+
Skip to content
View bromiley's full-sized avatar
🎯
Focusing
🎯
Focusing

Highlights

  • Pro

Block or report bromiley

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
bromiley/README.md

Matt Bromiley

SecOps R&D @ Prophet Security | SANS Certified Instructor | Digital Forensics & IR Expert

👋 About Me

I am a cybersecurity professional specializing in Security Operations (SecOps) and Incident Response and Management, with a rich background in incident response/management, digital forensics, threat hunting, and detection engineering. I am currently working on SecOps R&D at Prophet Security, teaching Incident Management at SANS, and delivering talks and workshops at conferences around the globe.

🔗 Connect With Me

LinkedIn BlueSky SANS

🔬 Research Focus

  • AI in Security: Exploring the intersection of artificial intelligence with SecOps/Incident Response/Digital Forensics.
  • Incident Management: How to effectively handle, coordinate, and manage enterprise-level incidents.
  • Incident Response: Advanced host- and network-based digital forensics.
  • Threat Detection: Innovative approaches to threat hunting and detection engineering.
  • Security Operations: Developing cutting-edge methodologies and best practices for SecOps workflows.

🚀 Projects

  • Critical AI Security Guidelines
    • SANS Community Project
    • Repository: GitHub
    • Focus:
      • Secure AI deployments with multi-layered security approach
      • Protection against model poisoning, prompt injection, and adversarial attacks
      • Governance frameworks that adapt to AI advancements
      • Balancing security and scalability in AI model hosting

🎓 Teaching & Education

Current Course(s)

Upcoming LDR553 Teaches

Past Classes

🎤 Upcoming Conferences & Events

  • FIRST Regional Symposium Latin America & Caribbean 2025

    • FIRST (Forum of Incident Response and Security Teams)
    • Date: October 8, 2025
    • Location: Latin America & Caribbean
    • Focus:
      • AI-Powered Incident Response strategies and practical implementations
      • Practical security monitoring and threat detection with AI
      • Cyber resilience coordination, collaboration, and communication frameworks
  • Fall Cyber Solutions Fest 2025: AI Track

    • SANS Solutions Forum
    • Date: November 6, 2025, 8:00 AM - 4:00 PM EST
    • Focus:
      • Emerging trends and technologies shaping the AI landscape
      • Real-world applications and case studies from diverse sectors
      • Best practices for integrating AI into existing systems
      • Ethical considerations and responsible AI development

✍️ Publications & Research

Upcoming Publications

  • Full Packet Capture as a Strategic and Regulatory Imperative

    • SANS Webcast
    • Date: November 13, 2025, 1:00-2:00 PM EST
    • Focus:
      • Regulatory mandates driving FPC requirements (OMB M-21-31, NIS2, DORA, GDPR, HIPAA, PCI-DSS)
      • Strategic implementation of Full Packet Capture for compliance and Zero Trust initiatives
      • Technical capabilities for forensic analysis and real-time visibility
      • Building business case for FPC implementation at scale
  • Pay to Play: Surviving and Winning Ransomware Negotiations in 2025

    • SANS@Night Presentation
    • Date: December 16, 2025, 7:15-8:15 PM EST
    • Focus:
      • Real-world ransomware negotiation strategies and decision-making frameworks
      • Analysis of 2024 ransom payment trends (25% payment rate, 46% recovery rate)
      • Case study: Coinbase $20M ransom demand flipped into $20M bounty for attacker arrests
      • Technical protocols for verifying attacker claims and maintaining leverage
      • Professionalized RaaS platforms and triple extortion tactics

Previous Publications

📊 GitHub Activity

GitHub Stats


💡 Last Updated: 2025-08-17 20:15:00 UTC

Popular repositories Loading

  1. olaf olaf Public

    Office365 Log Analysis Framework

    PowerShell 81 14

  2. tools tools Public

    Various tools and scripts

    Python 43 10

  3. pollen pollen Public

    pollen - A command-line tool for interacting with TheHive

    Python 35 3

  4. wiki wiki Public

    Forked from forensicswiki/wiki

    Forensics Wiki, a wiki devoted to information about digital forensics (also known as computer forensics)

  5. lc-detections lc-detections Public

    A collection of LimaCharlie detections, curated from MITRE ATT&CK TTPs, CVEs, and other research.

  6. lc-detectionforge lc-detectionforge Public

    Forked from Digital-Defense-Institute/lc-detectionforge

    A specialized environment for crafting, validating, and testing LimaCharlie detection rules

    Vue

点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载