Команда IT профессионалов
Cyber Security - Consulting - Threat Intelligence
Отслеживание угроз – одна из важнейших процедур, обеспечивающих эффективную защиту бизнеса. TI – это сервис, позволяющий узнавать об угрозах, атаках и уязвимостях нулевого дня до того, как они смогут вам навредить. В случаях, если инцидент все же произошел, TI позволит быстро отреагировать, произвести анализ и расследование инцидента.
Решение Next Generation Firewall объединяет в себе разнообразные по функционалу модули, предназначенные для защиты от сетевых вторжений, что позволяет избежать дополнительных расходов на оборудование. Поддерживается интеграция с существующими инфраструктурными решениями и системами информационной безопасности. Производетельность решения выше, чем у других современных платформ, весь функционал можно использовать без потери скорости обработки данных. Усовершенствованная система мониторинга трафика блокирует до 99,4% сетевых угроз и обеспечивает гибкость системы безопасности, позволяя настроить политики безопасности в соответствии с требованиями регуляторов и внутренними регламентами
Анализ вирусов
При обнаружении неизвестного вируса или при подозрении на вирусное заражение передайте нам зараженный файл. Вирус будет исследован в нашей лаборатории, в изолированной среде. Мы выясним механизм работы и цели вируса, способы противодействия и нейтрализации. По завершении анализа предоставляется отчет содержащий всю собранную нами информацию о вирусе и рекомендации по ликвидации заражения.
Расследование вирусного заражения
При выявлении вирусного заражения или подозрении в заражении наш специалист проведет расследование, чтобы найти программную, аппаратную, сетевую или другую уязвимость, с помощью которой вирус проник в инфраструктуру. По завершении анализа предоставляется отчет содержащий всю собранную в процессе расследования информацию о точке, времени и способе проникновения вируса в инфраструктуру, а также рекомендации по модификации системы безопасности.
Мы предлагаем детальное обследование инфраструктуры компании, по результатам которого вы получите подробный отчет о текущем состоянии и уязвимостях системы информационной безопасности, оценку рисков, а также рекомендации по повышению эффективности функционирования системы, рационализации и сокращению затрат на ИТ-сферу.
Витруализация - это комплекс технологий для обеспечения удаленной работы. Пользователи получают полностью готовое к работе стандартизированное виртуальное рабочее место, доступ к которому осуществляется через локальную сеть или Интернет, а в качестве терминала может использоваться ПК, ноутбук или смартфон. Устройство доступа используется в качестве тонкого клиента, требования к нему минимальны - это удешевляет работу.
Аналитическое устройство предоставляется вам в аренду сроком до двух недель. В течение этого периода устройство собирает данные о событиях и инцидентах в инфраструктуре, которые анализируются как нашими специалистами, так и SIEM системой. После проведения анализа собранных данных, предоставляется отчет о найденных уязвимостях и вирусной активности, а также даются рекомендации по улучшению системы информационной безопасности в виде списка необходимых мер.
Svetlana Pershova
+375-29-641-92-98
Minsk Belarus
Pesonal qualities
- High level of self-organization, find effective ways to perform tasks.
- Responsibility and rationality, accuracy in work
- High learning ability, ability to work in stressful situations
Languages
Russian - native
English – B1/B2
Experience
LBR 2020-…
Project Manager
MINSK, BELARUS
- Projects Delivery;
- Work with Development Team (including Designers, Developers, QA Engineers);
- Timely Informing about Delivery Date Changes, Issues, Solution;
- Maintaining Accurate Information about the Project Status Daily Basis;
- Project Status Report
- Create and Maintain Documentation
- Determine the Monetisation Strategy
V-Office LLP 06.2018-06.2019
Project Manager
ALMATY, KAZAKHSTAN
- Building the Relationship with the Customers (Calls, Presentations, Negotiations, Email, Exhibitions) etc.
- Work with Development Team (including Designers, Developers, QA Engineers);
- Pulling and Pushing Developers Team
- Preparation of a Commercial Proposal
- Contract Negotiation and Establishing Service Agreements with Customers
- Maintaining Accurate Information about the Project Status Daily Basis.
- Timely Informing about Delivery Date Changes, Issues, Solution
- Project Status Report
OrientSwiss Kazakhstan LLP 07.2017 - 04.2018
Sales manager
ALMATY, KAZAKHSTAN
- Collect and Manage Project Team
- Maintaining Accurate Information about the Project Status Daily Basis.
- Timely Informing about Delivery Date Changes, Issues, Solution Evaluate and Assess Result of Project Preparation and Participation in the Road Show in Kazakhstan for Customers
- Building the Relationship with the Customers (Calls, Presentations, Negotiations, Email, Exhibitions) etc.
