Matt D.

Matt D. Email and Phone Number

Cyber Security Director of Product Security @ Playlist
Carmel, IN, US
About Matt D.

An influential Cyber Security Director leading Product Security. As director, I'm responsible for ensuring all engineering products are secure and meet established risk acceptance criteria. I collaborate with GRC, legal, privacy, engineering teams, solution architects, and business leaders to ensure investments are secure, compliant and meet corporate risk objectives. I continue to leverage Application Security Architecture and Enterprise Architecture skill sets. Product Security director role is focused on Application Security and Cloud Security to inject secure dpractices and methodologies into DevOps (aka. DevSecOps) and delivery across the Enterprise.I've served in the role of Security Architect and Manager of the Integration Center of Excellence, an Integration DevOps practice, and as the company's Enterprise Integration ArchitectSubstantial experience working with business and IT staff. Managed and led the integration team to implement architecturally sound solutions and processes focused on business outcomes and ROI in the Systems Integration and Software as a Service (SaaS) space. Personally, I greatly enjoy networking with peers by attending and participating in local technical user groups. I have formerly led the local WebSphere User group, have presented at the Java User Group. I am a current member of the local OWASP, AWS meetup, and Infragard chapters.Currently, I enjoy running, fitness, and staying abreast of current technologies (Security, Solidity, Dapps, Blockchain, *tech, etc).

Matt D.'s Current Company Details
Playlist

Playlist

View
Cyber Security Director of Product Security
Carmel, IN, US
Matt D. Work Experience Details
  • Playlist
    Cyber Security Director Of Product Security
    Playlist
    Carmel, In, Us
  • Mindbody
    Director Of Product Security
    Mindbody Sep 2023 - Present
    San Luis Obispo, California, Us
    Partner with the leadership of MindBody + ClassPass Product Development teams to drive security initiatives to improve security posture. Accomplishments and responsibilities include: • Developing an international team of high performing security engineers.• Owning the Secure Software Development Lifecycle (SSDLC) • Oversees security automation testing and vulnerability management (SAST, DAST, SCA, CNAPP)• Initiated Bug Bounty Program • Manage internal penetration testing (pentest) team• Initiated the Security Partnership process to effectively work with product and engineering teams to include non-engineering teams (security, GRC, Privacy, legal, procurement) to improve communications, reduce delivery time, and to determine project risk and security posture.• Initiated the Security Champions Program
  • Travel + Leisure Co.
    Application Security Architect | Product Security Manager
    Travel + Leisure Co. Oct 2019 - Oct 2023
    Orlando, Florida, Us
    Product Security Program Manager and Security Architect. Responsibilities include application security, compliance, and privacy. Collaborates with application architects, IT, and business leaders to ensure investments are secure, compliant and meet corporate risk objectives. • Planned, led, and implemented the security of “DevSecOps” across the enterprise. Responsible for architecting and delivering an automated and scalable Security Product for the Enterprise.• Focus on applications, compliance, and privacy. He collaborates with solution architects, IT, and business leaders to ensure investments are secure, compliant, and meet corporate risk objectives.• Managed SAST, DAST, SCA security automation tools.• Completes Threat Modeling and Risk Analysis (DREAD and Residual Risk) as required. • Deep security knowledge with AWS, Snowflake, Apigee, PayPal’s Braintree, Databricks, and Veracode, Akamai Neosec API Security• Well versed in OAuth, OWASP, API security, secrets and certificate management• Experience working with Data Privacy (CCPA, GDPR), PCI compliance, RSA Archer, Qualys, Kenna, Burp Suite
  • Kar Global
    Security Architect
    Kar Global Mar 2017 - Oct 2019
    Carmel, In, Us
    Application Security Program Manager – Reporting to KAR CISO, enterprise initiative to introduce, influence and mature the Application Security program across KAR. Introduced “Security as a Service”, whereby Information Security provides consumable services to DevOps teams to inject security and compliance into DevOps teams, at scale, across the enterprise, regardless of languages, platforms, or methodologies (aka DevSecOps). • Primary Information Security liaison to product teams across the Enterprise.• Utilize Veracode SaaS platform for SAST, DAST, SCA analysis across 6 business units, 23 business lines, 45+ dev teams, 450+ applications, 350+ developers.• Leverage Veracode platform to automate integration with DevOps tools and processes.• Developed secure coding guides of common attack vectors for development teams to implement, when scans and pen tests uncover them. • Provided tools, education and reporting to drive Application Security remediation and compliance (GreenLight, KnowBe4, Veracode).• Write Selenium scripts for DAST.• Work with IAM and development teams to implement most appropriate Auth and SSO solution for both customer and employee applications (Okta).• Assist with annual penetration tests and GRC activities.Cloud Security Assurance – Leverage tools at scale to determine security of AWS Accounts, provide DevOps teams feedback based on standards. • Implemented automated, monthly, compliance and configuration scans for every AWS Account across KAR. Developed security standards and provided DevOps teams with feedback on identified vulnerabilities and provided information on how to remediate (ScoutSuite, Prowler, Python).• Work with development teams to understand identified vulnerabilities, provide solutions, approve mitigation and track issues to completion.• Work with teams to understand results of vulnerability scans (Rapid7 InsightVM, Nexpose). • Assist to improve the enterprise security ratings for KAR (BitSight).
  • Kar Global
    Enterprise Architect
    Kar Global Jun 2008 - Oct 2019
    Carmel, In, Us
    A team member of the Enterprise Architecture Group. With a focus on Enterprise Integration Architecture and development of strategies and roadmaps.Raised KAR's enterprise security posture by leading the annual security audit, which included a first-time PII assessment. Additionally, initiated security architecture standards and published a compliance dashboard for services across KAR. Initiated and continue to lead the KAR Solution Architecture Forum. Its intended purpose is to communicate knowledge and standards to solution architects across KAR companies. Since 3/2015, I have accepted the additional responsibility of leading and managing the company's Integration Center of Excellence (COE) practice, an enterprise-wide competency center dedicated to delivering integration solutions and advancing the Integration Vision.Additional accomplishments:Initiated and led the implementation of an enterprise workload automation tool. I not only introduced a new technology, but also included processes that resulted in an Enterprise Service Offering which centralized development, support and operations.Lead Enterprise Architect on KAR's Integration middleware platform and application upgrade which impacted nearly every integration across KAR. Role required a balance of technical, tactical, and visionary leadership to successfully complete its implementation.
  • Oneamerica
    Websites Technology Manager
    Oneamerica Jun 2004 - Jun 2008
    Indianapolis, In, Us
    Technical Lead special projects, Team Lead for all customer WebSites. Position requires working with business areas / BA's / Architecture team / developers / among others. Strong leadership skills needed to develop and implement processes.
  • Finishline.Com
    Sr. Java Developer
    Finishline.Com Apr 2003 - Jun 2004
    e-commerce b2c website. Ensure site availablility and coding functionality to support marketing initiatives.
  • Fusion Alliance
    Developer
    Fusion Alliance Feb 2003 - Mar 2003
    Carmel, Indiana, Us
    2 month contract positon working on an online banking application
  • Indianapolis Life / Amerus
    Developer
    Indianapolis Life / Amerus Dec 1997 - Jan 2003

