For employers

Hire this AI Trainer

Sign in or create an account to invite AI Trainers to your job.

Invite to Job
B
Brandon K.

Brandon K.

Cybersecurity Data Evaluator | GRC, Vulnerability Management & AI Training

USA flagPittsburgh, Usa

Key Skills

Software

Other

Top Subject Matter

Cybersecurity Vulnerability Management
GRC / Cybersecurity Compliance
Security Operations & Workflow Analysis

Top Data Types

TextText
DocumentDocument
ImageImage

Top Task Types

Evaluation/RatingEvaluation/Rating
ClassificationClassification
Question AnsweringQuestion Answering

Freelancer Overview

Structured data review, quality control, workflow evaluation, and AI-adjacent GRC process design. Assessed 25–50 vulnerability records per day for DHS-CISA support work, applying CVSS/SSVC scoring, normalizing technical data, and maintaining consistency across large-scale analyst workflows. Experience with requirements definition, control mapping, evidence workflows, acceptance testing, SOP development, and process improvement. Strong fit for tasks requiring judgment, pattern recognition, clean rationale, and evaluation of messy inputs against defined criteria.

Labeling Experience

SCF Control Mapping & SIEM Dashboard Data Design

DocumentDocumentClassificationClassification

Cybersecurity control-mapping and data-structuring project using NIST CSF and Secure Controls Framework source material. Recreated control-domain spreadsheets to define how security requirements, operational evidence, technical signals, and business decision needs connect across organizational layers. Classified controls by domain, intent, evidence need, operational trigger, validation logic, and stakeholder view. Project scope included designing structured inputs for in-house Splunk dash boarding that could translate ground-level SIEM data into useful views for engineers, managers, and executive security leadership.

2024 - Present

NVD Enrichment, CVE Vulnerability Record Evaluation

TextTextEvaluation/RatingEvaluation/Rating

Large-scale vulnerability data evaluation supporting DHS-CISA vulnerability operations. Reviewed 25–50 CVE records per day, applying CVSS and SSVC criteria to evaluate severity, prioritization, exploitability signals, operational relevance, and remediation context. Performed technical data normalization, scoring, edge-case review, and rationale documentation across thousands of vulnerability records. Project scope included national-scale vulnerability triage and backlog processing with a distributed analyst team.

2023 - 2024

Compliance Evidence & Control Documentation Review

DocumentDocumentEvaluation/RatingEvaluation/Rating

Cybersecurity compliance documentation and evidence review using Archer for SOC 2, ISO 27001, and NIST-aligned workflows. Reviewed uploaded evidence artifacts, policies, procedures, screenshots, control records, and stakeholder submissions for completeness, consistency, and alignment with control requirements. Project scope included evidence collection, documentation cleanup, workflow standardization, and audit-readiness support.

2021 - 2023

Vulnerability Remediation Tracking

TextTextClassificationClassification

Enterprise vulnerability remediation tracking in a regulated healthcare environment using Rapid7. Reviewed vulnerability findings, remediation records, ownership details, status updates, risk context, and follow-up notes. Classified records by remediation status, responsible owner, risk relevance, escalation need, and documentation completeness. Project scope included recurring review across security, IT, engineering, and business teams.

2021 - 2023

Education

R

Robert Morris University

Bachelor of Science, Cyber Forensics and Information Security

Bachelor of Science
2016 - 2019

Work History

I

Independent Cybersecurity Venture

Co-Founder & Strategic Lead

Pittsburgh
2024 - Present
E

Ethical Intruder

Business Operations Manager

Pittsburgh
2025 - 2025