Healthcare Professional & Cybersecurity Strategist

Chaunda C.
Dallas

MSIT · Digital Health, IoMT & Clinical AI Risk · Digital First Responder

I didn't leave healthcare.
I learned to defend it.

Chaunda C. Dallas — Healthcare Cybersecurity Strategist
28
Years in Emergency & Procedural Medicine
CNA → Lead ER Tech → Clinical Coordinator
50+
Global Defenders Featured Alongside
Midnight in the War Room · Black Hat USA 2026
200+
Women Mentored Through WiCyS
3rd Consecutive Year · 2026
9
IoMT Failure Scenarios — DFR Lab
0 hypotheticals · All built from reality

A healthcare professional
who learned to fight back.

I started on the floor as a CNA and registration clerk, working my way up to Lead ER Tech, Epic Super User, and Clinical Preceptor. Ultimately I served as Clinical Coordinator and Lead Clinical Coordinator — managing nursing staff, physicians, and administrative workflows across ERs and outpatient surgical centers.

Physicians trusted my judgment. I understood how clinical teams think, how hospitals actually operate under pressure, and exactly where the risk lives.

"Then I looked at what ransomware was doing to hospitals — to my hospitals — and I realized the fight had moved."

Patient data held hostage. Medical devices weaponized. Clinical workflows paralyzed at the exact moment lives depend on them. So I brought my triage instincts with me.

Today I specialize in medical device and IoMT security, healthcare GRC, and cybersecurity strategy for organizations where the stakes aren't measured in data — they're measured in lives.

CNA & Registration Clerk

Started on the floor. Learned the system from the ground up.

Lead ER Tech & Epic Super User

Clinical decision-making under pressure. Zero margin for error.

Clinical Coordinator & Preceptor

Managing physicians, nursing staff, and administrative workflows.

MSIT · Healthcare Cybersecurity

Kennesaw State University. Medical device security concentration.

Healthcare Cybersecurity Strategist

IoMT security, GRC, clinical risk — at enterprise scale.

Featured Defender · Black Hat USA 2026

Midnight in the War Room. Semperis. Global stage.

The Clinical Eyes
Advantage

Because in healthcare, "system down"
is a patient safety crisis.

In the ER and OR, there is no "IT ticket" for a life-critical system failure. You need security that understands the velocity of care. We bridge the gap between technical defense and clinical reality — approaching cyber risk like trauma triage: prioritize what harms patients first, stabilize fast, build defenses that hold under extreme pressure.

🏥

Clinical Workflow Intelligence

Understanding how nurses, techs, and physicians actually interact with connected systems — where workarounds create vulnerabilities, and where security controls must bend to care delivery.

Triage-Speed Risk Assessment

Rapid assessment under pressure translates directly. Identify critical risks, prioritize by patient impact, and mobilize the right response — without slowing clinical operations.

🔐

OpSec by Design

Security architecture built with the end user in mind. Controls clinicians actually follow. Policies that survive the pace of real care environments — not just audit checklists.

Core
Delivery Areas

01

IoMT & Clinical AI Risk

Device and system threat modeling in live clinical environments. AI governance for FDA- and audit-facing products.

  • Threat modeling in clinical settings
  • AI governance & FDA-facing documentation
  • Risk assessments respecting bedside workflows
  • Connected device inventory & vulnerability mapping
02

Healthcare GRC & Audit Readiness

HIPAA, NIST, SOC 2 alignment without operational disruption. Policy clinicians actually follow.

  • HIPAA Security Rule compliance
  • NIST CSF & SOC 2 framework alignment
  • Policy & control development
  • Federal healthcare subcontract support
03

Incident Readiness & Clinical Resilience

Ransomware and downtime planning for EHR and device environments. Tabletops that prepare real clinical teams.

  • EHR & device downtime planning
  • Executive & clinical tabletop exercises
  • Ransomware response playbooks
  • Nation-state & hacktivist threat briefings
Engagement Models
Subcontract support · Embedded advisor · Short-term assessments · Fractional clinical-security expertise · Remote-first with on-site availability
Discuss Availability

The work came first.
The recognition followed.

★ Featured Defender
Midnight in the War Room
Semperis · Premiering Black Hat USA · August 5, 2026

The work of defending healthcare systems from ransomware, protecting connected medical devices, and bridging clinical reality with cybersecurity strategy was already underway. Semperis recognized it. Selected as one of 50+ global defenders in their groundbreaking cyberwar documentary — exploring what it truly means to defend critical infrastructure when nation-states attack.

Watch the Trailer →

Featured Alongside

Jen Easterly — Former CISA Director
Gen. (Ret.) David Petraeus — Former CIA Director
Chris Inglis — Former National Cyber Director
Dr. Mary Aiken — Cyberpsychologist, INTERPOL Advisor
Marcus Hutchins — WannaCry Hero
50+ Global CISOs & Cyber Leaders

The Digital First
Responder Framework

"I call it the Digital First Responder Framework — because that's exactly what it is."

Born from emergency triage principles, the DFR Framework maps clinical emergency response directly onto cybersecurity incident response. It's not a metaphor — it's a methodology. The same instincts that stabilize a crashing patient stabilize a compromised network.

Explore the Lab →
Triage

Rapid Threat Assessment

Identify what's critical, what's stable, what's failing. Prioritize by patient — and patient safety — impact first.

Stabilize

Contain & Control

Stop the bleed. Isolate compromised systems without shutting down care delivery.

Treat

Remediate with Precision

Targeted intervention. Evidence-based controls. No unnecessary disruption to clinical operations.

Recover

Restore & Rebuild Resilience

Return to full operation. Build stronger defenses. Document for the next incident.

Digital First
Responder Lab

Where connected medical systems actually fail.

A live IoMT risk education platform built from clinical experience and lived device dependency. 9 real failure scenarios. A live Healthcare Ransomware Intelligence Tracker. Interactive Decision Mode. Professional and Student Mode. No hypotheticals — every scenario is built from reality.

Explore the Lab →
9
IoMT Failure Scenarios
30+
Ransomware Incidents Tracked
0
Hypothetical Scenarios
2
Modes: Pro + Student

Industry &
Community Leadership

🎙️

WiCyS 2026 Virtual Conference Panelist

"Behind the Scenes of Midnight in the War Room" — April 2026, with Krista Arndt, moderated by Heather M. Costa (Mayo Clinic)

🎧

Guest Expert — Halcyon Podcast

Last Month in Security · 2024. Healthcare ransomware threat landscape and clinical impact analysis.

🏅

Lead DEF CON Badge Liaison

2025. Volunteer leadership coordinating scholar badge access across Hacker Summer Camp.

🎓

RSA Conference Scholar

Diana Initiative / BlackGirlsHack · 2025. Selected for professional development recognition.

☁️

AWS re:Invent Grant Recipient

2024. Selected through competitive grant program for cloud and technology leaders.

🔬

DEF CON Biohacking Village Volunteer

Active contributor to medical device and healthcare security research at the annual event.

Community Roles

WiCyS Technical MentorLead DEF CON Badge LiaisonWiSP Lead DEF CON LiaisonGoogle Tech Equity Collective CoachPeople for Change Coalition InstructorHacker Summer Camp ScholarThe Diana InitiativeBlackGirlsHackSemperis HIP Nashville 2026

6 Consecutive Years of Competitive Scholarships — 2020 through 2025

Selected annually by WiCyS, The Diana Initiative, BlackGirlsHack, WISP, AWS, Women in Cloud, and Dream.org. Each scholarship opened a door. Each room changed the trajectory.

WiCyS 2020 + 2021Diana Initiative 2023 + 2025BlackGirlsHack/SquadCon 2023 + 2024 + 2025Black Hat/WISP 2023 + 2025DEF CON/WISP 2023 + 2024 + 2025Hacker Summer Camp 2023 + 2024 + 2025AWS re:Invent Builder Grant 2024Women in Cloud 2024Dream.org 2023CybSafe / Coding Black Females 2022Golden Key Honor Society 2021

Federal
Credentials

EntityChaunda C. Dallas LLC
SAM.gov Status● Active
UEIKV2BR8QU36J7
CAGE Code18D81
WOSB Certification⏳ Pending
Clearance EligibleAvailable Upon Sponsorship

Core NAICS Codes

541512Computer Systems Design
541690Scientific & Technical Consulting
541610Management Consulting
611420Computer Training
541519Other Computer Related Services
621999Other Ambulatory Health Care

Third consecutive year.
Still in it with you.

WiCyS Technical Mentor

Cohort 3 · Now Active · 2026

I meet mentees where they are — the same way I triaged patients. Assess, stabilize, treat, recover. Whether you're mapping your first cert path, navigating a job search, or just need someone who's been in a field that didn't look like them: you're in the right place.

Three session types available: WiCyS Office Hours (Tue & Thu), 1:1 Mentor Sessions (Mon–Thu), and Saturday Study Hall — open drop-in, no booking needed.

Visit Mentoring Page → Book a Session →

If your infrastructure
touches patients — let's talk.

Healthcare cybersecurity expertise grounded in nearly three decades of clinical experience.

Senior healthcare cybersecurity expertise without the overhead of full-time staff. I never left healthcare — I learned to defend it. Remote-first with on-site availability. Engagements structured to integrate cleanly into existing delivery teams and protect clinical operations.

Book a Discovery Call

Ready to discuss subcontract availability, advisory support, or a custom engagement? Reach out directly — remote-first, available immediately.

Send an Email →
OpSec by Design · Remote-first · Available Now
Available for
Subcontract RFQ Speaking Inquiry Advisory Retainer W2 Contract

WiCyS Mentoring Sessions

Cohort 3 · Now Active

Three ways to connect — office hours, 1:1 sessions, or drop into Saturday Study Hall. No gatekeeping. Just show up.

View Full Mentoring Page →