looking for Security Consultant / Security Analyst / Research Analyst position

From: Anton Chuvakin (antonat_private)
Date: Fri Sep 07 2001 - 12:25:03 PDT

  • Next message: marc towers: "Security Junior"

    Hello all,
    
    I am currently looking for the Information Security Analyst position on
    the East Coast (around NY and Boston preferred). I will also consider
    Infosec Consultant, Security Manager or Security Technical Writer
    positions for the right company.
    
    My plain text resume is included below (a full HTML version with links to
    supporting documents is available at http://www.chuvakin.org/resume). Some
    highlights follow:
    *Information security and risk assessment expertise
    *UNIX/Linux and network administration
    *C and Perl programming
    *Technical writing
    *Advanced research skills
    *Written and oral communication skills
    
    For some evidence of my previous work look at:
    At http://www.securitywatch.com
    Infosec Education http://www.securitywatch.com/EDU/fr_education.html
    Infosec Research: http://www.securitywatch.com/RES/fr_research.html
    Hack-of-the-Week series: http://www.securitywatch.com/EDU/hotw.html
    
    At http://www.securityfocus.com
    Linux Firewalls: http://securityfocus.com/focus/linux/articles/iptables.html
    Mobile web access stations security: http://securityfocus.com/focus/linux/articles/linkiosk.html
    
    The best way to contact me is email antonat_private or
    phone 917 825 4081.
    
    -----------------------------------RESUME----------------------------
                                   Anton Chuvakin
                                10 Maple Ave, Apt 2
                                  Andover MA 01810
                                 Phone 917-825-4081
                             E-mail antonat_private
                            WWW http://www.chuvakin.org
    
      Objective
    
       Information security analyst in a company where my advanced analytical
       skills, network administration experience, knowledge of UNIX security,
       research  content  development experience and persuasive communication
       skills are needed.
    
      Summary
    
       Information     security,     UNIX/Linux    administration,    network
       administration,  C  and  Perl programming, technical writing, advanced
       research skills, communication skills
    
      Skills
    
       Proficiency in programming languages
         * C   (designed   and   implemented   several  projects  in  numeric
           calculations,  network protocol modeling, system architecture etc)
         * Perl (wrote CGI scripts and system administration scripts)
         * Fortran (wrote and modified many numeric calculation programs)
         * Shell   scripting  languages  (wrote  many  system  administration
           scripts)
    
       Operating System Skills
    
       Administration:   Linux   (RedHat,   Slackware,   SuSE,   etc),   UNIX
       (SunOS/Solaris, FreeBSD)
       Use: Windows 9x/Me/NT 4.0, other UNIX
    
       Software skills
         * Apache  web server (including SSL), sendmail, DNS (bind), qpopper,
           pppd,  GNU  development tools (emacs/Xemacs, gdb, gprof, cvs, gcc,
           g77,  dbx,  f2c  etc), MiniVend e-commerce software, miscellaneous
           system  administration  tools  (linuxconf, rsync, backup software,
           etc),  network  utilities  (ping, nslookup, netcat, etc), XFree86,
           LaTeX publishing system, etc
         * Security tools ( attack tools: nmap, Nessus vulnerability scanner,
           idlescan, hping2, SAINT, SARA, CGI scanners, password crackers;
           defense  tools:  Tripwire  intrusion  detection  system (IDS), tcp
           wrappers,  xinetd, COPS, secure syslog, pgp, gpg, firewall toolkit
           (FWTK),  Linux firewall ipchains/iptables, portsentry IDS, swatch,
           logcheck,  secure  shell  (ssh),  tcpdump, ethereal sniffer, snort
           network IDS, IPSec tools (FreeS/WAN for Linux) etc
    
       Technical writing skills
         * Author   of   many   information   security  papers  published  on
           SecurityWatch in Research and Education Sections
         * Designer and author of Information Security FAQs for SecurityWatch
         * Author of Hack-of-the-Week series for SecurityWatch
         * Author  and  maintainer  of  "'Pocket'  ISP  based on RedHat Linux
           HOWTO" and "Linux web browser station mini-HOWTO"
         * Articles  "Access  the Web Anywhere" in Linux Journal, "Comparison
           of  iptables  automation  tools"  and  "Linux  Internet Kiosks" at
           SecurityFocus.com
         * Article     NLP-powered     Social    Engineering    Attacks    on
           SecurityFocus.com
         * Maintainer of the site with information security book reviews
    
