Zpět na profesionály

IT Security Consultant

Přehled


Krátké shrnutí

Kandidát pracuje jako bezpečnostní analytik téměř 5,5 roku. Ve společnosti mají lidi zodpovědné za monitorování technologií, např. Splunk, takže když se objeví nějaké bezpečnostní upozornění nebo je kritické, tak se eskaluje k seniorům, aby se na to podívali. V závislosti na kritičnosti mohou do celého procesu zapojit další týmy, manažery a podobně, aby se na to podívali a zjistili, jak velký je dopad, a provedli nějakou analýzu celého incidentu. Kromě toho mají pro společnost nějaká průběžná zlepšení, aby identifikovali nedostatky a také zefektivnili procesy, aby vše probíhalo hladčeji, vyvíjeli jakési nástroje. Součástí jeho kompetencí je výměna znalostí, vedení týmu, mentoring, organizování dalších bezpečnostních aktivit a implementace řešení pro výsledky v oblasti bezpečnosti. Ve svých předchozích projektech pracoval v agilním prostředí s využitím Scrumu.

  • Dostupnost: 2 měsíce výpovědní lhůta

Pracovní zkušenosti

Senior Incident Response Analyst | Security Engineer (October 2019 - Current)

  • Developed custom tools and automation solutions with Python to improve efficiency and performance.
  • Identified process and visibility gaps, proposed and implemented improvements for increased coverage of potential attack vectors.
  • Provided expertise and recommendations for shaping the Splunk environment globally.
  • Leveraged Threat Intelligence to address security vulnerabilities.
  • Responded to and remediated critical incidents, performed root cause analysis, and created IOCs for further investigation.
  • Conducted threat hunting and proposed solutions for security gaps.
  • Led the CSIRT EU team and mentored junior members.
  • Initiated Purple Teaming activities and a project for deploying Cyber Deception measures.

Security Specialist | Incident Response (September 2018 - September 2019)

  • Investigated and handled escalated incidents, identified root causes, and created post-incident reports.
  • Extracted IOCs from incidents and leveraged Threat Intelligence for vulnerability analysis.
  • Developed new security use cases to improve visibility.
  • Conducted malware analysis and threat hunting.
  • Provided advisory for system configuration and security improvement.
  • Led a group of L1 analysts as their mentor and instructor.

Security Senior Operation Analyst | Splunk Engineer (December 2017 - August 2018)

  • Administered client Splunk environments and ensured quality installations and configurations.
  • Led and managed a remote team, assigning tasks and ensuring deadlines were met.
  • Introduced new collaboration methods and version control tools for improved workflow.
  • Standardized output quality and reduced time to reach goals.

Security Operations Analyst | Splunk Engineer (January 2017 - November 2017)

  • Developed Splunk use cases and visualization dashboards.
  • Researched and implemented collaboration tools for streamlined collaboration.
  • Assisted with installation and configuration of Splunk instances in client networks.
  • Ensured quality assurance of operation and development processes.

Education

  • MSC in Digital Systems Security from the University of Piraeus, Greece.
Author
IT Security Consultant
62b187e18bb415000ef98b37
Zaměstnanec140000  / Měsíčně
Kontraktor7700  / Denně
ÚroveňSENIOR
Role
IT Security Consultant
Jazyky
English
Dovednosti
AndroidApplication ServerArchitectAzureBig DataCertificationsCloudDatabaseMicrosoft serversNon-Functional TestingOperation SystemsPenetration TestingProject ManagerPythonSecurity TestingSplunkTesting TypesTools
Lokality
PrahaRemote