Matt D. Skills

Java Enterprise Architecture Integration Web Applications Sdlc Enterprise Software Soa Jsp Websphere Security Information Security Security Management Information Security Management Application Security E Commerce Process Improvement It Strategy Leadership Agile Methodologies Software Development Software Development Life Cycle Visio Security Systems Integration Software Project Management Vendor Management Identity And Access Management Servlets Jsf Service Oriented Architecture Technology Integration Software Integration Business Process Improvement Data Integration Api Development Web Application Security Security Architecture Design Data Security Security Policy Cyber Security Security Training Cloud Computing Web Application Security Assessment Information Security Governance Java Security Security Risk Security Research Mobile Security Application Security Architecture Application Security Assessments Devsecops Requirements Analysis Business Analysis

Matt D. Education Details

  • Indiana University Indianapolis
    Indiana University Indianapolis
    Computer Programming Technology (Cpt)
  • Indiana University - Kelley School Of Business
    Indiana University - Kelley School Of Business
    Economics

Frequently Asked Questions about Matt D.

What company does Matt D. work for?

Matt D. works for Playlist

What is Matt D.'s role at the current company?

Matt D.'s current role is Cyber Security Director of Product Security.

What is Matt D.'s email address?

Matt D.'s email address is ma****@****esa.com

What is Matt D.'s direct phone number?

Matt D.'s direct phone number is +131794*****

What schools did Matt D. attend?

Matt D. attended Indiana University Indianapolis, Indiana University - Kelley School Of Business.

What are some of Matt D.'s interests?

Matt D. has interest in Dogs, Children, Electronics.

What skills is Matt D. known for?

Matt D. has skills like Java, Enterprise Architecture, Integration, Web Applications, Sdlc, Enterprise Software, Soa, Jsp, Websphere, Security, Information Security, Security Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.