MM.DEV

Matt Matheus

AI Engineer & Healthcare Platform Architect

I build dependable software and infrastructure for environments where downtime, audit gaps, and vague ownership get expensive fast.

20+ years United States Principal AI Software Engineer

Get to know me

About Me

I build and lead systems where reliability, auditability, and operational clarity matter. My background spans clinical healthcare infrastructure, managed services architecture, SRE automation, cloud and datacenter modernization, security remediation, disaster recovery, and now agentic AI engineering. I am most useful where software, infrastructure, compliance, and high-pressure operations intersect: translating messy technical reality into systems that teams can trust, operate, and improve.


Role

Principal AI Software Engineer

Location

United States

Experience

20+ Years of Experience

Education

US Army technical training, Fort Gordon · MCSE (NT 4.0)

Volunteer

Worship and technical ministry leadership

Career timeline

Professional Experience

A role-by-role profile across healthcare technology, managed services, enterprise infrastructure, regulated operations, and AI-assisted software engineering.

July 2022 - Present

Health Catalyst

Remote / Healthcare Data & Analytics

Principal AI Software Engineer, Agentic Engineering Pod May 2026 - Present
Principal Software Engineer (SRE), Platform Team July 2022 - April 2026

Principal engineer for regulated healthcare analytics platforms spanning SRE automation, tenant deployment architecture, asset intelligence, AI-assisted engineering, and forward-deployed agentic delivery.

  • Designed and implemented Ansible AWX automation for Windows patching across 1,000+ machines, replacing a manual monthly process that required 18+ engineer-hours per cycle with a supervised, auditable workflow.
  • Implemented Axonius across a roughly 25,000-asset environment spanning multiple cloud providers and on-premises VMware infrastructure, replacing fragmented PowerShell inventory scripts with continuous asset intelligence.
  • Architected and built Metadata and Actions services for Ignite, replacing hand-maintained per-tenant JSON configuration across roughly 100 enterprise healthcare environments with authenticated service workflows.
  • Founded and leads the AI Champion team, growing GitHub Copilot active usage from roughly 50 to 300 users over 12 months and launching a targeted Claude Code cohort of 65 engineers.
  • Submitted formal public guidance to NIST on human-in-the-loop techniques for agent-assisted software development under docket NIST-2025-0035.
  • Designing a RAG MCP server to surface DOS platform mapping knowledge for Databricks Genie Code, targeting a reduction in new-client data mapping time from 4+ weeks to a few days.
Agentic AIMCPRAGDatabricksAnsible AWXAxoniusAzureEntra IDREST APIsGraph DBDocument DBHITRUSTHIPAASOX

July 2020 - December 2021

NTT Managed Services

Enterprise Managed Services

Client Architect (Technical Account Manager) July 2020 - December 2021

Owned the technical relationship for enterprise clients including a 45-site, 8,000-staff regional healthcare system and a global manufacturing company with operations in the US, Europe, and Asia.

  • Led migration of 1,200 systems for a healthcare client from customer-operated colocation facilities into NTT shared infrastructure in 4 months, sustaining the plan within a single downtime window.
  • Executed Epic Cache/Iris and Clarity SQL cutover without Epic professional services engagement, avoiding roughly $50,000 in outside services while preserving the client's Epic rating.
  • Developed and executed a JD Edwards disaster recovery plan using VMware SRM bubble testing, achieving a 5.5-hour recovery against an 8-hour RTO on the first attempt.
  • Designed and led replacement of a healthcare client's edge security stack with Palo Alto next-generation firewalls, WildFire, web content management, RBAC, centralized logging, and automated elevated-access audits.
  • Served as a voting member of NTT's Technology Assurance Team for client-facing technology evaluation, policy, DR, security, availability, and confidentiality recommendations.
Epic EMRZertoCitrixVMware SRMJD EdwardsPalo AltoWildFireClarity SQLCache/IrisDisaster Recovery

November 2012 - July 2020

Renown Health

Northern Nevada Healthcare System

Infrastructure Architect 2019 - July 2020
Manager of IT Architecture 2017 - 2019
Infrastructure Architect 2015 - 2017
Network Engineer II November 2012 - 2015

Progressed from senior network engineering into architecture leadership for Northern Nevada's largest healthcare system, operating across a 45-site clinical, hospital, administrative, and outpatient footprint.

  • Scaled Citrix VDI from 500 to 1,200 concurrent desktops during COVID-19, adding 26 physical servers and transitioning roughly 600 non-clinical staff, including the full contact center, to remote work in 6 weeks.
  • Served as primary IT infrastructure consultant for a 200-bed COVID field hospital in a parking garage, designing 10 Gbps fiber connectivity, IDFs, wireless coverage, and clinical workstation access.
  • Led migration of roughly 800 systems from on-premises datacenters to geographically disparate colocation facilities over 9 months and about 15 move groups with zero cost overrun.
  • Replaced manual sticky-MAC port security with Cisco ISE for roughly 5,000 devices, eliminating daily network-team calls for desktop swaps and improving policy-driven access control.
  • Led enterprise wireless replacement from failing Juniper hardware to Cisco across 1,100 access points and 45 sites, enabling later Voalte voice-over-WiFi and Epic Rover clinical mobility deployments.
  • Managed 6 infrastructure architects, built infrastructure request standards and a web intake app, improved outsourced service desk first-call resolution by about 10%, and governed a 1.5 PB Pure Storage SAN migration.
Citrix VDICiscoCisco ISEPalo AltoAirWatchNetApp SnapMirrorPure StoragevRealize OperationsSolarWindsLiveActionIPv6HIPAAHITRUST

May 2009 - July 2012

Club Cal Neva

Casino & Hospitality IT

Network Administrator May 2009 - July 2012

Supported casino and hospitality technology operations across the main property and remote sportsbook locations.

  • Led a network upgrade across 30+ Nevada sportsbook locations connected through IPsec VPN over Cisco ASA appliances.
  • Supported legacy casino operations systems, hotel management platform modernization, and heavy on-call operational coverage.
Cisco ASAIPsec VPNCasino SystemsHospitality ITNetwork Operations

July 2000 - July 2004

United States Army

Battalion and Brigade Intelligence Units

Information Management Officer July 2000 - July 2004

Served in intelligence units across classified and unclassified operations, establishing an early foundation in high-accountability systems work.

  • Held Top Secret / SCI clearance during service.
  • Managed cryptography operations with local and remote intelligence assets while maintaining 100% regulatory compliance.
  • Supported operations with 1st Special Forces Group; operational details remain classified.
  • Received the Army Commendation Medal for support of operations at the Joint Readiness Training Center, Fort Polk, LA.
Information ManagementCryptography OperationsComplianceMCSESecure Environments

What I do

Expertise

Healthcare Platform Architecture

Designing and operating regulated healthcare systems across tenant platforms, clinical infrastructure, EMR-adjacent services, identity, networking, storage, and cloud-connected environments.

SRE & Automation Engineering

Replacing manual operational toil with auditable automation, repeatable deployment patterns, patch orchestration, asset intelligence, and service APIs that reduce risk at scale.

Enterprise Infrastructure & Security

Leading datacenter migrations, VDI, wireless, NAC, VPN, firewall modernization, segmentation, observability, disaster recovery, and security remediation in high-availability environments.

AI-Assisted Engineering Leadership

Driving practical AI adoption through champion programs, agentic engineering, MCP/RAG tooling, human-in-the-loop governance, and forward-deployed technical delivery.

How I Work

Capabilities Over Tool Lists

The tools matter, but only after the operating model is clear. This is the shape of the work I tend to own.

01

Platform Reliability

I turn fragile operational routines into repeatable, observable workflows that teams can trust under pressure.

  • SRE automation for regulated healthcare platforms
  • Patch, inventory, and remediation workflows with durable audit trails
  • Practical observability and incident response for mixed cloud/datacenter estates
Ansible AWXPowerShellAxoniusSolarWindsVMwareAzure
02

Regulated Delivery

I design systems so compliance evidence is a byproduct of good operations, not a separate scramble at the end.

  • Healthcare, HITRUST, HIPAA, and SOX-aware engineering practices
  • Control mapping, evidence capture, and operational ownership models
  • Security remediation that respects uptime, clinical context, and change windows
HITRUSTHIPAASOXSIEM EvidencePalo AltoCisco ISE
03

AI-Assisted Engineering

I use AI where it changes delivery mechanics: knowledge transfer, code acceleration, documentation, and guided operations.

  • Agentic engineering practices for platform teams
  • MCP and RAG patterns for institutional knowledge retrieval
  • Adoption programs that make assistants useful instead of decorative
Claude CodeGitHub CopilotMCP ServersRAG SystemsDatabricks
04

Infrastructure Modernization

I bridge older enterprise realities with modern platform patterns without pretending everything can be replaced at once.

  • Cloud, virtualization, disaster recovery, and storage modernization
  • Healthcare application infrastructure including Epic-adjacent systems
  • Migration planning for environments with real business and clinical constraints
AzureAWSVMware SRMZertoCitrix VDINetAppPure Storage

Technical notes

Latest Writing

View All Posts

May 1, 2026

Using RAG and MCP to Accelerate Healthcare Data Mapping

A practical look at using authoritative legacy mappings, retrieval, and human review to help implementation engineers map customer EMR data into a common analytics model.

AI SystemsKnowledge SystemsHealthcare