Skip to content

Instantly share code, notes, and snippets.

@ResistanceIsUseless
Last active July 8, 2024 16:20
Show Gist options
  • Save ResistanceIsUseless/c24cdb1de91127728f44e5d2960ae1ab to your computer and use it in GitHub Desktop.
Save ResistanceIsUseless/c24cdb1de91127728f44e5d2960ae1ab to your computer and use it in GitHub Desktop.
resume.json
{
"meta": {
"theme": "elegant"
},
"basics": {
"name": "Matthew Griffiths",
"label": "Security Architect | General Hacker | GWAPT | GSEC",
"image": "",
"summary": "",
"website": "https://registry.jsonresume.org/resistanceisuseless",
"email": "matt.griffiths@gmail.com",
"location": {
"city": "Remote",
"countryCode": "USA"
},
"profiles": [ {
"url": "https://github.com/resistanceisuseless",
"username": "resistanceisuseless",
"network": "github"
},
{
"username": "r1nzler",
"url": "https://gitlab.com/r1nzler",
"network": "GitLab"
},
{
"url": "https://steamcommunity.com/id/stAtIcbUnnY/",
"username": "staticbunny",
"network": "steam"
},
{
"url": "https://app.hackthebox.eu/profile/52386",
"username": "0x0nullCat",
"network": "Hack The Box"
}
]
},
"skills": [{
"keywords": [
"Azure","AWS", "Digital Ocean",
"PCI-DSS","SOC2", "NIST", "CVE", "CVSS",
"Network Penetration Testing","Web Penetration Testing", "SAST", "DAST", "IAST", "OAST",
"Anti-Malware","File Integrity Monitoring","Firewall","IPS-IDS","WAF","RBAC",
"REST","CI/CD", "Docker", "Kubernetes", "Packer", "node-red"
],
"name": "General"
},
{
"keywords": ["nmap", "Burp Suite", "InsightVM", "Qualys APP Scan", "OWASP ZAP", "SonarCloud", "Metasploit", "Splunk", "ELK Stack", "Azure Defender", "Trend Micro Deep Security" ],
"name": "Security Tools"
},
{
"keywords": ["Bash","SQL","Python", "Go", "Javascript", "YAML","JSON","Terraform"],
"name": "Languages"
},
{
"keywords": ["Intel/Razer - Priviledge Escalation"],
"name": "Vulnerability Research"
},
{
"keywords": ["Terraform","JavaScript"],
"name": "Currently Refreshing/Learning"
}
],
"work": [{
"summary": "Primary technical resource for all security and compliance objectives and projects.",
"website": "https://transactcampus.com/",
"name": "Transact Campus Inc",
"pinned": true,
"location": "Remote",
"position": "Security Architect",
"startDate": "2022-04-15",
"highlights": [
"Deep involvement in updating SDLC as part of Shift Left intiative.",
"Works closely with CISO and other leadership to ensure compliance with StateRAMP, PCI-DSS 4, SOC 2 Type and new compliance obligations.",
"Building automation that can be utilized to automate compliance and security to reduce impact to teams needing to comply.",
"Assisted with implentation of GRC to manage recurring compliance.",
]
},
{
"summary": "A significant portion of my duties are related to compliance objectives for SOC and PCI. My responsibilities cover a wide range of areas related to securing cloud based environments such as AWS and Azure. My role is a mix of red and blue team tasks.",
"website": "https://transactcampus.com/",
"name": "Transact Campus Inc",
"pinned": true,
"location": "Remote",
"position": "Security Engineer",
"startDate": "2018-08-15",
"endDate": "2022-04-15",
"highlights": [
"Implemented program for monitoring and managing alerts related to security events and user activity to ensure compliant and secure posture of cloud environment.",
"Managed penetration testing and vulnerability assessments as required and provide actionable results and recommendations to further our security in a multi-product cloud environment.",
"Established a security scanning and remediation program that reduced vulnerabilities in our products from 160 to 0 in 18 months.",
"Built automated DAST scanning workflow using GitHub Actions to leverage custom tools leveraged by CI/CD pipelines",
"Acted as key resource to assist auditors with completing audits which led to zero missed controls or findings in areas I managed."
]
},
{
"summary": "As Director of Support for the Cashnet payment platform, I leveraged my multi-platform experience providing support for a mission-critical system that requires high up-time, high reliability, and robust performance. This required hands on experience with multiple technologies relating to real time payment processing, data management and client communication. Additionally, I maintained my objectives with waning resources by focusing on efficiency though creating a flexible environment and working closely with other key department heads.",
"pinned": true,
"website": "https://blackboard.com",
"name": "Blackboard",
"location": "Oakland, CA",
"position": "Director of Support - Cashnet",
"startDate": "2015-09-20",
"endDate": "2018-08-15",
"highlights": [
"Led year long project to migrate 8 years of customer cases from one Salesforce instance to another.",
"Supported clients through multi-phase projects relating to infrastructure and product migrations.",
"Product transition from single tenant to multi-tenant database configuration for 300+ clients.",
"Assisted transitioning product infrastructure to Amazon Web Services from in house hosting.",
"Assisted transitioning product infrastructure to Azure from Amazon Web Services.",
"Created multiple successful processes which continue to provide outstanding client feedback."
]
},
{
"summary": "I worked to resolve general client issues as well as being a primary escalation for key clients such as UCLA, California State University Schools and Stanford University.",
"website": "www.cashnet.com",
"name": "Higher One",
"position": "Senior Client Support Engineer",
"startDate": "2012-05-31",
"endDate": "2015-09-20",
"highlights": [
"Assisted in installing and maintaining software packages which handled real time and batch processing to client ERP Systems (Ellucian's Banner & PowerCampus, PeopleSoft).",
"Understanding of merchant process related to Credit Cards and ACH as well understanding PCI to better serve clients and mentor new team members.",
"Software and technologies include: Monetra, Nagios, Splunk, Credit Card Processing Standards including PCI-DSS, NACHA Standards, Ellucian Banner & PowerCAMPUS, PeopleSoft, Relational Databases, T-SQL, SOAP/WSDL, XML, SalesForce, CiscoUIC, Shibboleth, Epson POS Hardware."
]
},
{
"summary": "My area of responsibility was implementation of new marketing panels and primary API contact point.",
"website": "www.cint.com",
"name": "Cint AB",
"position": "Panel Manager",
"startDate": "2011-06-30",
"endDate": "2012-05-31",
"highlights": [
"Technical resource for client API development.",
"Assisted new clients with onboarding and managing adding client data into system."
]
}
],
"certificates": [
{
"name": "GIAC Security Essentials Certification (GSEC)",
"issuer": "GIAC Certifications",
"endDate": "2023-04-30",
"startDate": "2018-04-30",
"url": "https://www.giac.org/certified-professional/matthew-griffiths/177185"
},
{
"name": "GIAC Web Application Penetration Tester (GWAPT)",
"issuer": "GIAC Certifications",
"endDate": "2026-01-31",
"startDate": "2022-01-31",
"url": "https://www.credly.com/badges/095b2bea-adb5-407b-83ac-15fb4b9f35c9/public_url"
}
]
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment