Recommended expert
Krisztián Korcz
IT-Soc/Vulnerability
Experience
Apr 2024 - Present
1 year 10 monthsIT-Soc/Vulnerability
ITZBund
- Vulnerability management (Greenbone, Tenable SC, Rapid7)
- Automation of vulnerability scans
- OpenTofu (Terraform)/Ansible/Vault/Podman/Docker
- Compliance audit
- SOC (ElasticSearch, Graylog)
- Python/Rust/Bash/Shell/PowerShell
- Git collaboration
- Report standardization and automation
- POC for several vulnerability scanning systems
- Setup of vulnerability scanning system
Apr 2023 - Feb 2024
11 monthsIT Security Compliance Hardening Specialist
BWI / Thales Group
- ZCSBw/CIS/NIST/BSI Windows/Linux
- Hardening automation (JSON/PowerShell/Shell/Bash/Python)
- Hardening Linux
- Hardening Windows (Client/Server)
- Golden images Linux (Preseed/Kernel compile/TPM)
- Golden images Windows (Microsoft MDT)
- Tenable compliance audit scripting (Nessus)
- Rundeck automation
Sep 2022 - Dec 2023
1 year 4 monthsIT-Webcheck Team
ITZBund
- Penetration test (Burp, OWASP, Metasploit)
- Automation platform architecture
- Vulnerability management (OpenVAS, Nessus)
- SOC (ElasticSearch, Graylog)
- Collaboration penetration testing platform
- Report standardization and automation
- Expansion of the penetration testing concept
- Audit support
May 2021 - Mar 2024
2 years 11 monthsIT Network Security Team
ITZBund
- Firewall automation (Ansible/Python/Perl/Shell)
- Firewall installation (Cisco Firepower/ASA)
- Firewall configuration (CLI, ASDM, Automation)
- Cisco ISE administration
- API interface development (Tufin, DDI, BMC Remedy)
- DDoS and attack analysis (Arbor)
- Graylog analysis
Nov 2019 - Apr 2021
1 year 6 monthsIT Middleware Team
ITZBund
- Hardening (CIS/NIST)
- Deployment
- Automation
- Pentest/Audit risk analysis
- Log analysis (Splunk)
- Scripting (Bash/Python/CLI)
- JBoss/Tomcat/Apache
Feb 2019 - Oct 2019
9 monthsIT Cyber Security Consultant
Lufthansa Group
- Hardening (CIS/NIST) management
- Penetration test
- Vulnerability management (Qualys/Tenable SC)
- Web and application analysis (QRadar)
- Patch management
- Report automation (PowerShell)
- CERT (KeepBlue/DejaBlue)
Jun 2018 - Dec 2018
7 monthsIT Technical Consultant for Application, Infrastructure and Security
DB Investment Services
- Oracle WebLogic (Migration 10–12)
- Elasticsearch, Logstash, Kibana (ELK for log analysis and SIEM)
- Code review
- Hardening (CIS/NIST)
- Penetration test (OWASP Guideline)
- Vulnerability scan and analysis (Tenable SC)
- Infrastructure LAN/DMZ/Wireless test
- ActiveMQ/FUSE
- WLST/Python/Bash/KSH
- UC4
Feb 2018 - May 2018
4 monthsIT Security Penetration Tester
ECB via Airbus MSP
- Penetration test (OWASP Guideline)
- Vulnerability scan and analysis (Tenable SC)
- Infrastructure LAN/DMZ/Wireless test
- Web and application analysis (ArcSight)
- Mobile application test
Mar 2015 - Dec 2017
2 years 10 monthsTechnical Consultant Internet Portals Application Services
Commerzbank AG
- Operation/integration test setup for API management platform (Axway, MySQL, Cassandra)
- Infrastructure consulting for HA system
- Production and test environment setup
- Product deployment and configuration
- Coordination of online banking penetration test
- Coordination of ELK log analyzer rollout
- Regex scripting for anomaly detection
- Automation
- WebSphere Application Server 8.5
- Linux/Solaris
- Shell (Bash/KSH), Perl, Python
- HP Service Center/HP Service Manager
Jul 2014 - Dec 2014
6 monthsTechnical refresh of WebLogic and Java
Deutsche Bank Applikation Services
- Oracle WebLogic 12
- WLST/Jython
- Java 1.7
- IBM RCM
- TeamCity
- Sonar, Nexus/Maven
- Linux/Solaris
- Shell (Bash/KSH)
- Perl
- GCM/JIRA
Jan 2014 - Mar 2015
1 year 3 monthsTechnical Security and Risk Management
Deutsche Bank Trier
- System and infrastructure analysis
- Infrastructure architecture
- Technical solution architect
- Security and risk assessment
- Technical coordination of infrastructure integration
- Performance optimization
Apr 2013 - Dec 2013
9 monthsPatch and Security Management for Middleware and Web Servers
