Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
Timeline
Generic

Donald Cowin

Junction City,United States

Summary

Business intelligence and operations leader with a track record of optimizing processes and decision-making. Plan and execute strategic initiatives to improve efficiency, support growth, and drive adoption of change. Build collaborative partnerships with clients and internal stakeholders.

Overview

1
1
Certification
29
29
years of professional experience

Work History

Vice President of Wachter Cyber Defense

Wachter Cyber Defense
Lenexa, Kansas
10.2024 - 10.2025
  • Global Cybersecurity & IT Leadership Roles
  • Led enterprise cybersecurity strategy, security policy development, and GRC practices across regulated financial institutions and critical infrastructure clients, incorporating Identity Governance and Administration (IGA), identity lifecycle management, and unified security frameworks to improve compliance readiness
  • Directed tactical cybersecurity and information security operations for classified systems in global deployments, maintaining zero data breaches and ensuring continuous protection
  • Spearheaded modernization of legacy platforms using Zero Trust principles and cloud identity technologies, enhancing security posture and minimizing attack surface.
  • Implemented ITIL-aligned incident response, evidence collection, and chain-of-custody procedures across enterprise environments, boosting operational accountability and mitigating exposure.
  • Achieved a 40% reduction in regulatory and audit findings through analytical thinking-driven proactive remediation programs and strengthened control design.
  • Delivered executive risk dashboards and presentations for board decision-making and regulatory oversight, facilitating timely risk mitigation and informed stakeholder decisions.

Senior Breach and Remediation Senior Lead

Booz Allen Hamilton
01.2022 - 11.2024
  • Directed regulator-mandated breach remediation programs for Fortune 500 financial services clients under federal scrutiny, incorporating vendor management, evidence preservation, and SOC playbooks to achieve full regulatory compliance within required timelines.
  • Briefed CIOs, CISOs, and board audit committees on remediation progress and enterprise risk posture during crisis events, enabling leadership to make informed decisions that maintained stakeholder confidence
  • Operationalized NIST CSF and ISO 27001 control frameworks using automated compliance tools, accelerating readiness and reducing systemic risk
  • Expanded incident response to include proactive threat hunting with CEH techniques, uncovering additional threats and enhancing detection coverage and data protection
  • Conducted post-breach penetration tests to identify residual vulnerabilities in restored systems, leading to remediation of critical gaps and strengthening overall security posture
  • Directed cloud security modernization, overseeing the migration of 300+ Exchange servers to O365 with Zero Trust configurations, reducing attack surface by 60% through OWASP Secure Configuration Benchmarks.
  • Rebuilt Exchange servers and migrated to O365, applying OWASP secure configuration guidelines to strengthen system security and ensure compliance
  • Restored SAN volumes, conducted forensic imaging and analysis, and tested for exploitable misconfigurations, confirming data integrity and addressing critical security gaps.
  • Used SIEM tools including Splunk and ELK, along with Microsoft Defender and CrowdStrike, to correlate logs with known exploit patterns from CVE databases, enabling early threat detection and faster incident response.

Instructor and Signal Supervisor

Milvets
Fort Riley North
11.2015 - 12.2021
  • Trained and certified 500+ personnel in cybersecurity readiness and secure operations, strengthening team capabilities and operational resilience.
  • Managed governance and lifecycle of classified mission-critical networks through implementation of FedRAMP Continuous Monitoring and GRC processes, ensuring compliance and minimizing security incidents.
  • Ensured 100% compliance with DoD Security Technical Implementation Guides (STIG) for secure communications systems, enhancing system integrity.

Signal Support Specialist

US Army
11.1996 - 11.2015
  • Supervised, mentored, and evaluated a team of 17 junior signal support specialists, ensuring 100% compliance with Army communications security (COMSEC) policies and safety regulations.
  • Managed and documented system configurations for JNN, WIN-T, SINCGARS, ASIP, Harris/L3 Harris radios, Blue Force Tracker, TACLANE, and KG-175/250 encryptors to maintain compliance with Army COMSEC standards.
  • Oversaw networking systems including Cisco routing, VSAT, VoIP, and LAN/WAN architecture to enable reliable communication across units.
  • Integrated LAN/WAN networks, voice-over-IP (VoIP), and encrypted radio systems to achieve seamless interoperability between tactical communication platforms.
  • Utilized various communication and monitoring tools such as AN/PRC-117 and SolarWinds for effective network management. Education

Education

Bachelor of Science - Cybersecurity and Information Assurance

Western Governors' University
Salt Lake City, UT
09-2026

Associate of Arts and Science -

Barton Community College
Fort Riley, Kansas
03-2019

Skills

  • Cloud security frameworks (Azure/AWS)
  • API security within event-driven architecture
  • Microsegmentation with zero trust network access (ZTNA)
  • Security for containers (Docker/Kubernetes)
  • Monitoring and logging for cloud-native applications
  • CIS benchmarking for secure configurations
  • Access control through identity management (IAM)
  • Management of privileged access rights (PAM)
  • Multi-factor authentication alongside single sign-on (SSO)
  • Policies for conditional access controls
  • Administration of identity governance (IGA)
  • Management of identity lifecycles
  • Risk management principles in cybersecurity
  • Management of incident response and SOC operations
  • Strategies for regulatory compliance initiatives
  • Initiatives for digital transformation projects
  • Management of IT operations and resource allocation strategies
  • Strategic corporate communication planning

Certification

  • Certified Information Security Manager (CISM): 2027-10
  • ITIL 4 Foundation in IT Management 2029-09
  • CompTIA Security+ X: 2028-04
  • Certified Ethical Hacker (CEH): 2027-07
  • CompTIA A+ Plus: 2029-08
  • CompTIA Security Plus: 2028-04
  • CompTIA Network Plus: 2029-08
  • CompTIA CSIS
  • CompTIA CIOs

Accomplishments

  • Cloud & Infrastructure Security (Azure / AWS / Hybrid): Reduced cyber audit findings by 70% by implementing a continuous risk governance model, enforcing CIS and OWASP secure configuration baselines, and integrating cloud-native logging with SIEM correlation to validate control effectiveness for threat detection, compliance evidence, and incident response.
  • Threat & Vulnerability Management: Established risk-based vulnerability management by correlating CVEs with exploitability intelligence, asset criticality, and business impact, enabling remediation prioritization based on real-world attack paths rather than scan severity alone.
  • Governance, Risk & Compliance (GRC): Translated NIST CSF, ISO 27001, SOC 2, PCI DSS, HIPAA, and FedRAMP requirements into a unified control architecture with defined ownership, evidence collection standards, and validation testing to support continuous compliance and audit readiness
  • Breach Remediation & Recovery: Validated recovered systems before production release by performing secure configuration reviews, exploit validation testing, and log analysis, ensuring eradication of attacker persistence and preventing re-infection.
  • Governance, Risk & Compliance (GRC): Improved incident response readiness by 300% by engineering standardized SOC playbooks, escalation paths, and role-based training programs, and validating effectiveness through reduced response times and successful tabletop and live-fire exercises.
  • Endpoint, EDR, XDR & MDR: Built and operationalized an enterprise-grade EDR capability by standardizing agent deployment, tuning detection logic, and defining containment and escalation workflows, delivering real-time visibility and consistent incident response across managed clients environments.
  • Security Operations & Incident Response: Rebuilt and migrated 300+ Exchange servers to O365 by applying Zero Trust access controls, OWASP secure configuration benchmarks, and post-migration validation testing, reducing attack surface by approximately 60%.
  • Executive Leadership & Communication: Directed regulator-mandated breach remediation programs by conducting structured risk assessments, aligning remediation tasks to NIST CSF and ISO 27001 control objectives, and tracking closure through POA&M workflows to achieve regulator-validated outcomes.

Timeline

Vice President of Wachter Cyber Defense

Wachter Cyber Defense
10.2024 - 10.2025

Senior Breach and Remediation Senior Lead

Booz Allen Hamilton
01.2022 - 11.2024

Instructor and Signal Supervisor

Milvets
11.2015 - 12.2021

Signal Support Specialist

US Army
11.1996 - 11.2015

Bachelor of Science - Cybersecurity and Information Assurance

Western Governors' University

Associate of Arts and Science -

Barton Community College
Donald Cowin