Mr. Stephen Quinn joined the National Institute of Standards and Technology (NIST) in 2004 and serves as a senior computer scientist in the Information Technology Laboratory (ITL). Mr. Quinn is the lead author for Integrating NIST risk management project work within the paradigm of Enterprise Risk Management (ERM). He is also program manager for the National Checklist Program and the National Online Informative Reference (OLIR) programs at NIST. He is a co-originator of the NIST Security Content Automation Protocol (SCAP).
Stephen was named to the “Federal 100” by the trade publication Federal Computer Week (FCW) and received the Department of Commence Gold Medal Award for his work in automating security protocols for applications. He also received the Federal CIO Council Leadership award for related work.
Prior to joining NIST, Steve worked in the private sector as a consultant to the Department of Defense and large commercial outsourcings with Wall Street banking firms and insurance companies. Specifically, he comes from an operational background, having owned two companies that provided service offering for vulnerability assessments, designing security architectures, code development, risk management, certifications and accreditations, and ST&Es. His research experience and practitioner experience includes managing and remediating risks specific to computer viruses/malware, intrusion detection systems (IDSs), vulnerability/misconfiguration identification, categorization, and remediation.
Lindsey Brickle is a Senior Workforce Manager at Polaris MEP.
Aarin B. Clemons is a Workforce Coordinator at Polaris MEP in Rhode Island.
Bill Fisher is a security engineer at the National Cybersecurity Center of Excellence (NCCoE). In this role, he is responsible for leading a team of engineers that work collaboratively with industry partners to address cybersecurity business challenges facing the nation. He lead the center’s Attribute Based Access Control (ABAC) project and was a member the ITL Cybersecurity for IoT program. He lead’s the NCCoE Public Safety and Data Security programs and is a member of the NCCoE ransomware team. Recently he joined as co-lead on the NCCoE mobile driver’s license (mDL) project
Andrew Regenscheid is a project lead for applied cryptography within the Computer Security Division at NIST. In his 15 years as part of the Cryptographic Technology Group, Andrew has worked to apply cryptographic algorithms and tools to improve the security of computer platforms, communication protocols, and authentication mechanisms. As the technical lead for the Personal Identity Verification standards program, Andrew is responsible for developing identity management standards and technical guidelines for federal government employees and contractors, while also contributing to NIST’s broader portfolio of digital identity guidance as a coauthor of NIST SP 800-63.
Nelson Hastings is the leader of the Cybersecurity and Privacy Applications Group of Applied Cybersecurity Division within NIST’s Information Technology Laboratory. Over his 20 plus years at NIST, he has worked in the areas of public key infrastructure, cryptographic module validation, and cybersecurity for public safety communications, voting systems, and smart grid. His group’s portfolio includes NIST’s privacy engineering program, small business cybersecurity outreach, digital identity guidance, and cybersecurity for public safety communications, voting systems, industrial control systems, internet of things, and smart grid.
Gema is a Computer Scientist within the Applied Cybersecurity Division at NIST. She works at the NCCoE to create reference architectures for enterprise mobile device deployments. Gema also researches methods to improve the security of mobile phones and wearables tailored to first responders. As the cybersecurity lead on the NIST Voting Team, Gema assisted in the development of the Voluntary Voting System Guidelines (VVSG) 2.0 Principles and Guidelines and drafted accompanying VVSG 2.0 requirements.