
IT & Business
Greater New York City Area

IT & Business
Greater New York City Area
Your website security - a choice between a small sure loss (cost of the service/product) and a large risky loss (result of the breach) ?
285 million records compromised in 2008
Most Fortune 500 invest in cyber security. Why ? "security + efficiency = competitiveness"
Small and midsize businesses used to skimp on security because they thought they were too small to be targets for hackers. But SMBs now realize that they are just as vulnerable to worms, spam and other random cyberplagues as large enterprises.
If you are interested in our services to help you analyze and enhance your website security, please provide me with your requirements and our sales representatives will contact you within two business days. Thank you.
Keywords: IT, business, outsource, offshore, consulting, eastern europe, szczecin, poland, polska, polen, russia, eu, usa, ct, ny, security, web penetration test, hacking, compliance, PCI DSS, privacy, e-commerce, telecommunication, mobiles
Websites:
http://www.topcodersonline.com
Work featured on:
www.milw0rm.com,www.redoracle.com,www.securiteam.com,www.astalavista.com,www.packetstormsecurity.com
C/C++/C#/Java/PHP/PERL,UNIX/LINUX,CISCO CCNA, CCSP, NSA/CNSS 4013, FBI background check, Secure Coding for Java EE v.07Q4 Aspect Security - San Jose, CA
(Information Technology and Services industry)
September 2008 — Present (1 year 3 months)
(Public Company; 1001-5000 employees; FDS; Financial Services industry)
March 2006 — September 2008 (2 years 7 months)
- Lead and collaborate on intra-group projects to securely design applications, systems, and networks.
- Identify potential risks, threats, vulnerabilities and exploits through internal security assessments and penetration testing; produce remediation proposals.
- Propose, develop and improve tools to automate security testing as well as enable more efficient discovery, tracking, and resolution of security incidents.
- Design and implement secure infrastructure solutions, including firewall, IDS/IPS, SIM, vulnerability scanning tools, VPN, wireless, e-mail, AAA, load-balancer systems and tools.
- Participate in designing, applying and enforcing security policy throughout the firm.
- Monitor and respond to security alerts and incidents; devise and implement mitigation techniques.
- Educate employees on security-related best practices.
- Work as part of a team providing 24x7 coverage (participation in pager rotation).
(Privately Held; Information Technology and Services industry)
March 2005 — March 2006 (1 year 1 month)
- Consulting in software, database and network projects requiring strong analytical, system architecture, programming, database, integration and implementation skills
- Responsible for deployment, configuration, bugfixes, quality assurance, project management and delivering product to the customer.
- Development of modular and scalable web based backends, transparency layers to legacy systems, content management systems, online shops and portals. (PHP, C#, JAVA, RDBMS)
- All levels network, system, user support
(Textiles industry)
October 2004 — March 2005 (6 months)
Research, development and troubleshooting of 2-tier LEVEL 1, 2 software for plants automation
- Low level analyzing of binary encoded messages and commands exchanged between devices controllers (PLC) and control system. Simulation of low level binary encoded messages and commands. Development of simulation and testing UNIX library (C, AIX)
- Software development, adding new features, resolving software anomalies in existing plant in India (C, AIX, DOS)
- Software development for adding a new unit line to the plant in India (C, AIX, DOS)
- Software development the driver for industrial label printer in India (C,AIX)
- Development of software for PSC Falcon handheld PC to be used in automated storage area in France (PHP, PL/SQL,VSS)
Projects involved collaboration with offshore development teams (India, Italy, Poland), development, quality assurance, preparation of testing environments, deployment of software and configuration.
(Information Technology and Services industry)
September 2002 — June 2003 (10 months)
- System and network administration (Linux, FreeBSD, Solaris, Apache, Qmail, Sendmail, Exim, CVS, Spam Assassin, Mail Scanner, MySQL, PostgreSQL, LDAP, BIND, jMon, Amanda, Netscape Messenger Server 4.x, firewalls, traffic shapers)
- Development of database driven 3-tier distributed system for managing customer’s accounts and services (OOP PHP, CGI, PERL, Shell scripts, C, MySQL, LDAP).
- Development of integrated email to SMS (Short Message Service) gateway for all, 3 GSM carriers available in country (Linux, PERL, Procmail, Qmail).
- Development of user support module with dynamic images generation, statistics, user program configuration screenshot generating (PHP, GDLib, MySQL).
- Development of exploits (C, ASM), programs exploiting vulnerabilities in software and systems (buffer overflows, race conditions), in order to check against vulnerabilities and to prevent system compromise and unauthorized access.
- Maintenance of testing environment, deployment of software packages.
BS , Computer Science , 1999 — 2003
2002-2003 - scholarship award
security, programming, networking, distributed computing, network & computer architectures, embedded systems
- AppSec U.S 2007 (OWASP + WASC) - San Jose, CA - attendee