Profile
Sandy J. Radesky serves as the Associate Director for Vulnerability Management at the Cybersecurity and Infrastructure Security Agency (CISA). In this role, she leads CISA’s Vulnerability Management mission most known for its sponsorship of globally valuable cybersecurity efforts such as the Common Vulnerabilities and Exposures (CVE) program and the Known Exploited Vulnerabilities (KEV) catalog, CISA’s central high-confidence tracker of vulnerabilities known to be exploited by adversaries. She also leads CISA teams who execute the nation’s most illuminating penetration, risk, red team, and operational technology assessments. Her expert experience has enabled recent optimizations to scale attack surface management and assessment services to tens of thousands of critical infrastructure stakeholders. Her strategic vision and outcome-focused leadership has enabled cyber awareness and risk reduction, proactively strengthening the nation’s critical infrastructure.
Prior to this, Sandy served as the Deputy Command Information Officer (CIO) for US Fleet Cyber Command and US TENTH Fleet and the Deputy Director of Operations at JFHQ-DODIN. She managed the cyber operations portfolio to enable full spectrum Cyberspace Operations. Her efforts improved, integrated, and directly supported joint warfighters, national-level leaders, and other mission and coalition partners across global cyberspace operations.
Sandy is a veteran of the United States Air Force, in total, dedicating over 27 years of service to the Nation.
Sessions