Cybersecurity for next generation Interlocking system
Cybersecurity EngineerIEC 62443TS 50701
Cybersecurity Engineer
Durchführung des Engineering Prozesses nach IEC 62443 und TS 50701 für ein Projekt, in dem die nächste Generation der Stellwerke entworfen werden sollte.
Erstellung des System under Consideration, Durchführung der Schutzbedarfsfeststellung, Risikoanalyse, Definition der Anforderungen an das System sowie Erstellung des Testplans sowie der Testfälle.
IEC 62443TS 50701
Bahninfrastrukturbetreiber
Berlin
1 Jahr 10 Monate
2023-03 - 2024-12
Global OT-Security and Network Monitoring Rollout
Network SecurityOT-Security
Takeover of the
project, at a point, where less than 3 months were left until the shareholders
expected to have the activity closed
Development of the
required high-level network changes, alignment with global sites and creating
the detailed action plan and management of change documents
Fast-track
selection and procurement of missing hardware parts and handling the global
delivery
Performing rollout
at all sites and integration into the Azure dashboards of the customer
Phase 1 was
delivered a week ahead of time with 100% of the sites onboarded (instead of expected
70%)
Phase 2 (after June
2023) was concerned with optimization of the visibility into the OT networks
and defining alerts for the SOC
Also afterwards different additional measures like hardening were implemented
MS Defender IoTSplunk Enterprise
Network SecurityOT-Security
Chemical Industry Client (Operator) [global profile]
7 Monate
2022-09 - 2023-03
CyberSecurity for onboard signalling system
CyberSecurity Manager
CyberSecurity Manager
Railway Manufacturing Company in EMEA (Manufacturer)
Development of CyberSecurity Management Plan according to CENELEC TS 50701
Performing the Risk Assessment for the system
Development of CyberSecurity Design based on the former deliverables
Writing the CyberSecurity Case for the upcoming homologation process
9 Monate
2022-06 - 2023-02
Security Rework of Railway Infrastructure
Security Expert
Security Expert
Railway Infrastructure Operator APAC
Analysis of the status of CyberSecurity of their infrastructure (including asset inventory for specific parts and analysis of communication flows between the systems)
Designing zones and conduits for their system based on criticality and risk of the systems
Development of an implementation plan to close the gaps
1 Jahr 7 Monate
2021-07 - 2023-01
Independent CyberSecurity Consultant
Independent CyberSecurity Consultant
Independent CyberSecurity Consultant
Railway Manufacturing Company in APAC (Manufacturer)
Development of Security Design for a mission-critical part of the train
Development of a Risk Assessment Methodology for the rolling stock part and development of an initial Risk Register for CyberSecurity
Analysis of gaps in the overall Security Design and consolidation with inputs from other parts of the train
Development of an architecture for Security Monitoring on board of the train and alerting a central system close to the OCC
Development of System Hardening Baselines and Verification Checklists
2 Jahre 7 Monate
2019-07 - 2022-01
Consultant OT-CyberSecurity
Consultant OT-CyberSecurity
Consultant OT-CyberSecurity
Chemical Industry Client (with global scope)
Development of an OT-Security program for execution on global level
Awareness raising on management level of the plants
Performing audits of the current level of CyberSecurity at selected plants
Risk Assessments for the OT of the global chemical plants
Leading network security activities of the OT-Security program
Aus- und Weiterbildung
Aus- und Weiterbildung
3 Jahre 1 Monat
2010-08 - 2013-08
IT-Sicherheit
Master of Science, TU Darmstadt
Master of Science
TU Darmstadt
Branchen
Branchen
Erweiterte Kenntnisse im Bereich Transportation (Rail Infrastruktur als auch Fahrzeuge) sowie in der Chemie-Industrie
Einsatzorte
Einsatzorte
Heidelberg (+500km)
Deutschland, Schweiz, Österreich
möglich
Projekte
Projekte
8 Monate
2025-01 - 2025-08
Cybersecurity for next generation Interlocking system
Cybersecurity EngineerIEC 62443TS 50701
Cybersecurity Engineer
Durchführung des Engineering Prozesses nach IEC 62443 und TS 50701 für ein Projekt, in dem die nächste Generation der Stellwerke entworfen werden sollte.
Erstellung des System under Consideration, Durchführung der Schutzbedarfsfeststellung, Risikoanalyse, Definition der Anforderungen an das System sowie Erstellung des Testplans sowie der Testfälle.
IEC 62443TS 50701
Bahninfrastrukturbetreiber
Berlin
1 Jahr 10 Monate
2023-03 - 2024-12
Global OT-Security and Network Monitoring Rollout
Network SecurityOT-Security
Takeover of the
project, at a point, where less than 3 months were left until the shareholders
expected to have the activity closed
Development of the
required high-level network changes, alignment with global sites and creating
the detailed action plan and management of change documents
Fast-track
selection and procurement of missing hardware parts and handling the global
delivery
Performing rollout
at all sites and integration into the Azure dashboards of the customer
Phase 1 was
delivered a week ahead of time with 100% of the sites onboarded (instead of expected
70%)
Phase 2 (after June
2023) was concerned with optimization of the visibility into the OT networks
and defining alerts for the SOC
Also afterwards different additional measures like hardening were implemented
MS Defender IoTSplunk Enterprise
Network SecurityOT-Security
Chemical Industry Client (Operator) [global profile]
7 Monate
2022-09 - 2023-03
CyberSecurity for onboard signalling system
CyberSecurity Manager
CyberSecurity Manager
Railway Manufacturing Company in EMEA (Manufacturer)
Development of CyberSecurity Management Plan according to CENELEC TS 50701
Performing the Risk Assessment for the system
Development of CyberSecurity Design based on the former deliverables
Writing the CyberSecurity Case for the upcoming homologation process
9 Monate
2022-06 - 2023-02
Security Rework of Railway Infrastructure
Security Expert
Security Expert
Railway Infrastructure Operator APAC
Analysis of the status of CyberSecurity of their infrastructure (including asset inventory for specific parts and analysis of communication flows between the systems)
Designing zones and conduits for their system based on criticality and risk of the systems
Development of an implementation plan to close the gaps
1 Jahr 7 Monate
2021-07 - 2023-01
Independent CyberSecurity Consultant
Independent CyberSecurity Consultant
Independent CyberSecurity Consultant
Railway Manufacturing Company in APAC (Manufacturer)
Development of Security Design for a mission-critical part of the train
Development of a Risk Assessment Methodology for the rolling stock part and development of an initial Risk Register for CyberSecurity
Analysis of gaps in the overall Security Design and consolidation with inputs from other parts of the train
Development of an architecture for Security Monitoring on board of the train and alerting a central system close to the OCC
Development of System Hardening Baselines and Verification Checklists
2 Jahre 7 Monate
2019-07 - 2022-01
Consultant OT-CyberSecurity
Consultant OT-CyberSecurity
Consultant OT-CyberSecurity
Chemical Industry Client (with global scope)
Development of an OT-Security program for execution on global level
Awareness raising on management level of the plants
Performing audits of the current level of CyberSecurity at selected plants
Risk Assessments for the OT of the global chemical plants
Leading network security activities of the OT-Security program
Aus- und Weiterbildung
Aus- und Weiterbildung
3 Jahre 1 Monat
2010-08 - 2013-08
IT-Sicherheit
Master of Science, TU Darmstadt
Master of Science
TU Darmstadt
Branchen
Branchen
Erweiterte Kenntnisse im Bereich Transportation (Rail Infrastruktur als auch Fahrzeuge) sowie in der Chemie-Industrie
Vertrauen Sie auf Randstad
Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung