I'm Christina Fannin, a cybersecurity professional with hands-on SOC experience, three GIAC certifications, and an MS in Cybersecurity from Western Governors University. Trained through the SANS Women's Immersion Academy, I completed advanced coursework in network security, incident response, and digital forensics. I thrive on solving complex security challenges and collaborating with cross-functional teams to defend critical systems. I am passionate about applying security best practices in healthcare IT and HIPAA-regulated environments. I'm experienced in triaging and escalating security alerts using SIEM and SOAR platforms, performing threat hunting, and producing clear, compliant incident documentation. I enjoy turning threat intel and data into actionable insights that protect patients, employees, and organizations while continuously learning new technologies and methodologies.

Christina Fannin

I'm Christina Fannin, a cybersecurity professional with hands-on SOC experience, three GIAC certifications, and an MS in Cybersecurity from Western Governors University. Trained through the SANS Women's Immersion Academy, I completed advanced coursework in network security, incident response, and digital forensics. I thrive on solving complex security challenges and collaborating with cross-functional teams to defend critical systems. I am passionate about applying security best practices in healthcare IT and HIPAA-regulated environments. I'm experienced in triaging and escalating security alerts using SIEM and SOAR platforms, performing threat hunting, and producing clear, compliant incident documentation. I enjoy turning threat intel and data into actionable insights that protect patients, employees, and organizations while continuously learning new technologies and methodologies.

Available to hire

I’m Christina Fannin, a cybersecurity professional with hands-on SOC experience, three GIAC certifications, and an MS in Cybersecurity from Western Governors University. Trained through the SANS Women’s Immersion Academy, I completed advanced coursework in network security, incident response, and digital forensics. I thrive on solving complex security challenges and collaborating with cross-functional teams to defend critical systems. I am passionate about applying security best practices in healthcare IT and HIPAA-regulated environments.

I’m experienced in triaging and escalating security alerts using SIEM and SOAR platforms, performing threat hunting, and producing clear, compliant incident documentation. I enjoy turning threat intel and data into actionable insights that protect patients, employees, and organizations while continuously learning new technologies and methodologies.

See more

Experience Level

Expert
Expert

Language

English
Fluent

Work Experience

Cybersecurity Analyst, SOC (Contract) at CVS Health
May 1, 2024 - July 1, 2024
Triaged and analyzed cybersecurity alerts using Splunk, Chronicle, Microsoft Defender, Azure Sentinel, CrowdStrike Falcon, and Tanium to identify true and false positives; mapped findings to MITRE ATT&CK TTPs. Investigated email-based threats including phishing, BEC, and social engineering using Mimecast, Cofense Triage, and Microsoft Cloud App Security. Executed containment and remediation actions including host isolation, malicious IP blocking, account disabling, and firewall rule updates in coordination with engineering teams. Enriched threat intelligence using Threatstream, VirusTotal, and internal feeds to assess IOC severity and relevance. Performed log analysis and correlation to detect lateral movement, privilege escalation, and anomalous user behavior, contributing to early detection of targeted attacks. Documented incidents, investigative steps, and response actions in compliance with HIPAA and NIST 800-53 requirements.
AI Trainer, Cybersecurity Expert at Handshake AI Fellowship
November 1, 2025 - Present
Developed and evaluated domain-specific prompts to assess LLM performance across cybersecurity topics including threat analysis, incident response, and vulnerability assessment. Analyzed model outputs for technical accuracy, depth, and clarity across specialized cybersecurity subfields. Conducted independent research to support prompt development and contributed expert feedback to improve AI understanding of complex security concepts. Evaluated LLM outputs for accuracy, completeness, instruction alignment, and overall quality across cybersecurity, technical, and general knowledge domains.
AI Trainer, Generalist/Cybersecurity Domain Expert at Outlier
January 1, 2026 - Present
Performed multidimensional AI response comparison and ranking using structured evaluation frameworks and rubric-based scoring. Conducted detailed image, video, and multimodal output analysis including artifact detection, quality assessment, realism checks, and feature fidelity verification. Created ultradetailed image annotations, captions, and spatial descriptions; transcribed document images; and performed bounding box and temporal video segmentation tasks. Developed prompts for AI image generation, style transfer, background replacement, object isolation, and cybersecurity LLM task evaluation; sourced and curated high-quality training data while ensuring ethical and safety standards.
Physical Therapist Assistant at St. Andrew Post-Acute Rehabilitation
April 1, 2023 - Present
Operate and maintain EHR platforms (NetHealth, PointClickCare) in a HIPAA-regulated environment, handling sensitive patient data with strict access controls and documentation standards. Identify and escalate HIPAA compliance concerns; train new staff on HIPAA privacy procedures and compliance requirements. Manage networked medical equipment including setup, troubleshooting, safety checks, and maintenance scheduling. Produce detailed written clinical progress reports with clarity for clinical and administrative audiences.
General Manager at Focus Brands
January 1, 2011 - January 1, 2015
Created and enforced operational policies and compliance procedures across a team of 15+, managed vendor negotiations, and handled confidential personnel and financial data. Made high-stakes staffing and operational decisions with incomplete information, coordinating across departments to maintain productivity and service standards.

Education

M.S. Cybersecurity at Western Governors University
January 1, 2024 - January 1, 2025
GIAC Certification Program at SANS Women's Immersion Academy
January 1, 2021 - January 1, 2022
B.S. Interdisciplinary Studies at University of Central Florida
January 1, 2019 - January 1, 2021
A.S., Physical Therapist Assistant at College of Central Florida
January 1, 2016 - January 1, 2017

Qualifications

GIAC Certified Incident Handler (GCIH)
January 11, 2030 - April 4, 2026
GIAC Security Essentials Certification (GSEC)
January 11, 2030 - April 4, 2026
GIAC Certified Forensic Examiner (GCFE)
January 11, 2030 - April 4, 2026
CompTIA PenTest+
January 11, 2030 - April 4, 2026
CompTIA ITF+
January 11, 2030 - April 4, 2026
AttackIQ: Foundations of Operationalizing MITRE ATT&CK
January 11, 2030 - April 4, 2026
AttackIQ: Top ATT&CK Techniques
January 11, 2030 - April 4, 2026
AttackIQ: Extending ATT&CK with ATT&CK Workbench
January 11, 2030 - April 4, 2026
AttackIQ: Introduction to EASY Framework for Threat Intelligence
January 11, 2030 - April 4, 2026
AttackIQ: MITRE ATT&CK Security Stack Mappings: AWS
January 11, 2030 - April 4, 2026

Industry Experience

Healthcare, Software & Internet, Professional Services