About
Cybersecurity analyst at a bank, working where regulation, cloud, and AI overlap.
I'm a cybersecurity analyst at Sunflower Bank. I lead secure AI enablement for about 1,500 users, which mostly means building DLP controls around Microsoft Copilot so non-public customer information doesn't end up somewhere it shouldn't under GLBA.
The rest splits between detection and governance. I've written 55+ alert runbooks across our SIEM and EDR, plus the enterprise playbooks for business email compromise. On the governance side I designed a three-tier access exception process that routes requests through the manager, IT risk, and the CISO, which closed the segregation of duties gaps we had before it.
Before this I was a SOC analyst intern at FirstBank, working alerts across 2,500 endpoints in Splunk and CrowdStrike. I also spent a year as a graduate research analyst at the University of Arizona's McKeever Lab, where I ran a gap analysis of 58 controls against NIST 800-53 and set up an ELK stack to centralize logging.
Why this site exists
Almost none of my work is publishable. It belongs to the banks. So I build similar things on my own accounts and document those instead.
The rule I set is that a project has to start from a problem a real business would pay to fix. I deploy them for real, save the evidence, and tear them down.
Outside of security
I started the University of Arizona's first bodybuilding club and grew it to 180+ members. I've volunteered teaching cybersecurity basics to K-12 students and at the FutureCon conference. I finished my M.S. in MIS in May 2026 with a concentration in Information Security and Assurance.