Skip to content
View Justicegaines03's full-sized avatar

Highlights

  • Pro

Block or report Justicegaines03

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Justicegaines03/README.md

Hi, I'm Justice Gaines πŸ‘‹

πŸ“ Eugene, OR | πŸ›‘οΈ Cybersecurity Compliance Coordinator @ BizCare | πŸŽ“ President, UO Cybersecurity Club

Cybersecurity TypeScript Python JavaScript GRC

I build security systems at the seam where governance meets engineering β€” compliance programs that run on automation, SOC workflows that produce decisions instead of alerts, and partner-facing enablement that makes complex security products land with the people who have to sell and deploy them.

Graduating June 2027 β€” seeking new-grad solutions engineering and partner-facing security roles.


What I'm Doing Now

  • Cybersecurity Compliance Coordinator @ BizCare, Inc. β€” compliance ownership across a 22-client book: control automation over 100+ endpoints, attack-surface reduction, and a third-party risk management program run on Secureframe.
  • President β€” University of Oregon Cybersecurity Club. Running a three-CTF series (one per term, scaling regional β†’ statewide β†’ national) and the club site rebrand.
  • Co-lead β€” IRUN (Incident Response University Network): a community incident response help center at UO. A personal-SOC model for individuals rather than enterprises β€” enterprises get SOC teams, individuals get nothing to call when something goes wrong.

How I Operate

I run a continuous security innovation pipeline: friction observed in a real SOC, clinic, or partner channel becomes deployable tooling.

Signal β†’ Hypothesis β†’ Build β†’ Field Test β†’ Operational Lift

  • Security Engineering: building tools that turn security concepts into working systems
  • SOC Workflows: incident triage, enrichment, and operational decision support
  • Risk Quantification: translating technical findings into actionable risk signals
  • GRC at Scale: CIS IG1, NIST AI RMF, FTC Safeguards, and TPRM as automated programs, not documents

Featured Projects

Quantitative risk scoring built for the UO Teaching SOC on TheHive + MISP + Cortex, with dual models:

  • B2B: Annualized Loss Expectancy (ALE)
  • B2C: Recovery-difficulty scoring for identity theft scenarios

πŸ”Ή StatusBridge

Makes university service status pages readable. They're exhaustive about outages and nearly useless to the people affected by them β€” StatusBridge restructures that information for the reader.

Security-focused OpenClaw variant that reduces the top vulnerability classes and aligns AI orchestration with NIST AI RMF goals.

πŸ”Ή safe-scan

Pre-click QR safety validation β€” threat-intelligence and URL checks that run before the code does.

πŸ”Ή AgentHive

AI orchestrator that won "Best Implementation of Google Gemini API" at a 2025 MLH hackathon.

Automation stack for realtor workflows β€” Next.js app + n8n orchestration.

Open-Source Contribution Work (Forks + Extensions)

  • purple-mcp β€” MCP access to SentinelOne Purple AI and security services: alerts, vulnerabilities, misconfigurations, inventory
  • BackdoorsAndBreaches_Personal_IR_Hotline β€” IR tabletop extensions for university SOC teams supporting individual incident response

Background

Partner Solutions Engineer Intern β€” SentinelOne, Inc. Β· Jun 2026 – Aug 2026 Architected the Partner Success Kit, a unified partner-enablement standard replacing the siloed approaches separate partner-facing teams had each built during the company's growth. Ran discovery with 10+ stakeholders across two MSSP partners, which restructured the work into a partner handbook replacement for onboarding plus a recurring Partner Health Check that turns existing-partner feedback into a product-development input. Presented to the Solutions Engineering organization, Talent Acquisition, and the full intern cohort.

SOC and Compliance Analyst β€” UO Teaching SOC (T-SOC) and Risk Clinic Β· Oct 2025 – Jun 2026 Built custom Grafana dashboards on the SentinelOne Data Lake and XDR APIs for SOC and end-customer telemetry visibility. Monitored real-time telemetry across university infrastructure and contributed to incident response and threat-hunting SOPs. On the Risk Clinic side: translated federal cybersecurity grant requirements (SLCGP) into plain language for municipal water districts alongside the Oregon branch of CISA, ran client webinars, and developed a financial-risk assessment framework for security budgeting.

IT Help Desk Technician β€” BizCare, Inc. Β· Nov 2021 – Dec 2024

Education & Credentials

  • B.S. Cybersecurity β€” University of Oregon Β· Expected June 2027 Coursework: Applied Cryptography, Computer/Network Security, Secure Software Development
  • Galactic Advisors Certified Compliance Consultant (GC3)
  • Platform depth: Singularity XDR, Singularity Data Lake, Secureframe, Grafana, Splunk, TheHive, MISP, Cortex, Burp Suite, OpenVAS, Docker

Let's Connect

If you're hiring for a technical cybersecurity role, I'd love to connect.

Pinned Loading

  1. AgentHive AgentHive Public

    Forked from MalcolmMc23/QuackHacks25

    TypeScript 1

  2. SOC-Risk-Engine SOC-Risk-Engine Public

    Quantifies cybersecurity risk for businesses and consumers from Risk Assessment data

    Python 1