Resume

Summary

The Dutch government, Synology (2021), and the Erasmus University Rotterdam have confirmed my (4 years) pentesting expertise, specifically focused on SAML. Membership in the Dutch eHerkenning eID security officers council and the Dutch SURFcert (SCIRT team), as well as the Erasmus SSC ICT Computer Emergency Response Team (CERT), have contributed to my professional background. Additionally, leading a security training at Signicat, which resulted in the discovery of 30 vulnerabilities, has added to my experience. Complying with regulations such as Third Party Memorandum, ISO 27001, and SOC2 is a familiar aspect of my work. Moreover, my extensive Linux expertise, spanning over 20 years, has allowed me to specialize in automation using Ansible (8 years) and Puppet (2 years). Furthermore, I have experience with Terraform automation and possess proficiency in OpenSSL and Bash scripting.

Experience

Information Security Analyst @ Signicat (Connectis)

Dec 2020 - Feb 2023

  • Primarily responsible for ISO27001 certification
  • Primarily responsible for Third Party Memorandum (TPM) for Dutch `DigiD` eID audit
  • Primarily responsible for Third Party Memorandum (TPM) for Dutch `eHerkenning` eID audit
  • Primarily responsible for regulatory, governmental and legal compliance of the Dutch branch
  • Primarily responsible internal pentesting of the Dutch branch
  • Giving security related lectures, hands on pentesting our own software

    Senior System Operations Engineer @ Signicat (Connectis)

    Dec 2016 - Dec 2020

    • Primarily responsible for ISO27001 certification
    • Primarily responsible for Third Party Memorandum (TPM) for Dutch DigiD eID certification
    • Senior Ansible programmer
    • Senior VMware administrator
    • Senior Linux administrator
    • Senior Network administrator
    • safeguarding the functionality of IT products
    • Authorization and security

    Senior System Administrator @ Erasmus University Rotterdam

    Jan 2014 - Dec 2016

    • Part of the Dutch `SURFcert` (SCIRT team)
    • Primarily sub-department contact for CERT (Computer Emergency Response Team)
    • Senior Puppet programmer
    • Senior VMware administrator
    • Senior Linux administrator
    • safeguarding the functionality of IT products
    • Installing, Maintaining and Repairing of IT products
    • Authorization and security
    • Datacenter design
    • Technical contact for tenders

    Senior System Administrator @ Rotterdam School of Management, Erasmus University Rotterdam

    Aug 2002 - Jan 2014

    • Senior VMware administrator
    • Senior Linux administrator
    • Guarding the functionality of IT products
    • Installing, Maintaining and Repairing of IT products
    • Senior Linux administrator
    • safeguarding the functionality of IT products
    • Standardisation within and between IT products
    • Authorization and security
    • Datacenter design
    • Technical contact for tenders

    Skills

    • Linux Administration (20 years)
    • Ansible Automation (8 years)
    • Puppet Automation (2 years)
    • Terraform Automation (<1 year)
    • OpenSSL
    • Bash Scripting
    • Penetration Testing (4 years) - confirmed by the Dutch government, Synology (2021), and Erasmus University Rotterdam.
    • SAML

    Certifications

    • Modern Infrastructure Security training, certified secure
    • Red Hat RH302L/EX200, Red Hat
    • The Linux Professional Institute, Global Knowledge

    Education

    • Modern Infrastructure Security training, certified secure
    • Red Hat RH302L/EX200, Red Hat
    • The Linux Professional Institute, Global Knowledge
    • VMUG (VMware User Group Netherlands), VMUG
    • VMware Infrastructure 3: What’s New, Xpert Training Group (XTG)
    • VMware Virtual Infrastructure with ESX Server and VirtualCenter, Xpert Training Group (XTG)
    • VMware vSphere 4: Fast Track, Xpert Training Group (XTG)
    • Puppet Camp Ghent, Belgium, N/A
    • Puppet Fundamentals, N/A

    Previous affiliations

    • Dutch eID “eHerkenning” Security Officers Council
    • Dutch SURFcert (SCIRT team)
    • Erasmus SSC ICT Computer Emergency Response Team (CERT)