- Preparation of a Commercial Proposal
- Sales Management and Reporting to Director
PCD Trade LLP 2014 - 2017
Project manager
ALMATY, KAZAKHSTAN
- Sells Services and Goods to Customers Supplier Price
- Negotiations with Suppliers about Good Prices and Delivery Conditions for Customers
- Control Preparation of a Presentation for the Customer Preparation of a Commercial Proposal
- Contract Negotiation and Establishing Agreements With customers
- Tracking Delivery of Goods to the Customer’s Warehouse
Atol LLP 2008 - 2014
Project Manager
ALMATY, KAZAKHSTAN
- Sells Services and Goods to Customers Supplier / Price Analysis
- Negotiations with Suppliers about Good Prices and Delivery Conditions for Customers
- Preparation of a Presentation for the Customer Preparation of a Commercial Proposal
- Contract Negotiation and Establishing Agreements With customers
- Tracking Delivery of Goods to the Customer’s Warehouse/ Customer Payment Control
Education/Certification
FacultyEconomics 2004 - 2007 Central Asian University,
Courses Accounting “Accounting Central House” 2008: - 1C: Accounting 7.7 - Statistical data forms - Electronic tax forms
English courses 2017
Dr WEB, Certified user of Dr WEB Anti-Virus for Business 2018
Specialized courses ALISON https://alison.com Fundamentals of Operations Management 2019
Specialized courses ALISON https://alison.com Project Management - Quality, Risk, Procurement and Project Closeout 2019
Specialized courses ALISON https://alison.com Project Management Basics: Project Management / Project Life Cycle 2019
Additional skills
- Strong knowlege in Microsoft (Word, Excel, Power Point, Outlook etc.)
- CRM, ERP, ECM User (1C, Odoo, Bitrix, Motiv);
- Strong knowlege in SCRUM, AGILE, Waterfall, PMBoK etc.
- Driver’s license (cat. B)
Ivan Kutov
linkedin | Almaty, Kazakhstan |
I work in IT field, since 2004 and have rich experience in:
- Enterprise infrastructure setting up and support, including various network and server equipment.
- Developing information security strategy, processes, policies, tender document technical specifications, manuals.
- Conducting different security products pilots.
Experience
V-office LLP (Kazakhstan), Information Security Advisor May 2017 – Present
Systems integrator company responsibilities:
- Information security audit and/or Penetration testing
- Company and customers processes optimization/development
- Information security Training for internal stuff (skills improvement, cyber security awareness)
- Customer infrastructure optimization
- Pilot project implementation with further deployment into production
- Securing business processes
- Cloud and network administration
SOC (security operation center) as a service for telecom/service provider company:
- ISMS administration and control
- Incident response
- Forensics
- Vulnerability management
** Corporate Business Systems (Kazakhstan), Information Security Advisor\Engineer**
June 2019 – Present
Work with information security vendors:
Check Point, PaloAlto, Fortigate, Cisco, IBM, McAfee, Symantec, Positive Technologies, Fudo PAM, Wallix, CyberArk, Microsoft.
- Infrastructure Audit.
- Information security audit
- Threat Inteligence analysis.
- Securing business processes
- Development of Information Security strategy.
- Development of regulatory documents
Life 2 Win LLP (Almaty), Information Security Engineer May 2017 – Nov 2017 7 months
Work with information security vendors: Check Point, PaloAlto, Kaspersky KATA, McAfee, Symantec DLP. Fortigate, Positive Technologies
- Infrastructure Audit.
- Information security audit and/or Penetration testing
- Development of Information Security strategy.
- Threat Inteligence analysis.
- Securing business processes
Softline LLP (Almaty), Information Security Engineer Oct 2015 – Apr 2017 1 year 7 months
Work with information security vendors: McAfee, Balabit SCB, PaloAlto, Dell, Trustwave, PT, Fotrigate, Symantec, Splunk, FireEye.
- Pilot project implementation with further deployment into production
- Company and customers processes optimization/development;
- Information security Training for internal stuff (skills improvement, cyber security awareness);
NURBANK (Almaty), Senior Information Security Engineer Jul 2014 – Oct 2015 1 year 4 months
- Implementation and support of Email gateway, Web gateway control systems
- Implementation of SIEM, IDS, Change Control systems
- Management of DLP, Cisco CSA,
- Identifying vulnerabilities, checking for possible hacking systems.
- Administration of Windows and Linux servers.
- PCI DSS Compliance
IRIS Enterprise Services LLP (Almaty), Outstaff Engineer Jul 2013 – Jul 2014 1 year 1 months
- Administration Windows servers 2008r2, 2012R2 (AD, DHCP, DNS, Mail, Proxy, 1C, terminal servers, Hyper-V)
- Work with Linux systems (Ubuntu, Debian, Centos)
- Configuring network systems (NAT, VPN, Routing, Firewall)
- Project managment.
- Helpdesk.
MS-Service (Almaty), Outsourcing Engineer Jan 2009 – May 2013 4 years 5 months
- Support Windows servers (AD, DHCP, DNS, Mail, Proxy, 1C, Vmware ESXI)
- Work with Linux systems (Ubuntu, Mandriva)
- Work with SAP, Cognos, VPN, Citrix XenDesktop, Cisco systems.
- Helpdesk.
Indoor Television LLP (Almaty), Software Specialist, video engineer Sep 2007 – Jun 2008 10 months
- Development and processing of promotional movies
- Development and support of software
- Assembly of computers, software installation
Alser computers LLP (Almaty), Computer assembly, tester Jul 2004 – May 2005 11 months
- Assembly of computers
- Install and configure software
- Testing and maintenance hardware and software
Core Competence
Network device vendors: Fortigate, Palo Alto Networks, Check Point, Cisco, Vmware NSX, Juniper SRX*, Opensource products
Virtual platforms: VMWare, VCloud director, Citrix XenServer, Citrix XenApp, KVM, Vagrant.
