Hemza ATOUB, Sr. CYBER SECUIRITY Consultant IT/OT  Certified IBM  QRadar| Arcsight SIEM | ISO 27k1 | ICS | 20 CSC

Hemza ATOUB

Sr. CYBER SECUIRITY Consultant IT/OT Certified IBM QRadar| Arcsight SIEM | ISO 27k1 | ICS | 20 CSC

CONFIDENTIAL

Location
Algeria
Education
High school or equivalent, Computer Science
Experience
11 years, 4 Months

Share My Profile

Block User


Work Experience

Total years of experience :11 years, 4 Months

Sr. CYBER SECUIRITY Consultant IT/OT Certified IBM QRadar| Arcsight SIEM | ISO 27k1 | ICS | 20 CSC at CONFIDENTIAL
  • Algeria - Algiers
  • My current job since January 2015

CONFIDENTIAL is the largest Algerian and African (OIL& GAS) company and the 11th largest oil consortium in the world.

• Experience with network technologies and with system, security, and network monitoring tools;
• Penetration-Testing IT Infrastructure;
• SOC Architecting and design,
• SIEM Deployment Roadmap, and Devise integration,
• SIEM Usecases: Designing, Implimenting, Customizing/ optimazing and Tuning;
• SOC Process / Procedures / Standards
• Incident Handling and RCA (Root Cause Analysis) According to NIST Framework;
• OT Security Awareness: Posters, E-mails, Vulnerability Feeds
• IT Security Awareness Campaigns: Planning, design and running Phishing Campaigns (Credential Harvesting, Ransomware Phishing Attacks…) for more than 14000 Users;
• Elaboration of security policy, procedures and standards for IT/OT;
• Auditing IT/OT Infrastructures;
• Identify and define system security Architecture and requirements;
• implement and monitor security measures for the protection of computer systems, networks and information;
• Administration and configuration IT Infrastructures: Network, systems, FW,
• Configuring and Troubleshooting Firewalls with high availability.
• Monitoring and troubleshooting firewall and configuring clustering, failover active/standby.
• Deep Packet Level Inspection & Analysis (tcpdump & other tools);
• Firewalls DPI and Rules troubleshooting and Optimization;
• Design system security architecture and develop detailed security designs;
• Prepare and document standard operating procedures and protocols;
• Configure and troubleshoot security infrastructure devices;
• Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks;
• Ensure that the company knows as much as possible, as quickly as possible about security incidents;
• Write comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement;
• Hands on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc.
• Problem solving skills and ability to work under pressure;

Network Security & Infrastructure Engineer at SAIDAL GROUP
  • Algeria - Algiers
  • January 2013 to January 2015

SAIDAL GROUP. SPA is the largest pharmaceutical company in Algeria and one of the largest in Africa.

• Administrate the network having more than 900 users and 11 remote locations ensuring uptime and load balancing.
• Investigate user and network problems, identify their source, determine possible solutions, test and implement solutions.
• Oversees the day-to-day health of the enterprise network infrastructure, with a focus on assuring network stability, capacity and organizational productivity.
• Manage Windows server infrastructure, increase use of Active Directory for management and assignment of Group Policy to improve automation, security and user controls. Manage DNS, DHCP infrastructure.
• Manage Site-to-Site replication
• Manage physical and virtual server infrastructure to ensure integrity and performance of environment; includes performance tuning, proactive maintenance and data backup.
• Provide support and assistance SAIDAL GROUP Remotes Sites IT Teams.
• Manage the configuration, deployment, maintenance and security processes for all security platforms.
• Architect, monitor and maintain security controls and systems within the I.T. infrastructure.
• Troubleshoot and address security vulnerabilities with hardware, systems and applications.
• Hands-on experience with the implementation and use of network monitoring, fault management and performance analysis tools,
• Manage internal network, DMZ and Internet facing servers. Monitoring Systems, Network, Appliances and Traffic vulnerabilities Inspection.
• Experience with site to site VPN and client to site VPN technologies.
• Significant experience with network security concepts, best practices, and technologies including, but not limited, to SSH, IPsec, RADIUS, firewall policies.
• Strong experience with WAN optimization, Inbound/outbound Traffic Management. Bandwidth Management and Traffic prioritization.
• Experience defining and implementing Access, QoS policies and Deep Packet Inspection.
• Troubleshoot problems and respond to alerts.
• ApplicaTion security, Application and content filtering, access control, encryption, and multi-factor authentication technologies.
• Experience in creating detailed Networks, solutions design documents & diagrams.

