Recommended expert

Krisztián Korcz

IT-Soc/Vulnerability

Krisztián Korcz
Darmstadt, Germany

Experience

Apr 2024 - Present
1 year 10 months

IT-Soc/Vulnerability

ITZBund

  • Vulnerability management (Greenbone, Tenable SC, Rapid7)
  • Automation of vulnerability scans
  • OpenTofu (Terraform)/Ansible/Vault/Podman/Docker
  • Compliance audit
  • SOC (ElasticSearch, Graylog)
  • Python/Rust/Bash/Shell/PowerShell
  • Git collaboration
  • Report standardization and automation
  • POC for several vulnerability scanning systems
  • Setup of vulnerability scanning system
Apr 2023 - Feb 2024
11 months

IT Security Compliance Hardening Specialist

BWI / Thales Group

  • ZCSBw/CIS/NIST/BSI Windows/Linux
  • Hardening automation (JSON/PowerShell/Shell/Bash/Python)
  • Hardening Linux
  • Hardening Windows (Client/Server)
  • Golden images Linux (Preseed/Kernel compile/TPM)
  • Golden images Windows (Microsoft MDT)
  • Tenable compliance audit scripting (Nessus)
  • Rundeck automation
Sep 2022 - Dec 2023
1 year 4 months

IT-Webcheck Team

ITZBund

  • Penetration test (Burp, OWASP, Metasploit)
  • Automation platform architecture
  • Vulnerability management (OpenVAS, Nessus)
  • SOC (ElasticSearch, Graylog)
  • Collaboration penetration testing platform
  • Report standardization and automation
  • Expansion of the penetration testing concept
  • Audit support
May 2021 - Mar 2024
2 years 11 months

IT Network Security Team

ITZBund

  • Firewall automation (Ansible/Python/Perl/Shell)
  • Firewall installation (Cisco Firepower/ASA)
  • Firewall configuration (CLI, ASDM, Automation)
  • Cisco ISE administration
  • API interface development (Tufin, DDI, BMC Remedy)
  • DDoS and attack analysis (Arbor)
  • Graylog analysis
Nov 2019 - Apr 2021
1 year 6 months

IT Middleware Team

ITZBund

  • Hardening (CIS/NIST)
  • Deployment
  • Automation
  • Pentest/Audit risk analysis
  • Log analysis (Splunk)
  • Scripting (Bash/Python/CLI)
  • JBoss/Tomcat/Apache
Feb 2019 - Oct 2019
9 months

IT Cyber Security Consultant

Lufthansa Group

  • Hardening (CIS/NIST) management
  • Penetration test
  • Vulnerability management (Qualys/Tenable SC)
  • Web and application analysis (QRadar)
  • Patch management
  • Report automation (PowerShell)
  • CERT (KeepBlue/DejaBlue)
Jun 2018 - Dec 2018
7 months

IT Technical Consultant for Application, Infrastructure and Security

DB Investment Services

  • Oracle WebLogic (Migration 10–12)
  • Elasticsearch, Logstash, Kibana (ELK for log analysis and SIEM)
  • Code review
  • Hardening (CIS/NIST)
  • Penetration test (OWASP Guideline)
  • Vulnerability scan and analysis (Tenable SC)
  • Infrastructure LAN/DMZ/Wireless test
  • ActiveMQ/FUSE
  • WLST/Python/Bash/KSH
  • UC4
Feb 2018 - May 2018
4 months

IT Security Penetration Tester

ECB via Airbus MSP

  • Penetration test (OWASP Guideline)
  • Vulnerability scan and analysis (Tenable SC)
  • Infrastructure LAN/DMZ/Wireless test
  • Web and application analysis (ArcSight)
  • Mobile application test
Mar 2015 - Dec 2017
2 years 10 months

Technical Consultant Internet Portals Application Services

Commerzbank AG

  • Operation/integration test setup for API management platform (Axway, MySQL, Cassandra)
  • Infrastructure consulting for HA system
  • Production and test environment setup
  • Product deployment and configuration
  • Coordination of online banking penetration test
  • Coordination of ELK log analyzer rollout
  • Regex scripting for anomaly detection
  • Automation
  • WebSphere Application Server 8.5
  • Linux/Solaris
  • Shell (Bash/KSH), Perl, Python
  • HP Service Center/HP Service Manager
Jul 2014 - Dec 2014
6 months