Operation systems: FreeBSD, Debian, CentOS, Ubuntu, Microsoft Windows Servers
Security:
SIEM – McAfee, Splunk, IBM Qradar, Arcsight, PT.
Mail gateway - McAfee, Kaspersky, Cisco.
Web gateway - McAfee, Forcepoint, Kaspersky, Paloalto, Fortigate, Cisco.
Endpoint - McAfee, Kaspersky, Checkpoint, Trendmicro.
WAF – Trustwave, PositiveTechnology, F5, Imperva.
DLP – McAfee, Symantec, Infowatch, Garda, Websense, Devicelock, GTB, IP guard.
PAM - Balabit SCB, CyberArk, Fudo, Wallix.
ATD – McAfee, Kaspersky, Checkpoint, FireEye.
Nac - ForeScout.
ICS - CyberX.
Backup – Symantec, Veritas, Dell, Comvault.
Kali tools.
Education
Turan University, Almaty, Kazakhstan.
Bachelor, Computing Equipment and Automated Systems
Dates attended or expected graduation 2008 – 2011
Central-Asia Technical and Economic College, Almaty, Kazakhstan.
Programming engineer, Cumputer programming
Dates attended or expected graduation 2005 – 2008
Certifications and trainings
- ISO/IEC 27000-27007; ISO/IEC 27011;
- Deployment, administration and configuration of F5 BIG-IP
- FudoPAM Security Certified Administrator
- Wallix Certified Professional / WCP-P
- BQ203 IBM® QRadar SIEM Advanced Topics
- IBM Power Systems for AIX - Virtualization I
- IBM Elastic Storage System (ES)
- Thycotic International Pre-Sales Engineer
- Infowatch DLP
- Palo Alto PSE: Strata Associate
- Palo Alto PSE: Foundamentals
- Fortinet Teleworker Solution: Engineered for Remote and Secure Productivity v6.2
- Fortinet NSE ZTNA Series
- McAfee EMEA Database Security
- McAfee EMEA Ad Hoc
- McAfee NSP lc
- McAfee ePO 5.1 lc
- McAfee EWS lc
- McAfee SIEM ACE
- McAfee DLP ACE
- McAfee NSP ACE
- MCP: Microsoft Certified Professional
Alexey Alexeyenko
linkedin | Astana, Kazakhstan | mobile: +7 701 7015340370 | [email protected]
Experience
**АО Транстелеком ** April 2017 – April 2019 (2 year)
- Системный администратор облочной ситемы интеллектуальной видеоаналитики KIPOD
АО «Национальная компания «Астана ЭКСПО-2017» April 2017 - April 2017 (6 months)
- Сетевой администратор (CISCO)
ТОО KT Cloud Lab April 2013 – April 2017 (4 year)
- внедрение и сопровождение облачной системы электронного документооборота,
- создание и ввод в эксплуатацию единой корпоративной сети республиканского контакт-центра (Астана, Караганда, Алматы)
- Администрировании программно –аппаратного комплекса республиканского контакт
АО «Казахтелеком» Дирекция информационных систем (группа внешних проектов) Сентябрь 2010 – April 2013 (2 year 8 month)
- Администрирование электронного документооборота на базе LOTUS NOTES (основная обязанность)
- Сетевой администратор (CISCO)
АО Республиканский диагностический центр March 2008 – September 2010 (2 year 7 month)
- Сетевой администратор (CISCO)
- Обслуживание систем видео наблюдения
- Техническая поддержка пользователей
АО «Казахтелеком», Дальняя связь March 2006 — March 2008 (2 year)
- внедрение электронного документооборота в филиалах и обучение пользователей.
- Техническая поддержка 5 серверов на базе LOTUS DOMINO и их кластеров
- Техническая поддержка пользователей
Education
Казахстанско-Российский университет, Караганда Информатика, Информатик Dates attended: 2001-2006
Skills
Lotus Domino: Lotus Domino R6 System Administration I: Installation, Configuration, Replication, Lotus Domino R6 System Administration II: User and Mail Administration,
Cisco: Interconnecting Cisco Network Technologies, Interconnecting Cisco Network Devices
Электронный документооборот (базовый курс)
Certification:
- Lotus Domino R6 System Administration I: Installation, Configuration, Replication,
- Lotus Domino R6 System Administration II: User and Mail Administration,
- Interconnecting Cisco Network Technologies,
- Interconnecting Cisco Network Devices,
- Электронный документооборот (базовый курс).
