I am a Security Executive with extensive senior leadership experience in vulnerability and container security, having worked at Amazon, Microsoft, and ServiceNow. Throughout my career, I have successfully driven significant reductions in critical vulnerabilities and ensured full compliance with FedRAMP, PCI DSS, and HIPAA standards. My expertise includes developing frameworks and pipelines that accelerate remediation and reduce risk exposure.
At ServiceNow, I currently serve as a Senior Vulnerability Response and Compliance Consultant, where I enhance security postures for commercial and federated environments, achieving high SLA compliance. I conduct risk assessments using NIST RMF and CVSS scoring and apply remediation strategies that maintain compliance and reduce exposure. I have pioneered AI-driven compliance forecasting and developed AI-focused false positive analysis pipelines to improve vulnerability accuracy.
During my tenure at Amazon, I led vulnerability, container, and attack surface security management. I developed Amazon's first CVE assessment framework, leveraging AI and machine learning to prioritize remediation and reduce risk. I managed large-scale deployments of vulnerability management agents and streamlined scanning processes, significantly improving remediation timelines and compliance.
At Microsoft, I managed service engineering teams and implemented patching strategies that maintained high compliance SLAs. I engineered resilient monitoring infrastructures and collaborated with security teams to reduce exposure times for critical vulnerabilities. I also managed SDLC initiatives to align IT services with business objectives and reduce security incidents.
I am passionate about leveraging deep security expertise to strengthen enterprise protection and compliance outcomes. I excel in strategic planning, team leadership, and process optimization, and I am committed to driving continuous improvements in security posture and operational efficiency.