Technical refresh of WebLogic and Java

Deutsche Bank Applikation Services

  • Oracle WebLogic 12
  • WLST/Jython
  • Java 1.7
  • IBM RCM
  • TeamCity
  • Sonar, Nexus/Maven
  • Linux/Solaris
  • Shell (Bash/KSH)
  • Perl
  • GCM/JIRA
Jan 2014 - Mar 2015
1 year 3 months

Technical Security and Risk Management

Deutsche Bank Trier

  • System and infrastructure analysis
  • Infrastructure architecture
  • Technical solution architect
  • Security and risk assessment
  • Technical coordination of infrastructure integration
  • Performance optimization
Apr 2013 - Dec 2013
9 months

Patch and Security Management for Middleware and Web Servers

BASF

  • Script automation (KSH/Bash/Perl)
  • Apache Web/Tomcat
  • Web server security (Apache/IIS) and monitoring
  • WebSphere (WAS)
  • BladeLogic (patch, deployment result monitoring and reporting)
  • Configuration management (Subversion)
  • LAMP system support
  • Patch automation
  • AHD ticketing system
Jul 2012 - Apr 2013
10 months

Build and Deployment Manager and Software Configuration Specialist

Deutsche Telekom AG

  • Technical architect
  • User, deployment, and security concept
  • Configuration management (Subversion)
  • Apache/Tomcat
  • Maven/Ant/Groovy
  • CI/CD (TeamCity/Jenkins/Nexus)
  • Redline-RPM
  • Subclipse
  • Zypper
  • Build/Deployment
  • Bash/KSH/Groovy/Jython/XSLT scripting
  • LAMTJ system support
  • Jira ticketing system
May 2012 - Jun 2012
2 months

Software Configuration Specialist

1&1 Internet AG

  • Technical, user, deployment, and security concept
  • Apache/Tomcat/JBoss
  • Maven/Ant
  • Jenkins/Puppet/Nexus
  • Build/Deployment
  • Nagios/Nimsoft (Zeus)
  • LAMP system support
Sep 2011 - Dec 2011
4 months

Consultant QTS TEDS

Deutsche Telekom AG

  • LAMP (Linux, Apache, MySQL, PHP)
  • IBM WebSphere MQ (Solaris & Linux)
  • Configuration management (SVN, GIT)
  • Build management (Maven, Ant, Jenkins, Nexus)
  • Deployment (RPM, KSH/SH/Bash/PL)
  • Middleware configuration (JBoss, Tomcat)
  • Scripting and automation
  • Agile method (Kanban)
Jan 2011 - Feb 2015
4 years 2 months

CMS Web Development

Danubius Language and Culture Association Darmstadt e. V.

  • Drupal installation
  • Drupal configuration
  • PHP patching
  • Design (CSS development)
  • MySQL administration
Jul 2010 - Jul 2011
1 year 1 month

Software Configuration Specialist

Deutsche Bank AG PBC IT

  • IBM WebSphere MQ (Solaris)
  • Configuration management
  • Deployment
  • Middleware configuration (Oracle WLS)
  • IBM Tivoli Job Scheduler (Maestro)
  • Veritas Cluster
  • Scripting and automation (Bash/Perl/Jython/XSLT)
  • Jira and GCM ticketing system
May 2008 - May 2010
2 years 1 month

Deployment Consultant at T-Com

SL Software Consulting

  • Configuration management
  • Release and rollout management
  • Build and deployment management
  • Middleware configuration (WebSphere, JBoss, Tomcat, WebLogic)
  • Scripting and automation for deployment
  • Unix/Linux administration (Solaris, SLES)
  • Jira ticketing system
Jan 2008 - May 2008
5 months

Infrastructure and System Analyst at RCO Terminal Systeme GmbH

DK Telecom Software Zrt.

  • Network measurement for seven branches
  • Network management
  • Project management (network optimization)
  • Network planning (T1/T2/T3 network)
  • Network cost planning
Feb 2005 - Dec 2007
2 years 11 months

Software Developer at CIDA GmbH

DK Telecom Software Zrt.

