Summary
Overview
Work History
Education
Skills
Certification
Timeline
Military Service
Generic

Matthew Yates

Frederick,United States

Summary

Accomplished Cybersecurity Professional with over a decade of expertise in Cyber Risk Governance and Information Security Leadership across commercial and defense sectors. Proven track record advising C-suite leaders on enterprise risk frameworks and aligning cybersecurity strategies with business objectives. CISSP-certified with Top Secret Clearance and dual master's degrees in Homeland Security (Cybersecurity) and Business Administration.

Overview

14
14
years of professional experience
1
1
Certification

Work History

Director of Operations

Tailored Solutions and Consulting
12.2020 - Current
  • Enhanced cybersecurity risk advisory for executive leadership across enterprise environments.
  • Directed governance frameworks aligned with NIST CSF, ISO/IEC 27001, and CIS Controls.
  • Briefed stakeholders on risk posture, compliance gaps, and emerging cybersecurity threats.
  • Managed enterprise-wide assessments for vulnerability management and data protection initiatives.
  • Influenced cybersecurity policy development in collaboration with compliance and legal teams.
  • Monitored geopolitical and AI threats, advising clients on strategic mitigation initiatives.

Senior Information Security Risk Analyst

Tailored Solutions and Consulting
09.2019 - 12.2020
  • Executed third-party risk assessments, enhancing compliance for commercial clients.
  • Developed executive reports and risk treatment plans to align cybersecurity strategies.
  • Advised on information security programs, focusing on risk management and monitoring.
  • Crafted proposals for federal cybersecurity contracts, supporting secure architecture initiatives.
  • Conducted internal audits to ensure adherence to cybersecurity compliance standards.

Continuous Monitoring SME

Kingfisher Systems, Inc.
05.2018 - 09.2019
  • Enhanced cybersecurity monitoring for over 25,000 IT assets across networks.
  • Generated compliance metrics and dashboards for DoD CIO reporting and management.
  • Performed advanced threat detection analysis using ACAS, HBSS, and CMRS platforms.
  • Collaborated with ISSMs to enforce accountability and coordinate enterprise remediation efforts.

Senior Systems Engineer & Field Technician

Leidos
12.2016 - 03.2018
  • Delivered IT security and operational support to Navy and Marine Corps squadrons across classified and unclassified environments.
  • Administered SAP-level systems, performed risk analysis, and enforced vulnerability patching standards

Non-Commissioned Officer (NCO) in Charge of Network Support Division

United States Marine Corps
01.2012 - 12.2016
  • Enhanced network support for MAG-39 and deployed aviation units as NCOIC.
  • Directed cybersecurity operations, securing communications for 400+ users across networks.
  • Managed system upgrades and IT team performance under challenging conditions.
  • Oversaw help desk operations, ensuring prompt resolution of technical issues.

Education

Master of Business Administration (MBA) -

American Military University
12.2021

Master's degree - Homeland Security: Information Security and Forensics

Pennsylvania State University
12.2015

Bachelor of Arts - History

Pennsylvania State University
12.2011

Skills

    Cybersecurity Leadership & Strategy

  • Enterprise Cybersecurity Strategy & Roadmapping
  • Federated / Multi-Entity Security Governance
  • Cybersecurity Maturity Models & Posture Management
  • Executive & Board-Level Risk Reporting
  • Security Program Ownership & Oversight
  • Risk, Governance & Compliance

  • Cyber Risk Management & Risk Quantification
  • Governance, Risk & Compliance (GRC) Programs
  • NIST CSF, ISO/IEC 27001, CIS Controls, RMF
  • Secure Policy, Standards & Control Framework Development
  • Regulatory & Audit Readiness (CMMC, sector-specific compliance)
  • Microsoft & Cloud Security Alignment

  • Microsoft Security Ecosystem Alignment (Azure, M365, Entra ID, Defender)
  • Cloud Security & Zero Trust Architecture
  • Identity, Access & Privileged Access Governance
  • Secure Platform & Infrastructure Design Reviews
  • Operational Security Oversight

  • Vulnerability Management & Continuous Monitoring Programs
  • Incident Preparedness, Response & Cyber Resilience
  • Threat Modeling & Security Architecture Reviews
  • Enterprise Endpoint, Network & Cloud Risk Oversight
  • Third-Party & Enterprise Risk

  • Third-Party Risk Management (TPRM)
  • Vendor Risk, Contract & Procurement Oversight
  • Supply Chain & Emerging Technology Risk (AI, geopolitical)
  • Reporting, Analytics & Enablement

  • Executive Dashboards, Metrics & Telemetry
  • Risk Analytics & Decision Support (Power BI, Tableau, Excel)
  • Security Awareness & Organizational Enablement
  • Cross-Functional Stakeholder Engagement
  • Leadership & Operations

  • Senior Leadership & Executive Advisory
  • Enterprise IT & Security Program Oversight
  • Budget, Vendor & Resource Management
  • Continuous Improvement & Process Optimization
  • Clearance & Credentials

  • CISSP
  • Active Top Secret Clearance

Certification

  • CISSP June 2018 to June 2027
  • TS/SCI
  • CompTIA Security+
  • Top Secret Clearance

Timeline

Director of Operations

Tailored Solutions and Consulting
12.2020 - Current

Senior Information Security Risk Analyst

Tailored Solutions and Consulting
09.2019 - 12.2020

Continuous Monitoring SME

Kingfisher Systems, Inc.
05.2018 - 09.2019

Senior Systems Engineer & Field Technician

Leidos
12.2016 - 03.2018

Non-Commissioned Officer (NCO) in Charge of Network Support Division

United States Marine Corps
01.2012 - 12.2016

Bachelor of Arts - History

Pennsylvania State University

Master of Business Administration (MBA) -

American Military University

Master's degree - Homeland Security: Information Security and Forensics

Pennsylvania State University

Military Service

  • Branch: United States Marine Corps
  • Service Country: United States
  • Rank: Sergeant
  • January 2012 to December 2016
  • MOS 6694 - Aviation Logistics Information Management Support Specialist
  • Deployment: Operation Enduring Freedom (OEF)
  • Served honorably in the United States Marine Corps, achieving the rank of Sergeant (E-5) and specializing in MOS 6694, Aviation Logistics Information Management Support. Deployed in support of Operation Enduring Freedom, where I led and trained junior Marines to achieve operational proficiency in aviation logistics systems, data management, and readiness reporting.
  • Responsibilities included overseeing the configuration, maintenance, and security of aviation logistics software systems (such as NALCOMIS and OOMA), ensuring accurate supply and maintenance records, and supporting mission readiness for aviation assets. Demonstrated strong leadership by mentoring and developing Marines, enhancing both technical skills and mission effectiveness within the unit.
  • Commendations: Navy and Marine Corps Achievement Medal (2 awards) – Recognized for superior performance and dedication to duty during active service.
Matthew Yates