Christoph Svoboda, Lead Consultant Information Security

Christoph Svoboda

Lead Consultant Information Security

Devoteam

البلد
النمسا
التعليم
ماجستير, Information Security
الخبرات
9 years, 10 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :9 years, 10 أشهر

Lead Consultant Information Security في Devoteam
  • النمسا - Vienna
  • أشغل هذه الوظيفة منذ سبتمبر 2018

Selected Project References:
- Implementation ISMS (energy sector)
- Implementation Information Security Risk Management (chemical sector)
- Setup and Execution of 3rd Party Vendor Risk Management (chemical sector)
- Design of Factory Security Standard based on IEC 62443 (chemical sector)
- Execution of NIS-Audit (energy sector)
- Setup of Incident Management Process (including SIEM Use Case Design) (public transportation
sector, energy sector)
- Vendor negotiations of information security requirements for SCADA System procurement
(energy sector)
- Support in Incident Containment/Remediation (Quality Assurance, KPI definition and reporting)
(chemical sector)
- Design of vulnerability management process (energy sector)
- Consulting of Cryptography-related Topics for IT and OT Systems (energy sector, health sector,
satellite service provider)
- Security Concept for digitalization of Power Plants (including Network Architecture integration,
Threat Model, IIoT) (energy sector)
- Security Concept for Public Key Infrastructure (energy sector)
- Security Concept for MS Active Directory (energy sector)
- Planning and Design of IT and OT Networks (incl. Network Segmentation) (energy sector)

IT Security Consultant في Sec Consult
  • النمسا - Vienna
  • أغسطس 2016 إلى أغسطس 2018

- Penetration Testing in IT and OT
- Project Manager of technical IT security audits
- Risk/Threat modeling
- Vendor Assessments
- Vendor Audits
- Execution of Penetration tests (incl. Red Team Methodology)
- Network Segmentation Design and Audit (internal + perimeter)
- Design and Audit Microsoft Active Directory (incl. multiple forests)
- Design of Security Architecture
- Workshops and Courses of various IT Security topics (e.g., awareness, hardening)
- Member of the following Competence Centers:
o Security Architecture
o Red Teaming
o Application Security Management

Devops Engineer في Federal Ministry of Interior - Austria
  • النمسا - Vienna
  • أغسطس 2014 إلى يوليو 2016

Design, implementation and operation of applications and systems with related data content to
Geographical Information Services (GIS)

الخلفية التعليمية

ماجستير, Information Security
  • في University Of Applied Sciences Of Technikum Vienna
  • يونيو 2017
بكالوريوس, Software Engineering
  • في Vienna University Of Technology
  • نوفمبر 2015

Specialties & Skills

Information Security Management
Cryptography
ISO 27001
Vulnerability Management
Risk Management

اللغات

الانجليزية
متمرّس
الالمانية
اللغة الأم

التدريب و الشهادات

Offensive Security Certified Professional (OSCP) (الشهادة)
تاريخ الدورة:
January 2018
Practitioner Certificate in Information Assurance Architecture (PCiIAA) (الشهادة)
تاريخ الدورة:
February 2018
ISA/IEC 62443 Cybersecurity Fundamentals Specialist (الشهادة)
تاريخ الدورة:
December 2020
ISA/IEC 62443 Cybersecurity Risk Assessment Specialist (الشهادة)
تاريخ الدورة:
October 2021
صالحة لغاية:
October 2024
ISA/IEC 62443 Cybersecurity Maintenance Specialist (الشهادة)
تاريخ الدورة:
October 2022
صالحة لغاية:
October 2025
ISA/IEC 62443 Cybersecurity Expert (الشهادة)
تاريخ الدورة:
October 2022
صالحة لغاية:
October 2025
ISA/IEC 62443 Cybersecurity Design Specialist (الشهادة)
تاريخ الدورة:
October 2022
صالحة لغاية:
October 2025