  • MS Access database support
  • MS VB6
  • Linux server administration
  • Oracle XE administration on SUSE Linux
  • Testing new hardware and software
  • Communication coordinator

Languages

Hungarian
Native
German
Advanced
English
Intermediate

Education

Oct 2002 - Jun 2005

University of Pécs

Technical University Teaching Degree · Pécs, Hungary

Oct 2000 - Jun 2005

University of Pécs

Technical Computer Engineering Cybernetics - Robotics specialization, System Architect - Operator module · Pécs, Hungary

Oct 1996 - Jun 2000

Gergely Czuczor Catholic High School Győr

Győr, Hungary

Certifications & licenses

Advanced security clearance by the BMWi (Ü2) according to §9 SÜG

Reliability check according to §7 Aviation Security Act (LuftSiG)

OSCE - Offensive Security Certified Expert

OSCP - Offensive Security Certified Professional

Metasploit Ruby Scripting

Advanced Java (J2EE) Seminar

EC Forensic Analyze Basics

CEHv7 - Certified Ethical Hacker Seminar

Solaris 10 Operating System Administration For Experienced UNIX Administrator Course

Oracle DB Administrator "DK-Telekom Internal" Course

Cisco CCNA Course

Implementing and Administration of Microsoft Windows 2000 Directory Services

MS Course: "Basic Administration Of Microsoft Windows 2000"

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions

Similar Freelancers

Discover other experts with similar qualifications and experience

Alexander Nagy
Alexander Nagy

Security Expert

View Profile
Christian Decker
Christian Decker

Managing Director and Senior Consultant

View Profile
Pierre Gronau
Pierre Gronau

Ansible Automation, Windows Third Level Support

View Profile
Niels Aerts
Niels Aerts

Azure Architect

View Profile
Bernhard Bowitz
Bernhard Bowitz

Senior Security Architect

View Profile
Erlijn Van genuchten
Erlijn Van genuchten

Science communicator and change manager

View Profile
Markus Willems
Markus Willems

KRITIS Consultant

View Profile
Alagi Mansaray
Alagi Mansaray

Senior Project Manager S4HANA in the Energy Sector

View Profile
Alexander Sänn
Alexander Sänn

Owner and Managing Director

View Profile
Rudolf Eggelbusch
Rudolf Eggelbusch

Datacenter Engineer, Network & Security Administrator

View Profile
Seyed farhad Miri
Seyed farhad Miri

Senior Product Security Engineer

View Profile
Christian Fox
Christian Fox

CRISC

View Profile
Martin Wilhelmi
Martin Wilhelmi

Security Auditor

View Profile
Maryam Mouzarani
Maryam Mouzarani

AI Red Team Engineer

View Profile
Valeri Milke
Valeri Milke

Associate Partner - Information Security Consulting

View Profile
Mike Barthel
Mike Barthel

System and Endpoint Hardening

View Profile
Christoph Holzer
Christoph Holzer

Managing Director; Senior IT Infrastructure & Cybersecurity Consultant

View Profile
Federico Leefhelm
Federico Leefhelm

ISO – Senior Consultant Quality & Information Security

View Profile
Christian Enderle
Christian Enderle

IT Consulting / IT Rebuild

View Profile
Tan Pham
Tan Pham

DevOps Engineer in the DevOps Team

View Profile
Matthias Steinmann
Matthias Steinmann

Senior Consultant Security (freelance)

View Profile
Evgenii Trembach
Evgenii Trembach

IT-Cybersecurity Engineer

View Profile
Christian Gebhardt
Christian Gebhardt

Deputy Chief Information Security Officer

View Profile
Stefan Radushev
Stefan Radushev

ISO27001 Certification

View Profile
Stanislaus Stelle
Stanislaus Stelle

Security Consultant at Rohde & Schwarz AG

View Profile
Stephan Selnerat
Stephan Selnerat

IT-Security Manager

View Profile
Syed ghazanfar Abbas
Syed ghazanfar Abbas

Information Security Consultant

View Profile
Volker Jung
Volker Jung

Interim CISO (Germany, Austria, US, APAC), Auditor

View Profile
Henryk Orantek
Henryk Orantek

Security Consultant

View Profile
Maxim Anikeev
Maxim Anikeev

External Lecturer (Privatdozent)

View Profile