Alexey Gulchuk
linkedin | Astana, Kazakhstan | [email protected]
Experience
V-office LLP (Kazakhstan), Information Security Advisor March 2017 – Present
Systems integrator company responsibilities:
- Information security audit and/or Penetration testing
- Company and customers processes optimization/development
- Information security Training for internal stuff (skills improvement, cyber security awareness)
- Customer infrastructure optimization
- Pilot project implementation with further deployment into production
- Securing business processes
- Cloud and network administration
SOC (Security Operation Center) as a service for telecom/service provider company:
- ISMS administration and control
- Incident response
- Forensics
- Vulnerability management
InfoSecurity, Information Security Incident Response Advisor May 2017 – February 2018 (9 months)
- Threat analysis, forensics
- Incident investigation, response, mitigation
NCOC, Head of ICT&IM Security August 2015 – June 2016 (11 months)
- Team management
- Provide regular reports for briefing to senior managers and members
- Develop ICT Security processes in line with ISO 27000
- Implement ICT Security controls in accordance with best practices
- Perform risk assessment for services and projects
NCOC, Senior ICT Business Integrity and Security Advisor July 2012 – August 2015 (3 year 2 months)
- Coordinate day-to-day tasks to provide subordinates and junior staff with required skills and knowledge as well as coaching them on long term strategic activities
- Develop information Security policies and procedures
- Develop ICT Security processes in line with ISO 27000
- Implement ICT Security controls in accordance with best practices
- Perform classroom sessions with theoretical materials delivery followed by hand-on training to provide subordinates and junior staff with skills and knowledge as required for day-to-day company activities and long term development
- Provide subject matter expert advice to ICT Management on forthcoming and existing company projects regarding ICT Security
- Provide regular reports for briefing to senior managers and members
- Participate in Change Advisory Board (CAB) including in depth analysis and sign-off regarding all ICT Security issues before implementation in production
- Monitor systems and conduct investigations of security incidents, breaches or suspected breaches to ascertain and determine the cause and make any recommendations for remedial action, including discipline, or legal action
- Perform risk assessment for services in production and projects
- Manage technical security penetration testing and oversight of control audits
- Provide proactive tools/scripts development to achieve risk reduction; increase service improvement; and deliver long-term information integrity.
- Advanced troubleshooting of Server operating systems & applications
- Provision of second and third line support for Service desk Personnel
NCOC , ICT Business Integrity and Security Advisor
June 2011 – July 2012 (1 year 1 month)
NCOC , Junior ICT Business Integrity and Security Advisor
March 2010 – June 2011 (1 year 1 month)
- Perform security assessment of changes on Change Advisory Board (CAB)
- Provide risk assessment for production services and projects
- Perform assessment of changes in laboratory environment before implementation in production. Report on results and provide expert advice to ICT Management
- Setup application configuration management both on server and client level
- Monitor, verify, analyse and report on logs related to ICT Security to ensure proper implementation and execution of workflows and tasks
Create reports concerning information on internet use and user abuse - Investigate and report on configuration weakness through analysis tools
- Perform physical security assessments on Server, Patch and communication rooms. Produce and analyse audit report on access to such rooms
- Perform periodic checks and manage ‘readiness-status’ with regards to Business Continuity Plan at ATC recovery site
- Coordination and oversight of information usage, access and structures with periodic report to relevant business or data owners
- Assisted in the formulation and set up of an ICT Security Investigation laboratory to investigate breaches or prepare new security tools for use and acceptance in production environment.
Data Loss Prevention; Document classification; Penetration testing
Education
Karaganda State Technical University
Electrical engineer, Electric drive and automation of technological complexes
Dates attended: 2001-2006
Skills
Microsoft: Exchange, TMG, Active Directory, SCOM, WSUS, MS PKI, GPO, NTFS permissions, Servers 2003/2008(R2)/2012(R2)/2016
McAfee: ePO, DLP, Antivirus; Kaspersky: Antivirus, KATA (SandBox), Mail Gateway
Virtualization: VMWare (ESX, ESXi),VCloud Director, Proxmox
Linux: Ubuntu, Debian (workstation/server), Backtrack, Kali (linux based penetration testing, forensics investigation tools), FreeBSD Unix
Vulnarability scanners: GFI, Nessus, nmap, OWASP, OVAL, Metasploit
Networking: Websense (WEB filtering tool), PaloAlto (NGFW), FireEye, IronPort, UTMbox(NGFW)
Scripting: Powershell, Python, GO
Certification:
- InfoWatch DLP
- 412-79: ECSAv4
- 312-49: CHFIv4
- 312-50: CEHv6
- Prince2 Foundation
- 70-290: Managing and Maintaining a Microsoft Windows Server 2003 Environment
Trainings
- ISO/IEC 27000-27007; ISO/IEC 27011;
- CISM: Certified Information Security Manager
- McAfee VirusScan and ePolicy Orchestrator Administration
- ECSA: EC Council Certified Security Analyst
- CISSP: Certified Information Systems Security Professional
- ITILv2: Service desk
- CHFI: Certified Hacking Forensics Investigator
- CEH: Certified Ethical Hacker
- McAfee DLP Administration
- Prince2: Projects In Controlled Environments
- 10135A: Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010
- 2277: Implementing, Managing, and Maintaining a Microsoft® Windows Server™ 2003 Network Infrastructure: Network Services
- Risk management in information security
- 5927A: Microsoft Office Project Standard 2007, Managing Projects
- 2273: Managing and Maintaining a Microsoft Windows Server 2003 Environment
- Cobit
- ITILv3
Ken Tulegenov
Summary: • 10+ years of professional experience in Cyber Security • 10+ successfully completed Security Projects • Certifications: (ISC)² CISSP, Cisco CCNA Security, Microsoft MCSA • Industry Experience: Oil & Gas, Banking, CERT, Telecom, World Exposition (EXPO)
Specialization: • Identity & Access Control + Project Management
Subject Matter Expert: • Network Security / Endpoint Security / Infrastructure Security
Work Experience
Telecom Company, Cloud Engineer April 2018 — till now
Duties: VMware Cloud Office 365 Azure Active Directory
KEGOC JSC, Cyber Security Consultant December 2017 — March 2018
Prepared Documents: • Cyber Security Development Plan (2018-2022) • Architecture (Defense-in-Depth & Zero Trust for OT and IT Infrastructures) • Modern Technologies (Smart Grids) & Cyber Attacks (APT) • Requirements, Recommendations & Best Practices • Implementation Plan by Years
Cisco Systems, Cisco Security Engineer (SOC Analyst) May 2017 — October 2017
Astana EXPO 2017 SOC Team • Network Security (Log Management / SIEM, IPS/IDS, Firewalling, NTA) • Incident Handling & Response
NCOC NV, Cyber Security Engineer October 2015 — July 2016
• Network Security (Log Management / SIEM, IPS/IDS, Firewalling) • Infrastructure Security (Design, Rules, Requirements, Procedures) • Threat and Risk Analysis (ICS and SCADA Security)
Tsesnabank JSC, Information Security Project Manager May 2012 — September 2015
• Regulatory Compliance (Personal Data Law, PCI DSS) • Threat Analysis and Hardening (APT, Misconfiguration) • Project Management • Security Researches
KZ-CERT, Information Security Expert August 2011 — April 2012
• E-Gov Network Security (IPS/IDS, Firewalling) • Consulting for Public Organizations • Security Audit • Project Management
Kcell JSC, Information Security Engineer February 2006 — July 2011 5 years 6 months
• Corporate Wireless Administration • Security Compliance • Access for Partners (Dealers) and Vendors • Project Management
Skills
CISSP, Cloud Security, Cyber Security, Information Security, Windows Security, Network Security, Project Management, PCI DSS, ISO 27001, SOX 404, ITIL, Virtualization, Cisco, Check Point, Palo Alto, Fortinet, VMware, Linux, Python, PowerShell, Bash, Risk Management, Splunk, StealthWatch, SIEM
Education
Tomsk State University of Control Systems and Radioelectronics Bs. Automated Data Processing Systems
Courses & Certifications:
- Splunk Fundamentals 1
- Cybersecurity for ICS (Industrial Control Systems)
- Penetration Testing Training with Kali Linux
- Oracle Security 11g
- Oracle Database 11g: SQL Fundamentals / PL/SQL Fundamentals aqnd Development
- User Activity Monitoring (ObserveIT)
- VMware. VSphere: Install, Configure, Manage
- IBM. Tivoli Storage Manager 5.4. Implementation and Administration 1 / 2
- Allot NetExplorer (DPI)
- Cisco SNRS (Securing Network with Switches and Routers)
- Cisco SNPA (Securing Network with PIX and ASA)
- Check Point. CP Firewall NGX Administration 1 / 2 / 3
- Red Hat. Introduction / System Administration / Network and Security
- Basic Management Skills
- BSI. ISO/IEC 27001. Introduction / Implementation / Internal Audit
- BS 7799. Implementation / Risk Management / Practical Aspects
CISSP (Certified Information Systems Security Professional) Cisco CCNA : Security Cisco CCNA: Routing and Switching Microsoft MCSA: Network Infrastructure
Ruslan Safin
Personal Profile
The overall experience in IT companies in C-level positions is over 9 years.
As a hobby, I develop and maintain my pet project - hosting server infrastructure for solving daily home routines (Technological stack: Docker, Hashicorp Nomad, Hashicorp Vagrant, Puppet, Ansible, Nginx, Cadyy, Traefik, HAproxy, and some useful web application).
Languages
English: B1
Russian: native
Experience
EPAM Systems, Inc Chief Security Systems Engineer __November 2019 - February 2022 __ (Belarus, Minsk)
In EPAM company, I was involved in managing the IT Security team and delivering projects in time.
A part of team activities hadn’t relevant processes, and required reviewing and create flow for optimizing the process.
I’ve started from review processes and team responsibilities, and involve different teams to mitigate bottlenecks in processes. After that, I’ve been creating a process for managing privileged accounts and prepare the required technical stack.
As a result, I successfully delivered required project tasks as privileged account management, replacing EDR solution, and implement software-defined perimeter and compliance check solution.
V-Office LLP Benevolent dictator for life (BDFL) October 2009 - Present (World Wide)
I solve from time to time cases involved questions and issues in the information security domain such as IT consulting, cybercrime investigation, etc.
GoHost.kz Outsourse April 2013 - December 2019 (Kazakhstan, Karaganda)
I have promoted and lead a few projects related to information security activities (Clients: Karaganda State Technical University, Daryn Partners LLP, Astana SPK LLP)
Astel JSCP Director of Information Security August 2019 - November 2019 (Kazakhstan, Almaty)
Build fundament for the Information Security Unit. Prepared Information Security policy and have prepared the unit to pass the certification by the National Security Committee.
ELTC LLP Outsource January 2018 - August 2019 (Kazakhstan, Almaty)
I have been Linux, PostgreSQL, Cisco R&S, and Information Security, trainer.
TransTelecom JSCP Expert February 2018 - March 2019 (Kazakhstan, Astana)
Crisis management.
SOC (security operation center) as a service for telecom/service provider company:
- ISMS administration and control
- Incident response
- Forensics
- Vulnerability management
(Technological stack: R-Vision, Positive Technologies Full Stack, Kaspersky, Infowatch, PaloAlto)
KazATU University Teacher September 2018 - December 2018 (Kazakhstan, Astana)
I have taught students for an information security course.
Branco Etera Ltd Outsourser October 2017 (Kazakhstan, Atyrau)
I have led a deployment information security environment.
Life 2 Win LLP CTO June 2016 - September 2017 (Kazakhstan, Almaty)
CTO with verifiable year-after-year success achieving revenue, profit, and business growth objectives within start-up, turnaround, and rapid change environments.
Successfully delivered a few projects involved many peoples to implement these solutions.
- DLP system implementation for a bank (Technological stack: Symantec DLP)
- Deliver migration project of a virtualization platform for a telecom company (Technological stack: Red Hat Virtualization platform)
- Deliver a project to Anykey LLP company include network segmentation and security improvement (Technological stack: UTMbox)
- Have successfully implemented public WiFi infrastructure in the ARMADA-mall with authentication via a captive portal and traffic prioritization (Technological stack: UTMbox)
- Have more than teen security conference participation and Standup
- Have opened the R&D department, and started sale new products (Technological stack: UTMbox)
SoftLine LLP Contractor/Independent Consultant June 2016 - November 2016 (Kazakhstan, Almaty)
I have been involving in managing remote consulting and infrastructure support teams for Kazcontent company IDC. (Technological stack: Cisco ASA and Catalyst, Citrix Netscaler, Brocade SAN switches, Hitachi Storage, and a few Servers. The software part is Citrix Xen Server, Ubuntu, and Red Hat/Fedora/CentOS Linux)
SoftLine LLP Team Lead May 2013 - May 2016 (Kazakhstan, Almaty)
Tasks coordination. Sales department and customer consultancy on understanding issues (translation from Business language to IT and back).
- Was involved as a team lead in delivering the IDC migration project for the Kazcontent company (Technological stack: Juniper routers and firewalls, IBM Storwize storage, SystemX PureFlex servers, Hitachi storage, and Citrix NetScaler.)
- Was successfully deployed and configured the DLP policy at the Financial Police Department (Technological stack: DeviceLock DLP)
- Have been involved in the remote deployment and configuration of Citrix Netscaler appliances with High Availability, load balancing, and web application protection for North Caspian Operating Company (Technological stack: Citrix Netscaler Application Firewall)
- Provided remote consultancy and disaster recovery of the next-generation firewall for KazMunaiGas Exploration Production (Technological stack: CheckPoint appliances)
- Involved in developing backup and disaster recovery infrastructure for 1st Tier3 IDC in Kazakhstan (Technological stack: Veeam Backup and Replication)
MONT Ltd Business Development Manager April 2012 – April 2013 (Kazakhstan, Almaty)
Partners consultancy on technical issues. Maintain partnerships with vendors.
Symantec brand promotion (company received Enterprise Partner status).
I have been involved in training in areas of information security, virtualization, and backup for partners and employees.
I have been achieved year to year growth as a business development manager for VMware, Veeam, Symantec, McAfee, CheckPoint, and TrendMicro products. I have been involved in a partner network expansion, partner training, sales improvement in the Central Asia region.
Buhgalter.kz Outsourcer August 2012 (Kazakhstan, Almaty)
I solved an issue with server recovery after a hacker’s attack (Technological stack: Freebsd Apache + MySQL + PHP + FTP). Investigation revealed a hacker’s identity. In the process of identifying vulnerabilities was analyzed HTML and PHP code.
KaR-Tel LLP “Beeline” Senior Engineer/Team Lead January 2012 – April 2012 (Kazakhstan, Almaty)
I’ve managed a team to build network infrastructure (FTTB) design for Almaty city and the Almaty area (total population of about 3 million people). I’ve managed the work of a group of 200 workers who involved equipment installation within the area.
Hoster.kz Outsource November 2011 - December 2011 (Kazakhstan, Karaganda)
- I was involved in the security of the server infrastructure design (Technological stack: Cisco ASA, Cisco IPS, Cisco MARS, Cisco Catalyst 29xx, and 35xx)
- Consulting on software and server configuration (Technological stack: HP DL360 using OpenVZ, KVM, Xen, Exim, Postfix, MySql, PostgreSQL, and HP storage).
- Security system integration with Nagios monitoring system.
Kazakhtelecom JSC Senior System Engineer July 2009 – September 2011 (Kazakhstan, Karaganda)
I have been involved in supporting network infrastructure, and data center administration.
I’ve managed a group of 7 people who were involved in infrastructure deployment for project activities: OSCE summit in 2010, the Summit of Shanghai Cooperation Organization, 7 Summit of Islamic Economic Forum.
Talks
-
sysconf.io September 27 2019 SELinux - base, tips and tricks Translation Zoom, Translation front camera
-
nur.kz April 22 2019 Why IT products from Kazakhstan are better than solutions from the USA, Russia, and Israel repost on ok.ru, repost on vk.com
-
Nazarbayev University: Safer Internet Day celebration February 5 2019 Digital Hygiene Presentation
-
PROFIT Cloud Day March 15 2017 Load balancing: basic algorithms and methods, Intro, Talk
-
PROFIT Mobile Day December 9 2016 Support speaker on Q&A session, Link to the presentation
-
ProfitSecurityDay November 24 2016 SELinux - basic principles and techniques, Talk, Discussion
Patents
-
Сertificate of entering information into the state register of rights to objects protected by copyright #240 October 19 2018 computer program UTMsense date of creation February 14 2003
-
Utility model Method for detecting and preventing malicious / virus activity of a local area network in working with external and internal networks November 23 2018 EXTRACT FROM THE STATE REGISTER OF UTILITY MODELS OF THEREPUBLIC OF KAZAKHSTAN Detailed information: Utility model #4203
Academic Qualifications
Master of Science in Information Technology 2007 - 2009 Karaganda State Technical University (KSTU), Karaganda, Kazakhstan
Master of Science in Microprocessor-based Systems in Industry 2008 - 2008 Saint Petersburg State Polytechnical University (SPbSTU), Saint Petersburg, Russia
Engineer of Information Technologies 2002 - 2007 Karaganda State Technical University (KSTU), Karaganda, Kazakhstan
Key Courses
- Project Management Foundations: Risk - PMI (Project Management Institute) and NASBA (National Association of State Boards of Accountancy)
- Negotiating Your Leadership Success - PMI (Project Management Institute) and NASBA (National Association of State Boards of Accountancy)
- CISSP Cert Prep: The Basics - CompTIA (Computing Technology Industry Association)
- Conducting Motivational 1-on-1 Reviews - LinkedIn Learning
- Deploying Azure File Sync - LinkedIn Learning
- Certified Ethical Hacking (CEH) Course - Udemy
- Ethical Hacking Nmap Course - Udemy
- Wide Area Networks and Networking Services and Security - Alison
- Understanding Cryptography and Its Role in Digital Communications - Alison
- IT Management - Building Information Systems - Alison
- Introduction to Corporate IT Strategy and Business Frameworks - Alison
- Fundamentals of Network Security - Alison
- Sales in consulting style - Improver training center
- PaloAlto networks Accredited Sales Expert (ASE) v3.0 - Module2
- PaloAlto networks Accredited Sales Expert (ASE) v3.0 - Module1
- IBM Elastic Storage System (ES) Administration Basic 4.1 for Linux
- IBM Power Systems for AIX - Virtualization I: Implementing Virtualization
- VMware vSphere: Design Workshop [V5.x]
- VMware VTSP-SV (Server Virtualization 5)
- VMware VTSP - IV (Infrastructure Virtualization 5)
- VMware vSphere Resource Management Essentials
- VMware vCenter Converter Standalone
- VMware vCenter Update Manager
- VMware vSphere Security
- VMware Assessment Fundamentals
- VMware vCenter Operations Management Suite Technical Overview[V5.6]
- VMware Introduction to vCenter Operations Manager
- Symantec Data Loss Prevention 11 Sales Training
- Symantec Data Loss Prevention 10.0 Sales Training – Russian
- Symantec Backup Exec 2010 Sales Training – Russian
- Symantec Backup Exec 2012 Sales Training
- Symantec Data Loss Prevention 11/11.5 SSE+ training
- Symantec Backup Exec 2012 SSE+ training
- Symantec Data Loss Prevention 11.0: Install and Deploy
- Symantec Data Loss Prevention 11.0: Administration
- Symantec Data Loss Prevention 11.5: Administration
- Center of Excellence«KazakhTelecom» Cisco courses 1.1 — 1.2
Certificates
- Hurricane Electric: IPv6 Certification rank Sage
- VTSP-SV 2017: Data Center Virtualization Fundamentals Test
- VTSP-SV 2017: Server Virtualization for Technical Sales Professional Test
- VSP-SV (Server Virtualization 2017)
- Red Hat Accredited Professional
- Kaspersky Lab Certified Professional
- VMware VCP6-DCV VMW-01891588W-00571393
- Kaspersky Lab Certified Systems Engineer
- PaloAlto Networks Accredited Configuration Engineer (ACE) Exam - PAN-OS 7.0 Version
- PaloAlto Networks Advanced Threat Management for PAN-OS v6.0
- PaloAlto Networks ASE v3.0 Final Test
- VMware VSP Mobility 2015
- Symantec Technical Specialist NetBackup 7.5
- Symantec Sales Expert Plus NetBackup 7.6
- Symantec Sales Expert Plus NetBackup 5230 Appliance
- Symantec Sales Expert NetBackup 7.5
- MCTS: MS 673 Designing, Assessing, and Optimizing Software Asset Management (SAM)
- MCTS: MS 672 Designing and Providing Volume Licensing Solutions to Large Organizations
- MCTS: MS 671 Designing and Providing Volume Licensing Solutions to Small and Medium Organizations
- VMware VCP5-DCV VMW-01891588W-00571393
- VMware vSphere: Design Workshop [V5.x]
- Microsoft Certified Professional MS 247 Configuring and Deploying a Private Cloud with System Center 2012
- VMware VTSP-SV (Server Virtualization 5)
- VMware VTSP - IV (Infrastructure Virtualization 5)
- Avanpost Technical Specialist
- Device Lock Security Officer
- CyberArk Certified Engineer
