IT-Sicherheit, IT Security, Penetrationtester, Information Security, Webapplication, VoIP, BlackBox Penetrationtesting, Source Code Analysis
Aktualisiert am 15.07.2024
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 15.07.2024
Verfügbar zu: 100%
davon vor Ort: 100%
Peneterationtesting
IT Security
Deutsch
Muttersprache
Englisch
fluessig in Sprache und Wort
Französisch
lesen

Einsatzorte

Einsatzorte

Deutschland, Österreich, Schweiz
möglich

Projekte

Projekte

1 Jahr
2023-07 - heute

Interim Penetrationtester

Penetrationtester
Penetrationtester

Whitebox and Blackbox Penetrationtests of Web- and Mobile-Applications from planning to reporting

Source Code Review of Java/Springboot/PHP/DotNet/NodeJS based Web-Applications and REST-APIs

Source Code Review and Penetrationtests of Kotlin/Java/Objective-C/ReactNative based Android and IOS Applications

Supporting the SOC in Incident-Management, Red-Team Assesment of the network from perspective of a compromised employee VPN-account



2 Jahre 7 Monate
2020-06 - 2022-12

Vulnerability Manager at a major german insurance company

Vulnerability Manager
Vulnerability Manager
                Onboarding of AWS Cloud Vulnerability Scanning of 160 VPCs using Tenable.IO,Analysis and Reporting of vulnerable Systems with Tenable.SC}
                Managing the end-to-end vulnerability lifecycle from discovery to closure                                                               
                developing and implementing KPI and metric reporting related to VM,implementing processes, capabilities and techniques for vulnerability management and security testing. Development of Python Code parsing Nessus Scan Results 
                Maintenance of the Tenable.SC and Nessus Agent Vulnerability Scanning Infrastructure, Performing Vulnerability Scans with TenableIO and Qualys                                                                                 
                Serving as an escalation point on issues, dependencies and risks related to vulnerability scanning                                                                                                                               
                Technical Integration of a Vulnerability Management Platform (Risksense) including communication with different Stakeholders for CMDB and BMC Remedy, Handover to operating teams

Tenable
ITERGO
Duesseldorf

Aus- und Weiterbildung

Aus- und Weiterbildung

15 Jahre Erfahrung im Bereich Penetrationtesting, Zertifikate OSCP, OSCE, Diplm. Informatik am Karlsruher Institute for Technology mit Schwerpunkten auf Cryptography und Telematik

Position

Position

IT Security

Penetrationtester

Kompetenzen

Kompetenzen

Top-Skills

Peneterationtesting IT Security

Produkte / Standards / Erfahrungen / Methoden

Mobile App Vulnerability Assessment/Mobile App Source Code Audit Android,iPhone,iPad,Blackberry,VMB hacking, ISDN attacks, Wardialing, Fuzzing, Reverse Engineering, Embedded Systems, Buffer-/Heap-/Integer overflow attacks, Web application pentesting, network pro- tocol analysis, analysis of proprietary protocols, analysis and attacks on cryptographic pro- tocols, Binary analysis (IDA), C/C++/Java/Objective-C/PHP Source code auditing, Threat analysis, Programm- und Source Code Analyse, Source Code Analyse, BlackBox Penetration Testing, Penetration Testing

Betriebssysteme

Unix
Windows

Programmiersprachen

Assembler
X86 / ARM / MIPS
C
Objective-C
C++
Java
Perl
PHP
Python
Shell

Datenbanken

MySQL

Datenkommunikation

Internet, Intranet
ISDN
Proprietäre Protokolle
Public Networks
TCP/IP
Voice
X.400 X.25 X.225 X.75...

Branchen

Branchen

Internetprovider, Banken, Versicherungen

Einsatzorte

Einsatzorte

Deutschland, Österreich, Schweiz
möglich

Projekte

Projekte

1 Jahr
2023-07 - heute

Interim Penetrationtester

Penetrationtester
Penetrationtester

Whitebox and Blackbox Penetrationtests of Web- and Mobile-Applications from planning to reporting

Source Code Review of Java/Springboot/PHP/DotNet/NodeJS based Web-Applications and REST-APIs

Source Code Review and Penetrationtests of Kotlin/Java/Objective-C/ReactNative based Android and IOS Applications

Supporting the SOC in Incident-Management, Red-Team Assesment of the network from perspective of a compromised employee VPN-account



2 Jahre 7 Monate
2020-06 - 2022-12

Vulnerability Manager at a major german insurance company

Vulnerability Manager
Vulnerability Manager
                Onboarding of AWS Cloud Vulnerability Scanning of 160 VPCs using Tenable.IO,Analysis and Reporting of vulnerable Systems with Tenable.SC}
                Managing the end-to-end vulnerability lifecycle from discovery to closure                                                               
                developing and implementing KPI and metric reporting related to VM,implementing processes, capabilities and techniques for vulnerability management and security testing. Development of Python Code parsing Nessus Scan Results 
                Maintenance of the Tenable.SC and Nessus Agent Vulnerability Scanning Infrastructure, Performing Vulnerability Scans with TenableIO and Qualys                                                                                 
                Serving as an escalation point on issues, dependencies and risks related to vulnerability scanning                                                                                                                               
                Technical Integration of a Vulnerability Management Platform (Risksense) including communication with different Stakeholders for CMDB and BMC Remedy, Handover to operating teams

Tenable
ITERGO
Duesseldorf

Aus- und Weiterbildung

Aus- und Weiterbildung

15 Jahre Erfahrung im Bereich Penetrationtesting, Zertifikate OSCP, OSCE, Diplm. Informatik am Karlsruher Institute for Technology mit Schwerpunkten auf Cryptography und Telematik

Position

Position

IT Security

Penetrationtester

Kompetenzen

Kompetenzen

Top-Skills

Peneterationtesting IT Security

Produkte / Standards / Erfahrungen / Methoden

Mobile App Vulnerability Assessment/Mobile App Source Code Audit Android,iPhone,iPad,Blackberry,VMB hacking, ISDN attacks, Wardialing, Fuzzing, Reverse Engineering, Embedded Systems, Buffer-/Heap-/Integer overflow attacks, Web application pentesting, network pro- tocol analysis, analysis of proprietary protocols, analysis and attacks on cryptographic pro- tocols, Binary analysis (IDA), C/C++/Java/Objective-C/PHP Source code auditing, Threat analysis, Programm- und Source Code Analyse, Source Code Analyse, BlackBox Penetration Testing, Penetration Testing

Betriebssysteme

Unix
Windows

Programmiersprachen

Assembler
X86 / ARM / MIPS
C
Objective-C
C++
Java
Perl
PHP
Python
Shell

Datenbanken

MySQL

Datenkommunikation

Internet, Intranet
ISDN
Proprietäre Protokolle
Public Networks
TCP/IP
Voice
X.400 X.25 X.225 X.75...

Branchen

Branchen

Internetprovider, Banken, Versicherungen

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.