk Governance / Enterprise Risk ManagementBoard and Executive ReportingVendor ManagementSecurity TransformationPresentationsInformation Security EngineeringCybersecurity Strategy Board Reporting Support AI & Data Governance Healthcare Information Technology Data Privacy IT Risk Management Cyber Threat Intelligence (CTI) Security Program Advisor Incident Response Security Engineering Governance, Risk Management, and Compliance (GRC) Security AwarenessInformation Security Management System (ISMS)Information Security ManagementGeneral Data Protection Regulation (GDPR)Cloud SecurityWeb Application SecurityVulnerability ManagementIT Security OperationsIT Security AssessmentsIdentity and Access Management (IAM)SecurityDisaster RecoveryInformation SecurityRisk Management

Past companies

Mufasa SecurityChief Architect NetworkCyberRisk CollaborativeINTEGRIS HealthOptum

Similar executives