A risk executive with more than two decades of experience building and leading cybersecurity programs at the world's largest financial institutions. Joe began his career at the U.S. Department of Defense protecting military systems, and has since shaped information security strategy across global banks, government bodies, and the technology industry. He has testified before the U.S. Congress, published in academic and industry forums, and advised on policy at the intersection of national security and financial resilience.
An authoritative treatment of the practical security challenges surrounding artificial intelligence deployment in enterprise environments. The chapter explores real-world frameworks for securing AI systems, addressing governance, threat modeling, and the unique risk surface introduced by machine learning at scale — drawing on deep operational experience across global financial institutions.
View at De GruyterA widely-read profile examining the evolving role of the CISO at the intersection of technology and business strategy. Joe discusses his philosophy of building trust with business partners, the rise of organized cybercrime targeting financial institutions, and the shift from infrastructure-centric security to business-risk-oriented leadership.
Read ProfileBernik testified on the state of cybersecurity threats facing the U.S. financial system, drawing on his experience at BNY Mellon, Fifth Third Bank, and ABN AMRO. His testimony addressed public-private cooperation, the inadequacy of the Social Security Number as a digital identity credential, the need for open cybersecurity platforms, and the limitations of Automated Indicator Sharing (AIS). He urged Congress to modernize federal procurement rules to accelerate the adoption of next-generation security solutions.
Read Full Testimony (PDF)Invited participant in a Council on Foreign Relations policy roundtable examining technology's role in U.S. strategic leadership, cybersecurity resilience, and financial sector risk at the national level.
For speaking engagements, advisory inquiries, media requests, or to discuss cybersecurity strategy and governance.