Christoph Svoboda, Lead Consultant Information Security

Christoph Svoboda

Lead Consultant Information Security

Devoteam

Location
Austria
Education
Master's degree, Information Security
Experience
9 years, 10 Months

Share My Profile

Block User


Work Experience

Total years of experience :9 years, 10 Months

Lead Consultant Information Security at Devoteam
  • Austria - Vienna
  • My current job since September 2018

Selected Project References:
- Implementation ISMS (energy sector)
- Implementation Information Security Risk Management (chemical sector)
- Setup and Execution of 3rd Party Vendor Risk Management (chemical sector)
- Design of Factory Security Standard based on IEC 62443 (chemical sector)
- Execution of NIS-Audit (energy sector)
- Setup of Incident Management Process (including SIEM Use Case Design) (public transportation
sector, energy sector)
- Vendor negotiations of information security requirements for SCADA System procurement
(energy sector)
- Support in Incident Containment/Remediation (Quality Assurance, KPI definition and reporting)
(chemical sector)
- Design of vulnerability management process (energy sector)
- Consulting of Cryptography-related Topics for IT and OT Systems (energy sector, health sector,
satellite service provider)
- Security Concept for digitalization of Power Plants (including Network Architecture integration,
Threat Model, IIoT) (energy sector)
- Security Concept for Public Key Infrastructure (energy sector)
- Security Concept for MS Active Directory (energy sector)
- Planning and Design of IT and OT Networks (incl. Network Segmentation) (energy sector)

IT Security Consultant at Sec Consult
  • Austria - Vienna
  • August 2016 to August 2018

- Penetration Testing in IT and OT
- Project Manager of technical IT security audits
- Risk/Threat modeling
- Vendor Assessments
- Vendor Audits
- Execution of Penetration tests (incl. Red Team Methodology)
- Network Segmentation Design and Audit (internal + perimeter)
- Design and Audit Microsoft Active Directory (incl. multiple forests)
- Design of Security Architecture
- Workshops and Courses of various IT Security topics (e.g., awareness, hardening)
- Member of the following Competence Centers:
o Security Architecture
o Red Teaming
o Application Security Management

Devops Engineer at Federal Ministry of Interior - Austria
  • Austria - Vienna
  • August 2014 to July 2016

Design, implementation and operation of applications and systems with related data content to
Geographical Information Services (GIS)

Education

Master's degree, Information Security
  • at University Of Applied Sciences Of Technikum Vienna
  • June 2017
Bachelor's degree, Software Engineering
  • at Vienna University Of Technology
  • November 2015

Specialties & Skills

Information Security Management
Cryptography
ISO 27001
Vulnerability Management
Risk Management

Languages

English
Expert
German
Native Speaker

Training and Certifications

Offensive Security Certified Professional (OSCP) (Certificate)
Date Attended:
January 2018
Practitioner Certificate in Information Assurance Architecture (PCiIAA) (Certificate)
Date Attended:
February 2018
ISA/IEC 62443 Cybersecurity Fundamentals Specialist (Certificate)
Date Attended:
December 2020
ISA/IEC 62443 Cybersecurity Risk Assessment Specialist (Certificate)
Date Attended:
October 2021
Valid Until:
October 2024
ISA/IEC 62443 Cybersecurity Maintenance Specialist (Certificate)
Date Attended:
October 2022
Valid Until:
October 2025
ISA/IEC 62443 Cybersecurity Expert (Certificate)
Date Attended:
October 2022
Valid Until:
October 2025
ISA/IEC 62443 Cybersecurity Design Specialist (Certificate)
Date Attended:
October 2022
Valid Until:
October 2025