IT / OT Program Delivery
Senior Program & Project Delivery
For organizations where delivery failure is not an option.
Programs stall for predictable reasons. Governance is weak. Vendors are driving. Stakeholders have stopped trusting the status reports. Executives are asking questions nobody can answer cleanly.
This engagement is for organizations that need a senior delivery leader to take ownership — not manage tasks, not attend meetings, but own the outcome. I step in, assess delivery health quickly, impose structure and accountability across teams and vendors, and give leadership the clarity they need to make decisions.
What this engagement addresses
Programs already in flight with fragmented governance and no clear delivery owner
Vendor-driven delivery where the organization has lost control of scope, timeline, and cost
Infrastructure and cybersecurity initiatives without program structure or executive reporting
Cross-functional programs where accountability is diffuse and nothing is moving
Book a Discovery Call →
Industries Served
Oil & Gas
Mining
Rail
Utilities
Energy
Regulated Industries
What You Get
- —
Delivery health assessment within the first two weeks
- —
Governance and accountability structure imposed across all workstreams
- —
Vendor scope, sequencing, and commitment management
- —
Plain-language executive reporting — no surprises
- —
Risk surfaced early, with a recommendation attached
Engagement Model
Contract program leadership — typically 6 to 18 months. Available for full-time or fractional arrangements depending on program scope and complexity.
IT / OT Cybersecurity
Cybersecurity Program Delivery
Delivery authority for organizations where security and operations intersect.
Cybersecurity programs in regulated industries are uniquely difficult. The technical complexity is real. The operational constraints are real. And the consequences of getting it wrong — to systems, to compliance, to the business — are serious.
I hold PMP, CISSP, and CPP credentials and have delivered cybersecurity programs across energy, mining, and rail environments where IT and OT converge. This isn't advisory work. It's delivery leadership — owning the program, managing the vendors, and giving executives confidence that the initiative will land securely and on time.
What this engagement addresses
OT/IT convergence programs in operational environments where downtime is not acceptable
Cybersecurity compliance and framework implementation (NERC CIP, IEC 62443, SOC 2)
Incident response readiness programs and security posture assessments
Security vendor selection, management, and accountability in complex multi-vendor environments
Book a Discovery Call →
Credentials
CISSP
PMP
CPP
MBA
Delivery Experience
- —
Suncor Energy — OT cybersecurity program delivery
- —
TC Energy — infrastructure and security initiatives
- —
CPKC — rail IT/OT convergence programs
- —
Nutrien — enterprise security and compliance delivery
- —
Dominion Diamond Mines — remote operations security
Engagement Model
Contract cybersecurity program leadership. Typically 6 to 24 months. Structured for regulated industry delivery timelines and compliance cycles.
Fractional · Contract · Interim
Fractional IT Program Lead
Senior delivery authority — available now, without the full-time overhead.
Programs stall when there is no one senior enough to own delivery risk and credible enough to hold vendors and stakeholders accountable. This engagement puts that person in place — fractionally, at the scope your program actually needs.
The first week is not spent reading documentation. It is spent talking to the people — not the official version of the situation, the real one. Within 30 days the delivery health is assessed, governance is reset, vendors are held to their commitments, and executives are receiving reporting they can trust.
What the first 30 days look like
Days 1–7: Rapid delivery health assessment. Review program artifacts, stakeholder maps, vendor commitments, and current risks. No assumptions — just facts.
Days 8–14: Governance reset. Establish cadence, ownership, and reporting structures. Clarify decision rights. Identify the three risks that matter most.
Days 15–30: Stabilize and align. Vendors held to commitments. Executives receive clear, credible reporting. The delivery trajectory is visible and trusted.
Book a 30-Minute Call →
Who This Helps
- —
Enterprise organizations ($1B+ revenue) with programs in flight and no senior delivery owner
- —
Vendor-driven programs where client-side accountability has broken down
- —
Executives who have lost confidence in status reports and need honest delivery visibility
- —
Organizations that hire through staffing firms for delivery certainty, not ramp-up time
Engagement Models
- —
5 hrs/week — Advisory and oversight. Senior eyes and executive reporting.
- —
10 hrs/week — Active program lead. Weekly cadence, vendor governance, risk reporting.
- —
20 hrs/week — Full fractional lead. End-to-end program ownership — structure, vendors, executives, and outcomes.
How to Engage
Send a brief description of the program and what's at stake. One 30-minute call — no pitch, just a direct conversation. If there's a fit, scope is agreed and the engagement starts within days, not weeks.
AI Automation
AI Automation for Calgary SMBs
Practical AI workflows for small and medium businesses — no code required.
Most small businesses are spending time on work that AI can handle. Scheduling, follow-up, reporting, content, client communication. The tools exist. The gap is knowing which ones to use and how to connect them.
This service starts with an audit of where your business is losing time to manual, repetitive work. Then we build the workflows that eliminate it — using no-code tools your team can operate without technical support. The goal is a measurable reduction in administrative load within 90 days.
What this engagement addresses
AI workflow audit — identifying where your business is losing the most time to manual work
Automation builds using Make.com, Zapier, Claude, and connected business tools
Client communication, follow-up, and CRM automation without hiring additional staff
Ongoing retainer support to maintain, expand, and optimize automations as the business grows
Book a Discovery Call →
Tools We Deploy
Make.com
Zapier
Claude AI
Notion
HubSpot
Buffer
Otter.ai
Service Tiers
- —
AI Workflow Audit — $1,500–$2,500
- —
Automation Build — $3,000–$6,000
- —
Monthly Retainer — $1,500–$2,500/month
Who This Is For
Calgary SMBs with 2–50 staff spending significant time on manual, repetitive administrative work. No technical background required.
"The role isn't project manager. The role is delivery authority — taking ownership of high-risk programs, imposing structure across teams and vendors, and giving executives the confidence that it will land."
— Duff Spence · MBA, PMP, CISSP · Lesli Alexander Consulting
Duff Spence
MBA · PMP · CISSP · CPP · Lesli Alexander Consulting
Senior IT/OT cybersecurity program manager and delivery lead with 25+ years of enterprise experience across energy, mining, rail, and regulated industries. Managed programs up to $14.4M across 30+ OT sites impacting 6,000+ end users — averaging ~3% budget variance at program close. Delivered cybersecurity and infrastructure programs at Nutrien, Suncor, CPKC, TC Energy, and Dominion Diamond Mines. Credentials: MBA, PMP, CISSP, CPP. Brought in when programs are high-risk, politically complex, and delivery certainty is non-negotiable.