Skip to content
View martingalloar's full-sized avatar
🇦🇷
🇦🇷

Organizations

@TandilSec

Block or report martingalloar

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
martingalloar/README.md

🙌 I'm Martin Gallo! Hacker turned into cybersecurity professional, focused on product management, identity security, offensive security and security research.

Bio

I am a hacker turned into cybersecurity professional with a career spanning offensive security, security research, product management, and identity security.

I began my career conducting penetration tests and advanced security assessments, including roles at a Big Four firm and Core Security. Alongside my consulting work, I contributed security research, developed open-source tools, and presented my findings at industry conferences. This technical foundation continues to shape how I approach security, products, and leadership: understanding how systems break in the real world is essential to making better decisions.

Over time, I expanded into product and leadership roles within cybersecurity startups. I have led cross-functional teams, influenced product and security architecture decisions, and helped translate complex technical challenges into products and strategies aligned with customer and business needs.

Identity security, authentication, and IAM have become important areas of my work. I have represented organizations in the OpenID Foundation and the FIDO Alliance, participating in industry efforts around modern identity and authentication standards.

Today, I advise organizations on cybersecurity, identity, and product strategy. I also remain actively involved in the security community through research, open-source contributions, conference speaking, and community initiatives. I co-founded TandilSec and have collaborated with organizations and events including OWASP and EkoParty as part of the technical comittee.

Publications

I keep a personal website where I post my research and writing on offensive security, identity security and IAM — authentication, passkeys, phishing-resistant MFA — and SAP security: posts, conference talks, advisories, and tools.

Pinned Loading

  1. OWASP/pysap OWASP/pysap Public

    pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS, RFC and HDB protocols.

    Python 257 72

  2. OWASP/HoneySAP OWASP/HoneySAP Public

    HoneySAP: SAP Low-interaction research honeypot

    Python 50 26