Education

High school or equivalent, Computer Science
  • at The Higher School of Computer Science
  • January 2011
Master's degree, Information Systems
  • at The Higher School of Computer Science
  • January 2011

courses: ex:

Specialties & Skills

IT Security
IP Networking
Windows Server
ACTIVE DIRECTORY
ANTI VIRUS
APACHE WEBSERVER
Network ARCHITECTURE
AUDITING
Linux, UNIX, CISCO IOS, FW IOS
TCP/IP, CPL, DHCP, DNS, NPS, SNMP,
NAT, VLAN, RIP, HTTP, FTP, POP,
OSPF, EIGRP, VoIP, VPN, DFS, Cluster, Ethernet, Internet;
R-DBMS: SQL, PostgreSQL, MySQL, MS SQL Server 2008,
System Administration : Windows Server (2003/2008)
DB Designing : Merise, UML, Entity/relationship.
Processes: 2TUP, UP;
Java/J2EE: JDBC, Architecture n-tiers (Basic), MVC, Client-Server, Jasper Report;
Tools: Enterprise Architect, Visual Paradigm, Power AMC, MS Visio 2007/2010;
Layer 2 & 3 Routing
QOS, VPN
IT Security
Internet and email filtering and firewalls,
SSL, encryption and content management.
SSL VPN
FW VPN IPS
IBM Security QRadar SIEM
Exchange Server 2003/2010
MS SharePoint 2010
Collaboration
SharePoint collaboration
Cisco Routing & switching
Network troubleshooting
FW / IPS Architect
SSL VPN Architect
Alfresco
Qradar IBM Security
Infrastructure Design
Arcsight
ISO 27005
ISO 27001
Risk Management
Cyber Security Frameworks
Windows (XP/2003/2008/20012/VISTA/7/8/10)
CYBERATTACKS
ISA/IEC 62443
ICS/OT CYBERSECURITY
NOZOMI GUARDIAN
NIST SP 800-820/52
ICS CYBERSECURITY ARCHITECTURE

Languages

Arabic
Expert
English
Expert
French
Expert

Training and Certifications

Certified ISO 27001 LEAD IMPLIMENTER (Certificate)
Date Attended:
January 2017
IBM Certified Deployement Professional - Security Qradar SIEM (Certificate)
Date Attended:
July 2016
F5 Configuring BIG-IP Local Traffic Manager (LTM) v13 (Training)
Training Institute:
The learning World
Date Attended:
February 2019
Duration:
30 hours
F5 Administrating BIG-IP v13 (Training)
Training Institute:
Learning World
Date Attended:
February 2019
Duration:
48 hours
StoneGate SSLVPN Architect (SGSSLA) (Certificate)
Date Attended:
February 2014
Valid Until:
February 2020
Security Management Center Administrator (SMCA) (Certificate)
Date Attended:
December 2014
Valid Until:
December 2020
IBM Security Intelligence Specialist (Certificate)
Date Attended:
December 2015
Valid Until:
December 2020
Cisco Access Control Server ACS v5.2 (Training)
Training Institute:
The Learning World
Date Attended:
October 2015
Duration:
30 hours
StoneSoft Firewall/VPN Architect (SFWA) (Certificate)
Date Attended:
January 2014
Valid Until:
January 2020
IBM Security QRadar SIEM 7.2 Administration and Configuration (Training)
Training Institute:
IBM Africa Technical Academy, Palace Events Algeries, Algeria
Date Attended:
November 2015
Duration:
72 hours
Computer Hacking Forensics Investigation (Certificate)
Date Attended:
September 2015
Valid Until:
September 2020
CISCO CCNA (Certificate)
Date Attended:
June 2012
Valid Until:
July 2015
IBM Security QRadar SIEM 7.2 Foundation (Training)
Training Institute:
IBM Africa Technical Academy, Palace Events Algeries, Algeria
Date Attended:
November 2015
Duration:
48 hours
Course 6747A: Planification and administration of Windows Server 2008 (Training)
Training Institute:
CETIC
Date Attended:
December 2014
Duration:
30 hours
SISAS Implementing Cisco Secure Access Solutions (Training)
Training Institute:
The Learning World
Date Attended:
September 2016
Duration:
30 hours
Course 6425C: Configuring and Troubleshooting Windows Server® 2008 Active Directory® Domain Services (Training)
Training Institute:
CETIC
Date Attended:
February 2014
Duration:
30 hours
Course 6435B: Designing Windows Server® 2008 Network and Applications Infrastructure (Training)
Training Institute:
CETIC
Date Attended:
January 2015
Duration:
30 hours
Course 10136A: Configuration, management and maintenance of Windows Server® 2008 servers (Training)
Training Institute:
CETIC
Date Attended:
February 2015
Duration:
30 hours
Course 6439A: Configuring and Troubleshooting Windows Server® 2008 Application Infrastructure (Training)
Training Institute:
CETIC
Date Attended:
September 2014
Duration:
30 hours
Course 6421B: Configuring and Troubleshooting a Windows Server® 2008 Network Infrastructure (Training)
Training Institute:
CETIC
Date Attended:
April 2014
Duration:
30 hours
Course 6426C: Configuring and Troubleshooting Identity and Access Solutions with Windows Server®2008 (Training)
Training Institute:
CETIC
Date Attended:
June 2014
Duration:
27 hours
IBM Certified Deployment Professional - Security QRadar SIEM (Certificate)
Date Attended:
June 2016
Valid Until:
January 9999
SENSS Implementing Cisco Edge Network Security (Training)
Training Institute:
The Learning World
Date Attended:
July 2016
Duration:
30 hours

Hobbies

  • Sport
    Judo, swimming, Volleyball…
  • Loisirs
    Fishing, Surf casting, Trainings, reading, Traveling, Technologies…