GRC and Risk Operations Professional with **+ years of
experience in high-stakes investigative due diligence, risk management, and regulatory compliance. Expert in Internal Controls, risk underwriting & the application of security frameworks (NIST CSF).
Bachelor of Science in Criminal Justice
NYPD Sergeant / Investigator
New York, NY, 2020 – 2025
Google Cybersecurity Professional
Certificate: Issued by Google
St. Francis College, June 2003
GRC & Governance: NIST Cybersecurity
Framework (CSF), Policy & Standards
Development, Internal Audit.
Internal Controls: Spearheaded high-
priority internal audits to verify adherence
to SOPs and legal mandates, ensuring
100% compliance across depart. units.
Executive Reporting: Produced
comprehensive Risk & Compliance reports
for leadership, translating investigative
findings into actionable business
intelligence.
Data Privacy: Enforced rigid access
control protocols for classified records,
conducting regular IAM reviews to
maintain data integrity.
Risk Underwriting: Evaluated operational
vulnerabilities and procedural gaps;
authored data-driven remediation plans to
mitigate organizational liability.
Risk Management: Third-Party Risk
Management (TPRM), Threat Modeling
(PASTA), Root Cause Analysis (RCA).
Technical Toolkit: SIEM (Splunk),
Python (Data Automation), Linux,
Identity & Access Management (IAM).
EDUCATION & CERTIFICATIONS
PROFESSIONAL SUMMARY
MATTHEW
STERNBERG
TECHNICAL SKILLS
CONTACT EXPERIENCE
*.*********.*****@*****.***
linkedin.com/in/Matthew-Sternberg
Investigative Expertise: Due Diligence,
Technical Writing, Investigative
Interviewing, Stakeholder
Communication.
NYPD Police Officer
New York, NY, 2006 – 2020
Policy Enforcement: Maintained strict
compliance within a highly regulated
environment, adapting to evolving legal
frameworks + operational requirements.
Audit Documentation: Secured evidence
with surgical accuracy for legal
proceedings, ensuring a clear chain of
custody and data integrity.
Investigative Procedures &
Surveillance Techniques: NYPD
Internal Training