Markus Malewski

sucht ein neues Team-Mitglied.

Angestellt, Search ≠ SIEM | Serious IT Security Monitoring, _

Niederkrüchten, Deutschland

Fähigkeiten und Kenntnisse

Information Security Analyst
Intrusion Detection & Analysis (GCIA - certified)
Network Penetration Testing (GPEN - certified)
Incident Handling (GCIH - certified)
Computer Hacking Forensic Investigator v9 (CHFI -
in-depth event and packet analysis
Intrusion Detection System
Intrusion Prevention System
Network Performance Reporting
Network Monitoring
Asset Management via SNMP
UNIX
Linux
Windows
Perl-Programmierung
Cyber Security
Threat Hunting
Threat Intelligence
ITILv3 Foundation
Computer Emergency Response Team (CERT)
Cybersecurity Consulting
IT-Security
Security Operations Center (SOC)
Security Information and Event Management (SIEM)
Mitarbeiterentwicklung
Information security
Information security management
Lösung
IT Security
IT-Security Management
IT Security Operations
Talentmanagement
Vulnerability Assessment
Logfile Analyse
IDS
IPS
TCP/IP Protokoll
UDP
SNMP
ArcSight
Splunk
Elastic
Elasticsearch
Reporting
Metriken
Management
Abteilungsleitung
Business Development
Security information and event management
Security Monitoring
Security Operations Center
Strategieentwicklung
Mitarbeiterführung
Führung
Erfahrung
Engagement
strategisch
Kreativität
Motivation
Technisches Verständnis
Verantwortungsbewusstsein
Belastbarkeit
Begeisterungsfähigkeit
Seriosität
Teamfähigkeit
Selbstständigkeit

Werdegang

Berufserfahrung von Markus Malewski

  • Bis heute 2 Jahre und 10 Monate, seit Aug. 2021

    Vice President Cyber Defense

    -

  • Bis heute 13 Jahre und 6 Monate, seit Dez. 2010

    Search ≠ SIEM | Serious IT Security Monitoring

    _

  • 2 Jahre und 4 Monate, Apr. 2019 - Juli 2021

    Head of Security Operations Center (SOC / SIEM)

    ThyssenKrupp Business Services GmbH - GSS IT

    In meiner derzeitigen Rolle als Head of SOC bin ich für den Betrieb eines globalen Security Monitoring Service verantwortlich: # Entwicklung strategischer, taktischer und operativer Lösungen # Aufbau eines Teams von Sicherheitsexperten für den Betrieb des SOC / SIEM Dienstes # Fachexperte für SOC / SIEM relevante Themen

  • 11 Monate, Juni 2018 - Apr. 2019

    SOC Manager

    ThyssenKrupp Business Services GmbH - GSS IT

    Project Lead to built an in-house solution for a thyssenkrupp global SOC/SIEM Service. Develop strategical, tactical and operational solution for an in-house SOC/SIEM service. Represent GSS IT Security Services on subject matter expert round table for SOC/SIEM topics. Participate in management meetings and working actively on improvement projects to enhance the strategical and tactical cyber threat mitigation capabilities. Built a team of Security professionals to run SOC/SIEM service.

  • 9 Monate, Sep. 2017 - Mai 2018

    IT-Security Consultant CERT

    ThyssenKrupp Business Services GmbH - GSS IT

    Represent CERT in contract negotiations with service providers for a SOC/SIEM as a Service solution. Enhance an analytics platform, detection and visualization methods for monitoring and threat hunting purposes. Supported incident management to evaluate and assign threats to customers.

  • 5 Monate, Apr. 2017 - Aug. 2017

    Senior Consultant Cybersecurity

    CGI Deutschland Ltd. & Co. KG

    Develop and design of SOC/SIEM as a Service solution for SMB and enterprise business in D-A-CH region. Participate in bid management to fulfil requirements for proposal of SOC/SIEM as a Service solution. Prepare and actively participate in bid presentation for SOC/SIEM as a Service solution offering at customer site. Responsible for planning of the SOC/SIEM Service transition to business readiness. Represent the Cybersecurity Practice at customer meetings.

  • 1 Jahr und 8 Monate, Aug. 2015 - März 2017

    SIEM Technical Specialist

    Hewlett-Packard Germany GmbH

    Ensure the optimal operation of SIEM monitoring content. Built on and continuously improve the SOC analytics framework. Ensure relevant knowledge transfer to all SOC team. Provide professional data analysis to drive further security measures and risk mitigation activities. Conduct proof of concepts for analysing and interpreting log events for threat assessment. Represent the SOC on in-house fairs and at customer meetings. End to end responsibility for on-boarding of new customers in regard to SIEM content.

  • 2 Jahre und 7 Monate, Jan. 2013 - Juli 2015

    L2 Security Analyst

    Vodafone Group Services GmbH, Düsseldorf

    Functional lead of a Global Security Operations Center and related analytics as well as underlying processes and tools. Security expert with technical understanding of common enterprise infrastructure security aspects. Interprets internal issues and external business issues and recommends best practices. Mentor of an international team of 1st level security analysts. Supports threat intelligence and security incident response teams. Defines technical concepts, processes, procedures and guidelines.

  • 2 Jahre und 2 Monate, Nov. 2010 - Dez. 2012

    L1 Security analyst

    Vodafone Group Services GmbH, Düsseldorf

    Perform real-time IT security monitoring and analysis for large enterprise in shift work. Take responsibility for in-depth analysis of events discovered. Identify and validate threats by data analysis with the wide range of security tools and defence line products. Triage of security events and escalation of incidents to security incident management team. Provide technical security expertise in order to provide professional data analysis reports for further corrective actions and security measures.

  • 7 Jahre und 11 Monate, Jan. 2003 - Nov. 2010

    Monitoring Administration Specialist

    Vodafone Group Services GmbH

    Responsible for operation and maintenance of network monitoring and reporting platforms. Development of behaviour models (use cases) for monitoring purposes. Troubleshooting of 2nd and 3rd level monitoring platform issues and 24h on call duty. Close interaction with problem management, incident management and customers' technical department. Provide trainings for Service Operation Center operator staff and 2nd level support teams.

  • 2 Jahre und 7 Monate, Juni 2000 - Dez. 2002

    DV - Koordinator

    Vodafone D2 GmbH

    Perform real-time IT infrastructure and application monitoring for Network Operations Center (NOC) in shift work. Triage of monitoring alerts and escalation of incidents to responsible operational teams and service owner as well as major incident management.

  • 1 Jahr und 7 Monate, Nov. 1998 - Mai 2000

    staatl. geprüfter DV- Techniker

    Elektro Lücking

Ausbildung von Markus Malewski

  • 10 Monate, März 1999 - Dez. 1999

    Technische Akademie Wuppertal

  • 1 Jahr und 11 Monate, Aug. 1995 - Juni 1997

    Elektrotechnik

    Fachshule für Technik, BKU

    Datenverarbeitung

Sprachen

  • Deutsch

    -

  • Englisch

    -

Interessen

IT-Network
Handwerken
Elektrotechnik
ehome
Familie
Laufen
Freizeit Western reiten
Bogenschiessen

21 Mio. XING Mitglieder, von A bis Z