BASF
- Script automation (KSH/Bash/Perl)
- Apache Web/Tomcat
- Web server security (Apache/IIS) and monitoring
- WebSphere (WAS)
- BladeLogic (patch, deployment result monitoring and reporting)
- Configuration management (Subversion)
- LAMP system support
- Patch automation
- AHD ticketing system
Jul 2012 - Apr 2013
10 monthsBuild and Deployment Manager and Software Configuration Specialist
Deutsche Telekom AG
- Technical architect
- User, deployment, and security concept
- Configuration management (Subversion)
- Apache/Tomcat
- Maven/Ant/Groovy
- CI/CD (TeamCity/Jenkins/Nexus)
- Redline-RPM
- Subclipse
- Zypper
- Build/Deployment
- Bash/KSH/Groovy/Jython/XSLT scripting
- LAMTJ system support
- Jira ticketing system
May 2012 - Jun 2012
2 monthsSoftware Configuration Specialist
1&1 Internet AG
- Technical, user, deployment, and security concept
- Apache/Tomcat/JBoss
- Maven/Ant
- Jenkins/Puppet/Nexus
- Build/Deployment
- Nagios/Nimsoft (Zeus)
- LAMP system support
Sep 2011 - Dec 2011
4 monthsConsultant QTS TEDS
Deutsche Telekom AG
- LAMP (Linux, Apache, MySQL, PHP)
- IBM WebSphere MQ (Solaris & Linux)
- Configuration management (SVN, GIT)
- Build management (Maven, Ant, Jenkins, Nexus)
- Deployment (RPM, KSH/SH/Bash/PL)
- Middleware configuration (JBoss, Tomcat)
- Scripting and automation
- Agile method (Kanban)
Jan 2011 - Feb 2015
4 years 2 monthsCMS Web Development
Danubius Language and Culture Association Darmstadt e. V.
- Drupal installation
- Drupal configuration
- PHP patching
- Design (CSS development)
- MySQL administration
Jul 2010 - Jul 2011
1 year 1 monthSoftware Configuration Specialist
Deutsche Bank AG PBC IT
- IBM WebSphere MQ (Solaris)
- Configuration management
- Deployment
- Middleware configuration (Oracle WLS)
- IBM Tivoli Job Scheduler (Maestro)
- Veritas Cluster
- Scripting and automation (Bash/Perl/Jython/XSLT)
- Jira and GCM ticketing system
May 2008 - May 2010
2 years 1 monthDeployment Consultant at T-Com
SL Software Consulting
- Configuration management
- Release and rollout management
- Build and deployment management
- Middleware configuration (WebSphere, JBoss, Tomcat, WebLogic)
- Scripting and automation for deployment
- Unix/Linux administration (Solaris, SLES)
- Jira ticketing system
Jan 2008 - May 2008
5 monthsInfrastructure and System Analyst at RCO Terminal Systeme GmbH
DK Telecom Software Zrt.
- Network measurement for seven branches
- Network management
- Project management (network optimization)
- Network planning (T1/T2/T3 network)
- Network cost planning
Feb 2005 - Dec 2007
2 years 11 monthsSoftware Developer at CIDA GmbH
DK Telecom Software Zrt.
- MS Access database support
- MS VB6
- Linux server administration
- Oracle XE administration on SUSE Linux
- Testing new hardware and software
- Communication coordinator
Languages
Hungarian
NativeGerman
AdvancedEnglish
IntermediateEducation
Oct 2002 - Jun 2005
University of Pécs
Technical University Teaching Degree · Pécs, Hungary
Oct 2000 - Jun 2005
University of Pécs
Technical Computer Engineering Cybernetics - Robotics specialization, System Architect - Operator module · Pécs, Hungary
Oct 1996 - Jun 2000
Gergely Czuczor Catholic High School Győr
Győr, Hungary
Certifications & licenses
Advanced security clearance by the BMWi (Ü2) according to §9 SÜG
Reliability check according to §7 Aviation Security Act (LuftSiG)
OSCE - Offensive Security Certified Expert
OSCP - Offensive Security Certified Professional
Metasploit Ruby Scripting
Advanced Java (J2EE) Seminar
EC Forensic Analyze Basics
CEHv7 - Certified Ethical Hacker Seminar
Solaris 10 Operating System Administration For Experienced UNIX Administrator Course
Oracle DB Administrator "DK-Telekom Internal" Course
Cisco CCNA Course
Implementing and Administration of Microsoft Windows 2000 Directory Services
MS Course: "Basic Administration Of Microsoft Windows 2000"
Need a freelancer? Find your match in seconds.
Try FRATCH GPT More actions
Similar Freelancers
Discover other experts with similar qualifications and experience