California Cybersecurity Chief Announces Resignation After Seven Years

0
4

Key Takeaways

  • California Chief Information Security Officer (CISO) Vitaliy Panych announced his resignation after seven years leading the state’s cybersecurity strategy.
  • Appointed by Gov. Gavin Newsom in 2021, Panych previously served nearly two years in an acting role and built a cybersecurity career in state government dating back to 2003.
  • Under his leadership, California advanced the Cal‑Secure roadmap, expanded the California Cybersecurity Integration Center (Cal‑CSIC), and pushed for zero‑trust architecture, continuous monitoring, and identity management across executive agencies.
  • Panych emphasized embedding cybersecurity into everyday government operations rather than treating it as a standalone IT function, helping thousands of local and educational jurisdictions strengthen their defenses.
  • His work earned national recognition, including the 2022 NASCIO Thomas M. Jarrett State Cybersecurity Leadership Award and a 2023 CyberScoop 50 Government Leadership Award.
  • Panych is moving to an international technology firm that specializes in AI, cybersecurity, cloud, and software development for large enterprises and government agencies.
  • He expressed confidence that California’s cybersecurity posture remains strong, crediting the collective effort of administration, agency leaders, information security officers, and staff.
  • Panych’s departure leaves a high‑profile technology leadership vacancy as the state continues to confront evolving threats such as ransomware, AI‑related risks, and the lingering impacts of the COVID‑19 pandemic.

Background and Announcement of Departure
Vitaliy Panych, California’s Chief Information Security Officer, revealed on LinkedIn last week that he will step down after seven years at the helm of the state’s cybersecurity strategy. He described the decision as difficult, noting that he had “lost sleep over this one for many months.” Panych framed his tenure as an honor and a privilege, acknowledging the relentless challenges that come with protecting a state as large and technologically diverse as California. He thanked the administration and the broader cyber community for their support, emphasizing that successes were achieved collectively rather than individually.

Early Career and Path to the CISO Role
Before his appointment as CISO, Panych accumulated extensive experience within California state government, beginning his career in 2003. He held cybersecurity leadership positions at the California Department of Corrections and Rehabilitation, the Employment Development Department, and the Franchise Tax Board. These roles gave him a deep understanding of the varied IT environments and risk profiles across state agencies. In 2021, Gov. Gavin Newsom appointed him to the CISO position after he had already served nearly two years in an acting capacity, signaling confidence in his ability to steer the state’s cybersecurity agenda.

Strategic Vision: Cal‑Secure and Zero‑Trust Architecture
Shortly after taking office, Panych outlined priorities that included strengthening the California Cybersecurity Integration Center (Cal‑CSIC), expanding continuous network monitoring across the executive branch, and automating security controls to move beyond periodic compliance checks. He championed the Cal‑Secure cybersecurity roadmap, which established a common framework for executive agencies centered on zero‑trust architecture, continuous monitoring, robust identity management, and enhanced collaboration between state and local governments. By advocating that cybersecurity be embedded into everyday government operations rather than treated as a separate IT function, Panych helped shift the cultural mindset toward proactive risk management.

Expansion of Cal‑CSIC and State‑Local Partnerships
Under Panych’s leadership, Cal‑CSIC grew from a small concept with a handful of operators to a robust entity comprising hundreds of professionals dedicated to cyber defense and operations. He highlighted in his LinkedIn post that the center now helps uplift thousands of local and educational jurisdictions that partner with the California Department of Technology’s Office of Information Security. This expansion has significantly reduced risk across the state by providing shared threat intelligence, incident response capabilities, and best‑practice guidance to agencies that might otherwise lack sufficient resources.

National Recognition and Awards
Panych’s contributions did not go unnoticed beyond California’s borders. In 2022, he received the NASCIO Thomas M. Jarrett State Cybersecurity Leadership Award, recognizing outstanding leadership and innovation in state cybersecurity programs. The following year, he was honored with a CyberScoop 50 Government Leadership Award, underscoring his influence on national cybersecurity policy and practice. These accolades reflect both the impact of his initiatives and the respect he garnered from peers across the public and private sectors.

Transition to the Private Sector
Panych announced that he is joining an international technology company that designs, builds, and deploys digital infrastructure for large enterprises and government agencies, with a particular focus on artificial intelligence, cybersecurity, cloud computing, and software development. He framed this move as an opportunity to “widen the front” of the cybersecurity fight, applying the lessons learned in state government to a broader, global context. While leaving his official post, he emphasized that he remains committed to advancing cybersecurity resilience.

Reflections on California’s Cybersecurity Posture
In his farewell message, Panych expressed confidence that California is “strong, solid, and safer thanks to us all.” He credited the deep leadership chain—from the governor’s office to agency secretaries, directors, information security officers (ISOs), and every team member—for fostering a risk‑mindset culture. His goal had always been to make everyone a risk‑aware security practitioner, and he believes the state has succeeded in that endeavor. This collective approach, he argued, is essential for defending against increasingly sophisticated threats such as ransomware, AI‑driven attacks, and the lingering cybersecurity challenges amplified by the COVID‑19 pandemic.

Implications for California’s Future Cybersecurity Leadership
Panych’s departure creates a significant vacancy in one of the state’s most visible technology leadership roles. As California continues to confront escalating cyber threats—including the rise of AI‑enabled exploits, supply‑chain vulnerabilities, and the need to secure remote work environments—the incoming CISO will inherit a mature framework built on Cal‑Secure, zero‑trust principles, and expansive inter‑agency collaboration. The successor will need to balance maintaining the momentum of existing initiatives while innovating to address emerging risks, ensuring that California remains a national leader in public‑sector cybersecurity.

Conclusion
Vitaliy Panych’s seven‑year tenure as California CISO was marked by strategic vision, institutional growth, and a push to integrate cybersecurity into the fabric of government operations. His achievements—strengthening Cal‑CSIC, advancing the Cal‑Secure roadmap, earning national awards, and cultivating a statewide culture of risk awareness—have left a lasting legacy. As he transitions to a private‑sector role focused on AI, cybersecurity, cloud, and software development, the state’s cybersecurity community will look to build on his foundation while navigating the ever‑evolving threat landscape.

SignUpSignUp form

LEAVE A REPLY

Please enter your comment!
Please enter your name here