I try to think like hackers do and anticipate all of their moves and tactics that they could use to adeversely affect my company's trustworthiness.
With that being said, I constantly stay current on the latest developments both on the security end and the attacking end.
My day to day activity aims to acquire a complete understanding of my company’s technology and needs. I design robust security architectures for any IT project. and perform risk analyzes and security assessements to help decision makers.
I work closely with key stakeholders from different internal and external entities as well as technical architects, solutions architects, and security specialists.
Last but not least, I assist management in enforcing approved policies, procedures, standards and guidelines.
TL;DR :
Security Architecture / Infrastructure Architecture
Excellent written/verbal/communication, listening and facilitation skills
Able to identify and document specific security issues, propose resolution options, and interpret matters from the perspective of involved stakeholders
Able to analyze technical risks and vulnerabilities and to design the appropriate network security pattern (firewalling, proxy, WAF, VPN, etc.)
Good understanding of security tools and mechanisms (IDS/IPS, antivirus, anti-malware, authentication mechanisms, IAM, PKI, encryption, etc.)
Risk analysis and security assessements
Knowledge of ISO 27002 and ISO 27005
Certified CISSP
ISO 27001 and ISO 27005 certs in progress.
Mes compétences :
Développement web
Administration système
Base de données
Sécurité des systèmes d'information
Gestion des accès
Project management
AMOA SI
Administration réseaux
Rationalisation des flux
Avant vente
Gestion des identités
Programmation orientée objet
Gestion des habilitations
Public Key Infrastructure
Sécurité informatique