Savers | Value Village
VP - Information Security
2005 to 2006
Senior Security Engineer -> Security Engineer
2000 to 2001
July 2017 to April 2019
VP - Security Engineering
November 2016 to June 2017
Global Payments Security to Attack Research to Vulnerability Management
March 2012 to April 2016
Puget Sound Energy
IT Security Analyst
June 2009 to April 2010
Evergreen Team Concepts
Senior Manager Products and Services
April 2007 to December 2008
April 2010 to March 2012
What company does Michael Ridpath work for?
Michael Ridpath works for Savers | Value Village
What is Michael Ridpath's role at Savers | Value Village?
Michael Ridpath is Senior Security
What industry does Michael Ridpath work in?
Michael Ridpath works in the Utilities industry.
Senior Security @ Savers | Value Village VP - Information Security @ VeriClouds Sales/Branch Manager @ Command Staffing I sold things. From 2005 to 2006 (1 year) Senior Security Engineer -> Security Engineer @ iAsiaWorks I secured things. From 2000 to 2001 (1 year) Gov. Security @ Alaska Airlines I strategized things.Built overall strategy, implemented, delivered and administered the application security, penetration testing and vulnerability management programs.- Acted as the subject matter expert in the area of application security, penetration testing and VM. - Worked closely with all of AAG developers on security remediation findings and ensuring secure coding best practices are being followed. Provided bi-weeky training to developers on security tool usage and automation into development lifecycles for effective scanning/remediation of the OWASP Top 10.- Configured and managed a variety of commercial application security and penetration testing tools.- Responsible for all PCI related functions within application security, VM and penetration testing space. From July 2017 to April 2019 (1 year 10 months) VP - Security Engineering @ VeriClouds I imagineered things.Senior staff where I wore many hats for an incredible product and service that helps remove the password reuse problem throughout the entire organizations including customers.- Responsible for developing and build out of Penetration Testing and Social Engineering professional service business. Managing organizations P&L. Emphasis on Cloud penetration testing and leaked credential password penetration tests. Developed and prepared all tooling for penetration testing and red team usage. Performed a variety of marketing, sales for services and responses to request for proposals (RFPs) for vulnerability assessments, penetration testing and audit services.- Designed organizations infrastructure with holistic security. - Darkweb expert. Intelligence gathering and ruse creation to identify leaked credentials on dark web and market places. Created pipeline to notify potential customers of leaks and drive business.- Identified revenue generating opportunities, rapid prototyped a number of ideas and developed products and services sold on Alibaba. As well as, initial recommendation of creating a hardware appliance for on-premise solution.- Internal penetration testing of corporate infrastructure and cryptography for hardware security module (HSM) for on-premise solution. - Wrote a number of articles and spoke at a variety of conferences from Cloud Security to Identity Access Management (IAM) on defeating two factor authentication methods, leaked credentials, darkweb, Sentry MBA use for credential stuffing and cracking accounts on popular websites. From November 2016 to June 2017 (8 months) BellevueGlobal Payments Security to Attack Research to Vulnerability Management @ Amazon I scaled things.Managed one of the world’s biggest vulnerability management programs. Performed global patching campaigns. - Trained security engineers- Managed development of an assortment of security tools- Performed penetration testing- Provided company-wide PCI compliance From March 2012 to April 2016 (4 years 2 months) IT Security Analyst @ Puget Sound Energy I monitored things.Developed Security Operation Center (SOC) and ensured utility company compliance [FERC, NERC, CIP compliance]. - Configured firewalls, routers and switches- Access administration (mainframe and active directory)- Maintained Security Information and Event Management (SIEM) system- Trained offensive security and energy sector specific hacking techniques to InfoSec team including incident management From June 2009 to April 2010 (11 months) Senior Manager Products and Services @ Evergreen Team Concepts I created things.Launched several companies that received angel investor seed capital. I created the products, services, business, marketing plan for child companies. Participated in the development of training material that was used to train fortune 500 companies throughout the United States. Designed, developed, marketed and managed dozens of web sites, including sites that were receiving millions of monthly hits.- Received Startup of the Year Finalist- Created products and services that generated over 100k/mo.- Supported training for organizations in Lean 5S and Six Sigma- Direct supervisor to IT Manager- Supported security of multiple web servers and computer lab (30+ computers) From April 2007 to December 2008 (1 year 9 months) Security Consultant @ IOActive, Inc. I broke things.Performed and led penetration testing and red teams. Maintained a 100% successful track record of being able to penetrate the security of any system using a combination of technical exploits and social engineering.- Physical attack penetration test (conducting and building physical security assessment programs for very complex organizations. Professional experience bypassing locks, alarms and other physical security controls)- Web and application penetration tests [0day bug hunting and exploitation, antivirus avoidance, PE code injection, obscure web application auditing, scanners, software exploitation, spoofing, sniffers, tunneling, wireless attacks]- Found multiple 0day vulnerabilities for clients- Magnificently ran Social Engineering Cold calling engagements- Ensured PCI DSS approved vendor Became sought after industry speaker [Blackhat 11, Bsides Portland, BayThreat, IOAsis Blackhat, Toorcon including the famed Hardware hacking booth Blackhat 11 and 10]. Ran multiple Seattle hacking and national information security groups. From April 2010 to March 2012 (2 years)
Introversion (I), Intuition (N), Thinking (T), Judging (J)
1 year(s), 8 month(s)
There's 89% chance that Michael Ridpath is seeking for new opportunities
Enjoy unlimited access and discover candidates outside of LinkedIn
Trusted by 400K users from
76% of Fortune 500 companies
The most accurate data ever
Hire Anyone, Anywhere
with ContactOut today
Making remote or global hires? We can help.
No credit card required