       Other skills
         * Web  page  design (HTML, CGI, SSI, JavaScript, look at my personal
           site)
         * TCP/IP  and  application  (SMTP,  HTTP,  POP3,  FTP,  telnet, etc)
           protocol knowledge
         * Hardware setup and troubleshooting in UNIX and Windows
         * Familiarity with Cisco router configuration
         * Excellent written and oral communications skills to both technical
           and non-technical audience
         * Quick  learning  of  advanced  concepts  in  the  area of security
           research, effective team worker, good presentation skills
         * Knowledge  of  hacker  attack techniques (buffer overflows, format
           strings, etc)
         * Interest  in  security  research, cryptography, PKI, vulnerability
           analysis, penetration testing and security policy compliance
    
      Professional experience
    
       May 2001 - September 2001 Ubizen, Inc., Andover, MA
       Security Research Analyst
         * Designed   Information   Security  Research  Strategy  for  Ubizen
           information security portal site SecurityWatch.com
         * Conducted security research on variety of infosec subjects
         * Created content for Research and Education Sections of the website
         * Designed digital risks strategy for SecurityWatch
         * Participated  in vertical market security strategy development for
           SecurityWatch
    
       February 1999 - May 2001 Direct Access Communications, Stony Brook, NY
       System and Network Administrator
         * Maintained small ISP Linux/Solaris network
         * Analyzed network performance using tcpdump and other tools
         * Configured dialup access
         * Upgraded UNIX OS
         * Configured  network services (DNS, mail, www, ftp, etc) and access
           control
         * Installed hardened Linux servers and workstations
         * Evaluated site security using open-source security tools
         * Provided system logs security monitoring
         * Solved network and system problems
         * Developed custom CGI scripts in Perl
         * Analyzed available e-commerce solutions for Linux
    
       April   2000  -  May  2001  Miscellaneous,  including  NetPhoenix.com,
       Carrboro, NC
       Consultant
         * Advised on Linux security
         * Provided support on Linux administration (RedHat)
         * Developed  Linux  web  browsing  station  for deployment in public
           places (featured in Linux Journal article)
    
       September 1996 - May 2001 SUNY at Stony Brook, Stony Brook, NY
       Graduate Assistant
         * Developed programs for numeric calculations of subatomic structure
           functions  (in  C  and  Fortran)  for  my  Ph.D. project using GNU
           development tools
    
       March 1996 - September 1996 JSC Ballada, Moscow, Russia
       Web Designer
         * Designed small company web site
    
      Education
    
       September 1996 - May 2001 SUNY Stony Brook, Stony Brook, NY
       Ph.D. in Theoretical Physics My publication list.
       September  1990  -  September  1996  Moscow  State University, Moscow,
       Russia
       Diploma in Physics Equivalent to M.S. degree.
    
      Relevant courses taken
    
         * Operating Systems Design (C++ programming for OS modification)
         * Computer   Network   Communication   Protocols  (network  protocol
           simulation in C)
         * Project   in   Distributed   Computing   Design   (simulation   of
           multiprocessor system in C)
         * Introduction to Software Engineering
         * Analysis of Algorithms
         * Simulation and Modeling (SimScript II.5 for modeling)
         * Computer security: vulnerabilities, attacks and defenses (included
           attack code design in C)
    
      Certification
    
       Brainbench.com  certified  Master Internet Security Specialist, Master
       Linux    Administrator,   Master   UNIX   Administrator   and   RedHat
       Administrator (transcript ID #130495)
    
      Professional Membership
    
       ISSA (Information Systems Security Association), New England Chapter
    
      Hobbies
    
       Communication Psychology. For more information see personal website.
    
    -------------------------------RESUME----------------------------
    
    Best regards,
    -- 
            Anton A. Chuvakin
    === You either succeed or learn! ===
         http://www.chuvakin.org
              licq: 29034084
    



    This archive was generated by hypermail 2b30 : Fri Sep 07 2001 - 16:12:09 PDT