Florent Mathon available

Florent Mathon

IT Security Consultant GSEC, GCIH, GCIA, GPEN, ISEB certified

IT Security Consultant GSEC, GCIH, GCIA, GPEN, ISEB certified
  Bertrange
  • Graduation: not provided
  Hourly-/Daily rates: 650 €/day
    negotiable based on contract
  Languages: English (Full Professional) | French (Native or Bilingual)
  Last update: 27.05.2013
• April 2013-Present: Senior IT Security Consultant at Isabel s.a.
o Design of proof of concept for the new IDP infrastructure in context of a datacentre migration.
o Evaluation of the operational capability of the Sourcefire IDP compared to the old Juniper IDP deployment
o Deployment and migration of the IDP infrastructure from Juniper IDP to Sourcefire IDP in the scope of a datacentre renewal
o Evaluation of an IronPort appliance solution to replace a Postfix deployment in the scope TCO reduction and reducing operational complexity
o Migration to the new IronPort infrastructure for back office and customer mass-mailing

• November 2011-April 2013: Senior IT Security Consultant at the European Commission
o Responsible for the Sourcefire nIDS project (design, testing and implementation).
o Design of Sourcefire proof of concept to monitor border traffic and specific DMZ.
o Creation of an evaluation report on the Sourcefire solution.
o Implementation of the IDP on the production network in Belgium and Luxembourg.
o Creation and management of the IDP rules and monitoring in combination with ArcSight analyst.
o Collaboration with incident handling and forensic team on various internal incidents. Providing network traces and testing implementation of counter measures. Replaying malware attack based on collected samples to create IDP detection rules.
o Deployment of a vulnerability management evaluation infrastructure based on McAfee MVM and Rapid7 Nexpose.

• July 2011-November 2011: IT Security Consultant at BNP Paribas IP
o Web application vulnerability scanning
o IAM, documentation of security controls
o Creation of security dashboards
o Application security risk analysis and review

• May 2011-July 2011: Senior Security Consultant at Deloitte
o Data leakage prevention deployment and configuration with Symantec DLP
o Web Application penetration testing with Burps suite, Qualys, Nikto, Nessus, Nmap and various BackTrack tools

• 2008-May 2011: Information Security Management Specialist at SWIFT
o Responsible for daily management and analysis of Juniper IDP/IDS alerts
o Implementation of strong authentication solutions such as RSA SecurID and Entrust Identity Guard in the context of Juniper SSL-VPN
o In charge of daily management for
? Fortinet, Cyberguard and Checkpoint Firewalls
? Ironport E-Mail security appliances, Postini Spam filtering outsourcing
? McAfee AV and HIDS
? Network Behaviour Analysis using Riverbed Cascade
? Entrust PKI infrastructure
? Bluecoat proxies
? Cisco WCS security monitoring
? Password management and audit solution such as EDMZ PAR

• 2006-2008: Associate Test Engineer at SWIFT for the Swift.com and back-office acceptance team
o Test automation using QuickTest, Winrunner and Perl scripting
o Testing Swift.com web applications, back-office applications: SAP, Geneva
o Installation and maintenance of Swift.com infrastructure: Weblogic 9, SunONE, Bluecoat proxies, SUN Cluster, Oracle 10
o Testing of SWIFT Alliance Messenger interface
Senior IT Security Consultant at Isabel