
Working on a fun consulting project.
San Francisco Bay Area

Working on a fun consulting project.
San Francisco Bay Area
2 more...
Dr. Anton Chuvakin (http://www.chuvakin.org) is a recognized security expert in the field of log management and PCI DSS compliance. He is an author of books "Security Warrior" and "PCI Compliance" and a contributor to "Know Your Enemy II", "Information Security Management Handbook" and others. Anton has published dozens of papers on log management, correlation, data analysis, PCI DSS, security management (see list www.info-secure.org) . His blog http://www.securitywarrior.org is one of the most popular in the industry.
In addition, Anton teaches classes and presents at many security conferences across the world; he recently addressed audiences in United States, UK, Singapore, Spain, Russia and other countries. He works on emerging security standards and serves on the advisory boards of several security start-ups.
Currently, Anton is developing his security consulting practice, focusing on logging and PCI DSS compliance for security vendors and Fortune 500 organizations. Dr. Anton Chuvakin was formerly a Director of PCI Compliance Solutions at Qualys. Previously, Anton worked at LogLogic as a Chief Logging Evangelist, tasked with educating the world about the importance of logging for security, compliance and operations. Before LogLogic, Anton was employed by a security vendor in a strategic product management role. Anton earned his Ph.D. degree from Stony Brook University.
Computer forensics, intrusion detection, security information management, log analysis, log correlation, log management, security standards - CVSS, OVAL, AVDL, CEE, OSSTMM, incident response, Unix and Linux security, honeypots, honeynets, security policy and management, writing on security, future security technologies
(Computer & Network Security industry)
August 2009 — Present (4 months)
Example services:
- Security vendor PCI DSS strategy work
- Security start-up messaging and positioning
- Logging policy, procedure and process development
- Other fun security and compliance projects, writing, research, etc.
Finally, the fact that I am consulting does not mean that I am not looking for a fun full-time job. Consulting projects that "landed" on me were just too much fun to ignore...
Computer forensics, intrusion detection, incident response, security information management, correlation, Unix security, honeypots, security policy and management, PCI DSS, compliance, vulnerability management, writing on security, future security technologies Software product management, strategy, planning, security market research. Books authored/contributed to: "Security Warrior" (O'Reilly 2004) "PCI Compliance" (Syngress 2007) "Know Your Enemy" 2nd (AWL) "Hacker's Challenge 2" (AWL) "Information Security Management Handbook" (other) "OSSEC HIDS" (Syngress)
ISSA,
InfraGard,
Honeynet Project,
SANS,
GIAC,
USENIX,
WASC,
OVAL,
CVSS,
AVDL,
ISSTMM/ISECOM,
CSI,
CEE,
(some affiliations are past),
Member of SANS advisory board,
Honeynet Project Member,
Cloud Security Alliance (CSA) - cloud compliance group contributor,
Member of Covelight, Inc Technical Advisory Board (past),
Member of Savant Protection, Inc Technical Advisory Board,
Member of NexTier Networks, Inc Advisory Board,
O'Reilly Author,
Syngress Author
Certifications:
GIAC GCFA,
GIAC GCIH,
GIAC GCIA,
(some have expired)