Meet Our Experts
Devon Kelly
Director, Resilience Readiness Services
-
Leverages over 10 years of experience as a cybersecurity professional
- Advises Fortune 500 organizations and global enterprises on cybersecurity governance, risk, and resilience, drawing on more than a decade of experience
- Designed and delivered a cyber threat exercise that earned recognition from the client's Chief Information Officer as best-in-class
- Secured and led a $1 million physical security assessment engagement for a Fortune 50 client
Devon Kelly is a cybersecurity professional with more than 10 years of experience in governance, risk, compliance, and cyber resilience. At LevelBlue, she advises Fortune 500 organizations and global enterprises on security advisory services, threat exercise development, and enterprise risk and compliance strategy. She is recognized for translating complex risk landscapes into practical, board-ready security strategies, pairing technical risk analysis with clear executive communication to help clients move from assessment findings to action.
In her current role, she designs and facilitates tabletop and functional cyber exercises for clients and guides organizations through business continuity and disaster recovery planning aligned with frameworks such as the NIST Cybersecurity Framework, ISO 22301, and ISO 27002. Kelly plays a cross-functional role within the firm, regularly supporting the cyber risk and consulting team on assessment work. She also mentors cybersecurity professionals to support engagement delivery and career growth.
Prior to specializing in resilience services, Kelly served as a Senior Associate in PWC’s Cybersecurity and Privacy practice, where she advised financial institutions on regulatory remediation timelines and governance documentation and led data privacy and mapping assessments for Fortune 500 clients under GDPR and CCPA.
Earlier in her career, Kelly held the role of Principal Security Analyst within the Governance, Risk, and Compliance department of global cybersecurity software provider Symantec, where she performed enterprise-wide threat and control assessments using IRAM2, ISO 27001:2013, and the NIST 800-series, and served on a cross-functional council that positioned the organization's Global Security Office for GDPR compliance
Kelly holds a dual Bachelor of Arts in Government & Politics and History from the University of Maryland at College Park and a Master of Arts, with merit, in Intelligence and International Security from King’s College London. She holds the Certified in Cybersecurity (CC) certification from ISC2.
Professional Associations
- Executive Women’s Forum (EWF) – Member
- ISC2 – Member
- InfraGard – Member
Publications and Presentations
- Strengths and Weaknesses of Cybersecurity in the U.S. Institutional Setup: Implications for the Future