freiberufler Cyber Security Consultant auf freelance.de

Cyber Security Consultant

offline
  • auf Anfrage
  • 61130 Nidderau, Hessen
  • auf Anfrage
  • de  |  en  |  ur
  • 05.06.2023

Kurzvorstellung

Agile workflows, sophisticated development operations, analytical thinking, and strong willingness to learn are my daily commitments. I’m a Cyber-Security Consultant who is focusing on improving the maturity level of a Security-Operation-Center.

Qualifikationen

  • Angular6 J.
  • Apache Kafka6 J.
  • Cyber Security3 J.
  • Cyber Security Practitioner (CSP)3 J.
  • Docker6 J.
  • Elasticsearch6 J.
  • Git6 J.
  • Incident-Management3 J.
  • Java (allg.)
  • JavaScript6 J.
  • JavaScript-Frameworks
  • Json
  • Microsoft Azure3 J.
  • Projektleitung / Teamleitung (IT)6 J.
  • Projektmanagement (IT)6 J.
  • Python6 J.
  • Scrum6 J.
  • Spring Framework
  • SQL6 J.

Projekt‐ & Berufserfahrung

SOC Consultant and Use Case Developer
Kundenname anonymisiert, Remote
1/2022 – offen (3 Jahre)
Finanzdienstleister
Tätigkeitszeitraum

1/2022 – offen

Tätigkeitsbeschreibung

As a Consultant I am improving the SOC matuarity level of the second largest bank in Germany. In order to monitor suspicious actvities inside the network I am focusing on connecting new Log-Sources to the Security Information and Event Management Solution (SIEM) IBM QRadar. The integration includes cloud services, applications, network devices and endpoints (Windows and Linux). Based on the incoming events from various systems and the MITRE ATT&CK matrix I am defining and implementing new rules to identify attackers movements in early stages. With the help of Incident Response (IR) threat reports and Cyber Threat Intelligence (CTI) we are analyzing the attackers capabilities and emulate the attack campaign in order to strengthen the defense.

Eingesetzte Qualifikationen

Incident-Management, Cyber Security Practitioner (CSP), Cyber Security, Microsoft Azure

Frontend Lead Developer for a Quality Management Tool
CGI Deutschland B.V. & Co. KG, Remote
9/2021 – 3/2022 (7 Monate)
IT & Entwicklung
Tätigkeitszeitraum

9/2021 – 3/2022

Tätigkeitsbeschreibung

In my position as a Frontend Lead Developer I am designing and implementing the frontend architecture of a Quality Management Tool for a car manufacturer. I’m continously evaluating the code quality for a sustainable development without any vulnerabilities.

Eingesetzte Qualifikationen

Amazon Web Services (AWS), Angular, Docker, Git, Jenkins, Nginx, Scrum, Spring Framework

Cyber-Security Consultant and Software Developer for a Threat Hunting Platform (Festanstellung)
Airnet, Nidderau
8/2018 – offen (6 Jahre, 5 Monate)
IT & Entwicklung
Tätigkeitszeitraum

8/2018 – offen

Tätigkeitsbeschreibung

My responsibilities within AIRNET are primarily to lead the development of an Intelligence-driven Threat Hunting Platform prototype. This includes the consolidation of various Cyber Security frameworks like MITRE ATT&CK, Structured Threat Intelligence Expression Language (STIX 2.1) and The Diamond Model for Intrusion Analysis into common Web-Frameworks and technologies. Build best practices, Microservice architecture plans, scalable and generic code components are my daily tasks.
In addition to the above I’m working with following frameworks and technologies:
• Integration with SOAR, SIEM and EDR platforms
• Incident Response and Detection Use Case development with IBM Qradar and Resilient
• Logsource connections with PCAP and Sysmon (Firewall, Linux, Windows)
• Development of Named Entity Recognition (NER) with Tensorflow (AI)
• Flask (Python)
• Angular (6,7,8,10,12)
• Javascript, d3.js, HTML 5 Boilerplate Framework
• Kafka
• ELK-Stack
• PostgreSQL
• NGINX
• Docker
• DevOps (CI/CD)
• Deployment of NEXUS and Gitlab with CI/CD pipelines

As cloud adoption is expected to be the main deployment model in future, my expertise covers all around containerization and Microservices architecture development.
During the development of the prototype I have gained a lot of knowledge about Cyber Threat Intelligence (CTI). This includes commercial CTI from vendors like Recorded Future and Open-Source CTI from platforms like MISP, which is a well-established platform in the open source CTI community.

Eingesetzte Qualifikationen

Angular, Docker, Elasticsearch, Git, JavaScript, Apache Kafka, Projektleitung / Teamleitung (IT), Projektmanagement (IT), Python, Scrum, SQL

Fullstack Entwickler ERP-System
IT Frankfurt GmbH, Frankfurt am Main
3/2018 – 5/2019 (1 Jahr, 3 Monate)
Dienstleistungsbranche
Tätigkeitszeitraum

3/2018 – 5/2019

Tätigkeitsbeschreibung

Weiterentwicklung sowie Wartung und Betrieb eines ERP-Systems in Microservices.
Folgende Aufgaben und Rollen wurden übernommen:
- Backend sowie Frontend-Entwicklung
- Entwerfen und Implementieren von Softwarekomponenten wie. z.B. Erfassen der Arbeitszeiten auf verschiedene Kundenprojekte, Rechnungsmanagement
- Beteiligung am Planungsprozess
- Serveradministration
- Übernahme der SCRUM Master-Rolle
- Agile Entwicklung mit JIRA

Während der Entwicklung wurden folgende Technologien und Frameworks verwendet:
- Angular (2,4,5)
- Spring Boot 2
- Kafka
- MySQL
- MongoDB
- PostgreSQL
- Docker

Eingesetzte Qualifikationen

Angular, Backend, Docker, Front End, Git, HTML5, Java Database Connectivity, Jira, Apache Kafka, Linux (Kernel), Mongodb, Mysql, Postgresql, Projektmanagement (IT), Scrum, Software Quality

Zertifikate

CCNA Routing and Switching: Routing and Switching Essentials
2020
CCNA Routing and Switching: Introduction to Networks
2020

Ausbildung

Bachelor of Computer Science
Bachelor
2022
Gießen

Über mich

My aim is to provide the best Cyber-Security approaches with state-of-the-art technologies. My key areas are: Cyber Threat Modeling, Cyber Threat Hunting, Incident Response and Detection Use Case development.
This includes the consolidation of various Cyber Security frameworks like MITRE ATT&CK, Structured Threat Intelligence Expression Language (STIX 2.1) and The Diamond Model for Intrusion Analysis into the defence strategy.

Weitere Kenntnisse

Frameworks and technologies:
- Incident Response
- Detection Use Case Development
-SIEM (Qradar)
-EDR (Carbon Black)
-SOAR (Resilient)
- CTI Provider (Alienvault, MISP, Recorded Future)
-MITRE ATT&CK
-Angular
-Spring Boot
-Flask
-Python
-Java
-Docker
-Kafka
-d3.js
-SQL
-ELK Stack
-Big Data

Persönliche Daten

Sprache
  • Deutsch (Muttersprache)
  • Englisch (Fließend)
  • Urdu (Gut)
Reisebereitschaft
auf Anfrage
Arbeitserlaubnis
  • Europäische Union
Home-Office
bevorzugt
Profilaufrufe
2159
Alter
26
Berufserfahrung
8 Jahre und 4 Monate (seit 08/2016)
Projektleitung
2 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden