Information Security Specialist with passion for aligning security architecture plans and processes with security standards and business goals. Extensive experience developing and testing security framework for cloud-based software. Versed in robust network defense strategies.
Overview
28
28
years of professional experience
3
3
Certification
Work History
Senior Security Analyst
Open Technology Solutions
01.2022 - Current
Lead assigned Security Operations Center (SOC) activities
Responsible for Vulnerability Management Program, with 90% drop in Critical vulnerabilities within 6 month
Review alerts and data from sensors, and documents formal, technical incident reports
Provide analysis of network and host-based security events and trends of security log data from many heterogeneous security devices
Provide users with incident response support, including mitigating actions to contain activity and facilitating forensics analysis when necessary
Develop derivation of risk by contributing likelihood and/or impact knowledge for cybersecurity events that may affect the Company's systems
Conduct competitive analyses on (in-use and alternative) cyber technologies and documents recommendations for our environment.
Work across cross-functional teams to drive requirements gathering to improve SOC
Communicate technical information in a clear and concise manner to technical and non-technical audiences
Partner with other security teams on incidents
Create detailed written accounts of processes and steps throughout an event or investigation and deliver formal reports.
Provide expertise across security tools and monitoring devices
Research external sources and peers’ information on threats and vulnerabilities and their solutions
Responsible for the up-skilling of other analysts
Investigate impacted hosts, endpoints, and users and takes the appropriate actions to mitigate and contain the impact or the threat or incident
Leverage fundamental knowledge of IT system functionality, architecture, and capabilities to effectively diagnose and troubleshoot issues
Contact and coordinate vendor, carrier, and remote support when necessary to resolve high impact security issues
Security Engineer
Addition Financial
01.2022 - 12.2022
Day to day operation of the Security tools (SIEM, Vulnerability assessment, end point protection)
Designed and planned implementation of a Zero trust based network separation for departments
Daily involvement in security posturing improvements
Owner and CEO
In4Sec
01.2011 - 12.2022
Act as primary Information Security Consultant for the company customers.
Design and implement wide verity of Information Security solutions for the customers.
Developing and implementing company strategies
Managing the overall operations and resources of the company
Making major corporate decisions
Customer projects:
BST LTD. (Construction company) 2013-present: Design and implement Check Point High Availability solution based on UTM-1 R77 and multi-site VPN Connectivity.
AVATrade Financial LTD. 2012-present: Design and implement Firewall solution based on Check Point UTM-1 R77 and FireWall-1 R75 with multi-Blade implementation, including but not limited to Application Control, Identity Awareness, QOS and IPS. Configuration of cross-site VPN connectivity with branches (Israel, Japan, Ireland, and USA).
Israeli Electricity Company 2011-2012: Implementation of Check Point VPN client connectivity with SafeNet based Two Factor Authentication.
ACS – ACS is a small company that recently expended to work with remote contributors. Project included: Installation and full configuration of a FortiGate Firewall with SSL VPN (domain-based authentication with email-based MFA), network separation (separate Wi-Fi Unifi based infrastructure).
Conversion of physical servers’ infrastructure in to a virtual based on VMWare ESXi. And implementation of the off-site backups. This project was specked and completely done by me.
Dandelion – a young company that recently acquired grant for CAD development. Project included: AWS based server environment with OpenVPN based remote access. The whole project was specked and deployed by me.
OCH – is a medical facility that I am responsible for the full spectrum of information security, SonicWall based network security with SSL VPN based remote access with DUO based MFA, ESET End Point and Server security. I am also responsible for end user security awareness education.
I have several European customers that I am responsible for full range Information security aspects: FortiGate based firewalls and remote access and more (Permission to view based on GDPR)
Kenesto Corp, ongoing contract since 2015, AWS System Administration, act as a main system administrator for AWS based product, deploy, manage, and maintain product infrastructure based on AWS, including Servers, storage, communications, and security, support development team, act as tier II customer technical support.
Consultant: Information Security/CTO
Danel In4Sec Ltd.
01.2009 - 12.2011
Design and implement security processes and procedures and perform cost benefit
Recruited to establish and manage enterprise-wide information-security distribution program.
Analysis on all recommended strategies for customers.
Develop curriculum and facilitate awareness training for management and employees of customers.
Customer projects: Bank of Israel 2009-2011 – Implementation of Mail Security, based on ClearSwift Secure Mail Gateway.
Architect: Network Security
Datasafe Ltd.
01.2008 - 12.2009
Company Overview: Israel
Responsible for managing Information Security Integration teams on client sites
Designing and planning implementation of information security infrastructure for clients. Leading a team of 15 engineers.
Designing High Availability Information Security solutions for the enterprise customers, based on best-of-breed products (Check Point, Fortinet, Juniper, BlueCoat, Barracuda and more)
Israel
Technical Support Manager / CTO
Renaissance Electronics Ltd.
01.1997 - 12.2008
Company Overview: Kefar Sava, Israel
Provided comprehensive remote and onsite support for domestic and international customers including Tier-III support for LAN/WAN products and information security products and pre/post-sales support for key accounts of all sizes
Key Contributions: Designed and implemented customer call-center support procedures and customer network design strategy for sales and marketing teams.
Designing and implementing enterprise class solutions based on Check Point and Fortinet Firewalls, Bluecoat Proxy and many more.
Recognized for outstanding quality of customer service with numerous customer-support awards and personal commendation from clients