Summary
Overview
Work History
Education
Skills
Certification
Awards
Key Achievements
Timeline
Generic

Olivia Phillips

Fredericksburg,VA

Summary

Award-winning cybersecurity executive with 20+ years of progressive leadership experience driving enterprise risk reduction, digital transformation, and security resilience across transportation, critical infrastructure, and government sectors. Proven ability to align cybersecurity with business strategy, advise executive leadership and boards, and lead high-impact initiatives through complex threat and regulatory environments. Deep expertise in governance, cyber risk quantification, compliance (PCI, TSA, NIST), and executive-level crisis management. Poised to transition into a CISO role with a strong record of operational excellence, business acumen, and transformational leadership.

Overview

22
22
years of professional experience
1
1
Certification

Work History

Business Information Security Officer (BISO)

Amtrak
04.2024 - Current
  • Provides strategic, CISO-aligned leadership across enterprise cybersecurity domains as the head of Amtrak’s Business Information Security Officer (BISO) program. Leads the development and execution of enterprise-wide security strategies, aligning cyber risk management with business objectives and executive priorities. Acts as a trusted advisor to the C-suite and business unit leaders, embedding cybersecurity insights into operational decision-making and long-term strategic planning. Oversees the integration of security into mergers and acquisitions, digital modernization initiatives, and enterprise resilience efforts. Collaborates closely with legal, audit, and compliance teams to ensure adherence to evolving regulatory frameworks, including TSA Security Directives and PCI-DSS requirements. Spearheaded the implementation of a cybersecurity risk framework and executive-level reporting model to enhance visibility, accountability, and informed risk-based decision-making.

Director Cyber Assessment

Amtrak
07.2020 - 04.2024
  • Led the creation and maturation of Amtrak’s cybersecurity risk and assessment program, aligning cyber capabilities with mission-critical operations and federal regulatory requirements. Directed a multi-disciplinary team responsible for vulnerability management, red and blue team exercises, insider threat analysis, and enterprise risk assessments. Successfully reduced organizational cyber risk by 30% through data-driven initiatives and stakeholder alignment. Established governance models to integrate security into enterprise architecture, procurement, and product development lifecycles. Frequently briefed executive leadership and board-level stakeholders on cybersecurity posture, investment priorities, and evolving threat landscapes. Championed a culture of accountability and resilience by embedding risk-informed decision-making across business and technology teams.

Deputy, Cybersecurity Operations Center (PENTCIRT)

Leidos / GD-IT
02.2018 - 07.2020
  • Led federal cybersecurity operations in support of the U.S. Department of Defense, defending against advanced nation-state adversaries across classified, high-security environments. Oversaw key mission areas including incident response, insider threat detection, and data protection. Closed over 2,000 security tickets monthly by streamlining triage processes, eliminating false positives, and enhancing SIEM rule sets—improving analyst efficiency and reducing alert fatigue. Provided strategic threat intelligence and KPIs to senior Pentagon officials, guiding remediation efforts and policy decisions. Coordinated cross-functionally with legal, compliance, and federal law enforcement agencies to ensure cohesive, protocol-aligned responses to national security threats.

Program Manager- Insider Threat / Sr Incident Response Engineer

Veritas Technologies
10.2014 - 02.2018

Designed, built, and managed an industry leading Insider Threat Program, orchestrating cross-functional collaboration to align strategic objectives with regulatory demands and business imperatives. Conducted comprehensive threat assessments to identify and profile potential insider risks, leading to the design and implementation of tailored policies, procedures, and incident response protocols. Integrated leading security technologies to proactively monitor and detect abnormal insider activities. Presented program progress and accomplishments to executive leadership and external auditors, receiving accolades for exceptional program efficacy.

Threat & Vulnerability Analyst

Symantec
10.2014 - 10.2015

Lead cybersecurity engineer

NJVC-LLC
07.2013 - 10.2014

Lead Cyber Engineer

Raytheon
06.2008 - 07.2013

Systems Engineer

BAE Systems Information Technology
02.2006 - 03.2008

Network Administrator

General Dynamics Information Technology
04.2003 - 02.2006

Education

Bachelor’s -

Western Governors University
Utah
01.2026

Associate’s degree - Information Technology/Network Engineering

Northern Virginia Community College
Woodbridge, VA
12.2007

Skills

  • Executive Communication
  • Artificial Intelligence (AI)
  • Business Alignment
  • Influence & Collaboration
  • Business Strategy
  • Board of Directors Engagement

Certification

  • CISO — Secure Anchor
  • ITPM SEI/CMU Insider Threat Program Management Certification — Software Engineering Institute | Carnegie Mellon University
  • Hirsch Velocity Physical Security — Hirsch
  • Insider Threat — DOD

Awards

Global leadership, BISO Award, DTLT employee spotlight, Several Peer award, CEO circle award, Tier 1 award, President Recognition, Achievement Award, Team Achievement award

Key Achievements

  • Significant Risk Reduction: Spearheaded a multi-million-dollar cybersecurity program that reduced enterprise risk by 30% across Amtrak’s operations.
  • Insider Threat Mitigation: Designed and launched a proactive Insider Threat Program, resulting in a 50% decrease in internal threat incidents.
  • Regulatory Compliance Success: Established a robust governance framework that ensured 100% compliance with evolving global cybersecurity regulations, including NIST, PCI-DSS, and TSA SD.
  • Strategic Cost Optimization: Consistently delivered projects on time and under budget, enabling reinvestment of saved funds into other high-impact business initiatives.
  • Business-Cyber Alignment: Integrated cybersecurity with enterprise objectives, strengthening organizational resilience and supporting growth through risk-informed decision-making

Timeline

Business Information Security Officer (BISO)

Amtrak
04.2024 - Current

Director Cyber Assessment

Amtrak
07.2020 - 04.2024

Deputy, Cybersecurity Operations Center (PENTCIRT)

Leidos / GD-IT
02.2018 - 07.2020

Program Manager- Insider Threat / Sr Incident Response Engineer

Veritas Technologies
10.2014 - 02.2018

Threat & Vulnerability Analyst

Symantec
10.2014 - 10.2015

Lead cybersecurity engineer

NJVC-LLC
07.2013 - 10.2014

Lead Cyber Engineer

Raytheon
06.2008 - 07.2013

Systems Engineer

BAE Systems Information Technology
02.2006 - 03.2008

Network Administrator

General Dynamics Information Technology
04.2003 - 02.2006

Bachelor’s -

Western Governors University

Associate’s degree - Information Technology/Network Engineering

Northern Virginia Community College
Olivia Phillips