- Symantec Technical Specialist Symantec Data Loss Prevention 11.5
- Symantec Sales Expert Symantec Backup Exec 2010
- Symantec Sales Expert Symantec Backup Exec 2012
- Symantec Sales Expert Symantec Data Loss Prevention 10
- Symantec Sales Expert Symantec Data Loss Prevention 11.5
- Symantec Sales Expert Plus Symantec Backup Exec 2012
- Symantec Sales Expert Plus Symantec Data Loss Prevention 11.5
- Analyst active infections and infected systems by Dr.Web anti-virus software
- Administration Specialist products Dr.Web ® for Windows
- Administration Specialist Dr.Web ® for MS ® Exchange Server
- Administration Specialist Dr.Web ® Enterprise Security Suite
- Certified Technology Specialist ESET NOD32
- Certificate of Excellence Win-RAR
- Administration Specialist Dr.Web® AV-Desk™
Publications
-
Scientific and technical journal “Computer Automation” 1-2 (22-23) 2008 ISSN1560-7305, “Working with the USB-devices” UDC 004.326.1
-
International Symposium “Information and communication technologies in the industry, science, and education,” the 55th anniversary devoted KSTU 13-14.10.2008 Karaganda Kazakhstan, ISBN 9965-04-186-5 UDC 004:378 (574), “Harnessing the power of Windows to connect non-standard USB devices “
-
International Scientific and Practical Conference “Research, development, and application of high technology in the industry” 22-23.04.2010 St. Petersburg Russia, ISBN 978-5-7422-2557-7 BBK 20:30:60, «Use of facilities for Windows connections broken USB devices »
-
International Symposium “Information and communication technologies in industry, education and science” 28-29.10.2010 Karaganda Kazakhstan, ISBN 9965-04-600-X UDC 004:378 (574) BBK 74.58-21, “The role of the network community of teachers to improve their professional competence “
-
International Symposium “Information and communication technologies in industry, education and science” 28-29.10.2010 Karaganda Kazakhstan, ISBN 9965-04-600-X UDC 004:378 (574) BBK 74.58-21, “The problem of accessibility of user interfaces of electronic educational resources”
-
International Conference on “Science and Education - a leading factor Strategy” Kazakhstan-2030 “” 23-24.06.2011 Karaganda Kazakhstan, ISBN 978-601-296-055-6 UDC 001:378 BBK 74.58, “The role of the network community of teachers in improving their professional competence “
-
International Conference on “Science and Education - a leading factor Strategy” Kazakhstan-2030 “” 23-24.06.2011 Karaganda Kazakhstan, ISBN 978-601-296-055-6 UDC 001:378 BBK 74.58, “The decisions of economic efficiency and competitiveness in the global education market with certification “
-
International Conference on “Science and Education - a leading factor Strategy” Kazakhstan-2030 “” 23-24.06.2011 Karaganda Kazakhstan, ISBN 978-601-296-055-6 UDC 001:378 BBK 74.58, “Experience in the development and use of interactive digital educational Internet resources based on GIS technologies “
-
International scientific-practical conference “Fundamental and applied research, development, and application of high technology in; industrial” 27-29.04.2011 St. Petersburg, ISBN 978-5-7422-3022-9 BBK 20:30:60, «Solution of economic efficiency and competitiveness on the world education market by using certification center»
-
International scientific-practical conference “Fundamental and applied research, development, and application of high technology in; industrial” 27-29.04.2011 St. Petersburg, ISBN 978-5-7422-3022-9 BBK 20:30:60, «Role of the network community of teachers in enhancing their professional competence »
-
International scientific-practical conference “Fundamental and applied research, development, and application of high technology in; industrial” 27-29.04.2011 St. Petersburg, ISBN 978-5-7422-3022-9 BBK 20:30:60, «The problem of the access user interface of electronic learning resources»
Политика Конфиденциальности
Владелец сайта v-office.org (далее v-office или Администрация) обязуется сохранять Вашу конфиденциальность в сети Интернет. Настоящая Политика Конфиденциальности, рассказывает о том, как собираются, обрабатываются и хранятся Ваши личные данные. Администрация уделяет большое внимание защите личной информации пользователей. Пользуясь сайтом v-office, пользователь тем самым дает согласие на применение правил сбора и использования данных, изложенных в настоящем документе. Если Вы не согласны с условиями нашей политики конфиденциальности, не используйте сайт v-office!
Собираемая информация
Администрация сайта может собирать следующую информацию о пользователях сайта:
- Имя
- Адрес электронной почты
- IP-адрес
- Прочая информация
Использование информации
Ниже описаны некоторые способы использования личной информации пользователя:
- для внутреннего отчета
- для предоставления информации и услуг, которые запрашивает пользователь
- для ответа на запросы пользователя
- для формирования статистических данных
Раскрытие информации
Администрация не продает личные данные пользователя и не передает их третьим лицам без согласия на то пользователя. Далее, описаны некоторые случаи передачи личной информации пользователя:
- в случаях, если это требуется органам спецслужб или если это требует законодательство