Matthew Grygar

Prague · Hybrid · Open to conversations

MatthewGrygar

Podpis
System Engineer

"The best way to predict the future is to create it."

— Peter Drucker

5YRS
3YRS
RISK

Years of experience

Senior level

Next chapter

Prague · Hybrid · Open to conversations

MatthewGrygar

System Engineer

Matthew Grygar
5YRS
Years of experience
3YRS
Senior level
RISK
Next chapter
ContactDownload CV

About

Stability under pressure

I help organisations stabilise critical systems when incidents escalate and time pressure rises — and then set up processes so it doesn't happen again.

My experience leads from direct work in production operations and coordination of Major/P1 incidents, through identification of operational risks, to operation and management of Identity & Access Management solutions in regulated sectors.

I bring a combination of technical depth and operational overview — I understand processes, systems and what breaks at 3am. Long-term I am heading towards IT Risk Management and operational risk management.

Currently: System Engineer – Identity & Access Management (Trask, 2025–present)

Toolbox

IAM / IdMIncident & Major Incident MgmtSLA & Service GovernanceRisk Frameworks (ISO 27001 / 27005)Linux / WindowsSQLJIRAMonitoring & Log Analysis (Grafana)ITIL principyPowerShell

Long-term direction

Going forward, I want to focus on IT Risk Management — identifying and managing operational risks, IT service governance and building processes that protect organisations from outages even in demanding situations. It makes sense to me to work at the intersection of technology, risk and business — where every technical decision has a direct impact on operational stability and security.

About

What I bring

01

Incident resolution under pressure

I have led Major incidents with full production impact — coordinating teams of specialists across organisations, managing escalation towards management and maintaining oversight of recovery priorities. The goal was always to bring the system back to a stable state quickly and without unnecessary side effects.

02

Identifying and managing operational risks

From practice I know where weaknesses most often appear in IT operations — poorly configured access roles, unclear escalation paths, insufficient segmentation or missing capacity. I try to name these risks before they cause a problem and set up processes so they don't recur.

03

Decision-making in critical operations

I have worked on systems with high availability requirements — from a government eGovernment system to infrastructure of hundreds of devices in operation. In such environments you need to decide quickly, systematically and with awareness of the impact of every step on service stability.

04

Communication across technology and business

I have experience communicating with both technical teams and management and customers. I can translate technical problems into a business context — clearly, factually and without unnecessary distortion.

05

Process as the foundation of stability

I don't believe in one-off heroic fixes. Long-term system stability rests on well-designed processes, clearly defined responsibilities and the ability to learn from every incident — that is the foundation on which IT Risk Management works.

Experience

Experience from live operations — where failure is not an option

System Engineer – Identity & Access Management

Trask · Jan 2025 – present

Operation and management of IAM solutions for enterprise clients in regulated sectors (finance, energy).

Installation and configuration of IBM IAM stack: ITIM, ISVG, DB2, LDAP, WebSphere (WAS) on Windows Server.

Upgrade of existing IAM environments, configuration of instances and integration links.

Access governance: configuration of roles, access permissions and notifications (password changes, role assignments).

Technical analysis in ISVG (Java component integrator) — error analysis, use-case scenario simulation.

Collaboration with development team on GUI modifications; support for IAM-related incidents.

Creation of reports from LDAP, testing of access scenarios, co-authoring implementation specifications.

IAMIBM ITIMISVGLDAPDB2WebSphere (WAS)Access ManagementWindows ServerLinux
🛡️

Work on projects within environments of regulated financial institutions. Emphasis was placed on process accuracy, audit trail of every change and zero tolerance for security deviations.

Key Impacts

Complete installation and commissioning of IBM IAM stack in production environment

Successful upgrades of complex IAM environments for enterprise clients

Support for secure identity and access management in regulated sectors

Experience

Experience from live operations — where failure is not an option

System Engineer – Identity & Access Management

Trask · Jan 2025 – present

Installation and configuration of IBM IAM stack: ITIM, ISVG, DB2, LDAP, WebSphere (WAS) on Windows Server.

Upgrade of existing IAM environments, configuration of instances and integration links.

Access governance: configuration of roles, access permissions and notifications (password changes, role assignments).

