Summary
Stephen Shaffer is a security-focused technology advisor and principal security engineer with eight years of experience applying data engineering, data science, and risk quantification to vulnerability management across healthcare and consumer-tech environments. He has driven program-level security transformations—implementing risk scoring, large-scale data pipelines, and configuration hardening—at organizations including Moderna, Peloton, and CMS cloud programs. As EPSS SIG co-chair he helps shape community practices around exploit prediction, and he combines hands-on tooling, research, and published code with practical compliance delivery. Based in Bel Air, MD, he blends a criminology background with an MS in Cybersecurity to approach risk from both behavioral and technical angles, and he’s known for turning complex security requirements into auditable, data-driven programs.
8 years of coding experience
10 years of employment as a software developer
Master of Science, Cybersecurity, Master of Science, Cybersecurity at University of Maryland Global Campus
Bachelor of Arts, Criminology and Criminal Justice, Bachelor of Arts, Criminology and Criminal Justice at University of Maryland