Additional Info

Job title of nominated professional (or team name)Information Technology Security Engineer
Company (where nominated professional or team is working)Spirit Mountain Casino
Websitespiritmountain.com
Company size (employees)1,000 to 4,999
CountryUnited States
Headquarters RegionNorth America

Overview

I am a cybersecurity professional specializing in building scalable, business-aligned security solutions that not only protect assets but also drive operational efficiency and compliance. My expertise spans SOC operations, vulnerability management, insider threat detection, network security, and security architecture, where I focus on integrating innovative technologies with strategic security planning.
One of my most impactful initiatives was leading the integration of an AI-powered risk-based vulnerability management system. Instead of relying on traditional CVSS scores, I customized a TensorFlow-based model, integrating real-time threat intelligence from multiple sources such as Nessus, Qualys, and MITRE ATT&CK. This resulted in a 50% reduction in false positives, a 60% improvement in remediation cycles, and $2.5 million in annual savings by preventing high-risk vulnerabilities from being exploited.
To strengthen insider threat detection, I deployed and customized Splunk’s UBA framework with tailored behavioral baselines. I developed custom machine-learning models that detected deviations from normal employee activity, flagging high-risk access attempts, unauthorized data movements, and privilege escalations before they became security incidents. This initiative resulted in 100% mitigation of insider threats before escalation, improved employee risk visibility, and a 45% reduction in false positives within security alerts. Recognizing gaps in incident response planning, I developed a dynamic incident response framework incorporating automated playbooks using SOAR platforms like Splunk Phantom and Cortex XSOAR. This transformed incident response from a manual, reactive process into a semi-automated system, cutting down response times by 50%.
Additionally, I built NIST and ISO 27001-aligned System Security Plans (SSPs) that scaled compliance across multiple business units, reducing audit preparation time by 30% and ensuring 100% adherence to security frameworks.
Beyond my organizational contributions, I have published 10+ research papers on AI in cybersecurity and proactive defense strategies. I attended to various industry events and webinars, I also mentor cybersecurity professionals, contributing to workforce development and a stronger

Accomplishments

Revolutionizing Risk Management with Business-Centric Solutions: I pioneered a risk-based security program that aligned cybersecurity priorities with business objectives, enabling proactive decision-making at the executive level. By implementing this program, the organization avoided an estimated $2.5 million in breach costs, improved the alignment of IT security investments with business goals, and created a more agile response to emerging threats. Through innovative reporting mechanisms, I empowered executives to view cybersecurity not as a cost center but as a critical enabler of growth and resilience.
Empowering Cross-Functional Teams to Embrace Security: I introduced a cross-functional security champion program to integrate security ownership into non-technical departments like marketing and finance, breaking down silos between IT and business units. By designing targeted training and awareness campaigns, I increased organization-wide security accountability by 50%, reduced phishing success rates by 60%, and enhanced overall employee awareness of cybersecurity risks. This program instilled a shared sense of responsibility and reduced reliance on IT alone, creating a sustainable security culture embedded throughout the organization.
Shaping the Future of Cybersecurity Beyond the Organization: My contributions to the industry extend far beyond my organization. I have published over 10 research papers on cutting-edge topics such as AI-powered threat detection and scalable security frameworks for mid-sized organizations. These resources have been adopted by peer organizations, featured in industry webinars, and cited in security forums to help others address modern threats effectively. Furthermore, as a mentor to aspiring cybersecurity professionals, I have guided numerous individuals in implementing forward-thinking solutions, fostering a new generation of talent and ensuring a stronger, more resilient future for the cybersecurity industry. Through these efforts, I have not only advanced my organization’s security posture but also positively impacted the broader cybersecurity community.


  • Vote for this Nomination
    (click the thumbs-up icon to cast your vote)

Browse Award Nominations