Technical analysis in ISVG (Java component integrator) — error analysis, use-case scenario simulation.

Collaboration with development team on GUI modifications; support for IAM-related incidents.

Creation of reports from LDAP, testing of access scenarios, co-authoring implementation specifications.

🛡️

Work on projects within environments of regulated financial institutions. Emphasis was placed on process accuracy, audit trail of every change and zero tolerance for security deviations.

Key Impacts

Complete installation and commissioning of IBM IAM stack in production environment

Successful upgrades of complex IAM environments for enterprise clients

Support for secure identity and access management in regulated sectors

IAMIBM ITIMISVGLDAPDB2WebSphere (WAS)Access ManagementWindows ServerLinux

Projects

Selected work & personal initiatives

JIRASUPPORTOPERATIONSGOVERNANCE

JIRA Service Workflow Design

Complete design and setup of a JIRA project for operational support — severity model, SLA parameters, workflow automation, role and user group configuration, including a clear request interface for end users.

Measurable operations management from submission to resolution.

SUPPORTRISKOPERATIONSGOVERNANCE

SLA & Incident Management Model

Internal design of an operational support model including L1/L2/L3 responsibility division, escalation paths, SLA parameters and severity levels — as the basis for operational governance and service availability risk management.

Clear escalations, defined responsibilities, measurable governance.

RISKSECURITYFRAMEWORKSSELF-STUDY

Risk Frameworks – ISO 27001 & ISO 27005

Independent study of ISO 27001 and ISO 27005 as reference frameworks for IT risk management and information security. I actively applied findings when identifying operational risks and designing control mechanisms in production environments.

Practical knowledge of ISO 27001 & ISO 27005 — certification planned.

RISKOPERATIONSINCIDENTSPROCESS

Incident Post-Mortem Framework

Design of a structure for post-incident analysis — root causes, escalation flow, impacts, lessons learned and preventive measures. Based on experience coordinating Major/P1 incidents and principles of continuous IT operations improvement.

Systematic approach to learning from incidents and preventing recurrence.

LEADERSHIPCOMMUNITYEVENTSPERSONAL

Grail Series Tournament Circuit

Personal initiative — complete organisation of a Magic: The Gathering tournament series from concept to execution. Includes event planning and production, media communication and promo, partner and sponsor negotiations, community building and long-term development of the competitive scene.

Community of 130+ unique players, 6 tournaments — all managed independently.

DATAVIBE CODINGPROJECTPERSONAL

MtG DC ELO Ranking System

Personal project — complete design and development of a web application for the Czech Duel Commander community. Includes vibe coding the entire frontend, data architecture design, data layer integration and ELO algorithm implementation for long-term performance tracking of 430+ active players.

Transparent ranking for the Czech DC community — from design to production.

Skills

Skills that keep systems and teams running under pressure

My experience is built on operating systems in real environments — incident management, identifying operational risks and building processes that protect organisations from outages. I combine technical background with risk thinking and operational governance.

Risk & Governance

Operational Risk AwarenessMajor Incident CoordinationSLA & Service GovernanceChange ManagementOperational ResilienceITILStakeholder Communication

Risk Frameworks

ISO 27001ISO 27005RBAC / Access Governance

Core strengths

I identify operational risks before they cause a problem

I manage incidents and escalations under pressure in a structured way

I can translate technical problems into a business context

I emphasise process discipline and clearly defined responsibilities

In critical situations I remain calm and decisive

I coordinate resolution across teams and organisations

Engineering & Operations

Identity & Access Management (IBM ITIM / ISVG)Incident ManagementLog AnalysisMonitoring (Grafana)SQLPowerShellLinux (Red Hat)Windows Server

Tools & Platforms

JIRA (workflow, SLA, automatizace, administrace)IBM DB2LDAPWebSphere (WAS)ConfluenceServiceNow

Aiming For

IT Risk Manager

Operational Resilience / Incident Governance

IT Security & Compliance

Contact

Let's manage risks before they become incidents.

If you're looking for someone with hands-on experience in incident management and IT risk — whether for an IT Risk Manager role or as an experienced member of an operations team — feel free to reach out.

Your message will be saved securely.