Security Specialist.
Contactable at: dom at devitto dot com
Risk
Analysis, Threat Analysis, Physical Security, Cryptography,
Cryptanalysis, Telecommunications, Internet Security, Business
Continuity, Disaster Recovery, IT Law, IT Forensics, Security
Management, Security Architecture, Access Control, Applications
Security, Operational Security, Security Research, Security Testing,
Penetration Testing.
Security Consultant
Virgin Media
(Public Company; 10,001 or more employees; NTLI)
Computer & Network Security Industry
June 2001 – Present (4 years 10 months)
This is such a broad role that it now covers every accepted area of information security.
4 people have endorsed Dom at NTL:
“Dom is an engaging and interesing person to work with. His knowledge
on all matters technical ( amongst other things ) is boggling. Dom has
a happy demeanor which compliments his professional attitude. He
employs a roll up the sleeves approach to his work, working all the
hours needed. Dom will be successful wherever he works.”
(March 2, 2006)
“I had the pleasure of sampling Dom's work first hand by inheritance,
but also have been lucky enough to meet and work with him when our
paths crossed at NTL. On numerous occasions (usually during the small
hours when he was on call) he has been professional and his light
hearted manner helped us deal with very complex and security focused
issues. Not to mention his unique sense of humour!!!”
(February 9, 2006)
–
Dan Cave
worked indirectly for Dom at NTL
“Dom is a profoundly skilled and articulate expert in all aspects of
security. He has consistently demonstrated a meticulous and
professional character in all initiatives that our teams have
cooperated on. Always credible, infallibly upbeat and never
pretentious, Dom is a person worth paying attention to.”
(February 9, 2006)
“Dom brings an authoritative and judicious stance to how security is
understood by people who only hear white noise when risk is mentioned.
He has the ability to confidently approach situations and to bring a
guarded and well crafted solution without management or direction. A
polished performer I never cease to learn new things I'll never need to
know from him.”
(February 8, 2006)
Joint Founder Moderator
Comp.Lang.C++.Moderated
(Non-Profit)
Computer Software Industry
November 1995 – Present (10 years 5 months)
I am a joint Founder Moderator of the Usenet newgroup Comp.Lang.C++.Moderated, which I helped create and maintain since 1995.
The group's purpose is to manage and foster spam-free, discussion of
the C++ Programming launguage and it's core library interfaces.
Managing Director
Secure Technologies Ltd.
(Privately Held; 1-10 employees)
Computer & Network Security Industry
September 1997 – June 2001 (3 years 10 months)
This was my comsulting company, during my 5 years as a indepentant consultant.
Security Consultant
Accenture
(Partnership; 5001-10,000 employees)
Computer & Network Security Industry
April 2001 – June 2001 (3 months)
Security
Management at the Financial Services Solution Center. Including complex
extranet structure and core service network - email, web hosting, web
browsing etc.
Security consultancy and technical knowledge for internetworking
projects, defining and implementing security architecture and policy
changes, designing, proving and implementing solutions for global
network security and connectivity, planning & performing
penetration testing.
Security Consultant
Abby National Treasury Services
(Public Company; 10,001 or more employees)
Computer & Network Security Industry
September 2000 – March 2001 (7 months)
Network
and system security consultant, responsible for the secure operation of
payment systems, internal backoffice and internet systems (email
servers, web access, firewalls).
Providing security consultancy and technical skill for
internetworking projects, defining and implementing architecture
changes, designing, proving and implementing new/improved solutions for
global network security and secure access, Liasing with and advising on
Security Policy and implementing improved technology in test and live
environments. Planning & performing penetration testing.
Maintaining the network security of all current systems, including
live payment/reconciliation systems, 3rd party data feeds, web access,
email systems and all networking elements.
Security Consultant
Barclays Bank Plc
(Public Company; 10,001 or more employees)
Computer & Network Security Industry
September 1998 – September 2000 (2 years 1 month)
Reponsible
for the network and system security of the Barclays bank group systems.
Including internal, extranet and internet firewalls, payment systems,
public web servers (including content management) and the worlds third
largest internet banking operation.
Providing pre, mid and post project consultancy with regard to
functional design and secure project implementation. Management of
extranet security between financial institutions and suppliers.
Maintenance of security for intranet and internet network boundaries.
Ensuring that Barclays E-resources infrastructure (including Internet
Banking, web sites, web access, internal and external email), all
remain secure and functional. Planning and performing service upgrades
with suitable management reporting.
Security Consultant
Quza
(Public Company; 5001-10,000 employees)
Computer & Network Security Industry
September 1998 – September 1999 (1 year 1 month)
Providing security consultancy direct to customers, including installations, maintenance and support.
One of less than a dozen 3rd line support staff in the UK for
Checkpoint products, with direct access to Checkpoint developers to
validate features and issues.
3rd line support for internet connectivity and security products
(Firewall-1, SecureID, MailSweeper, WebSweeper etc.) for a large number
of corporations, government agencies, and retail ISPs. Provided initial
and ongoing design & policy consultancy, installation,
configuration and management of various software products and hardware
devices. Service provider level fault diagnosis and remedy. E-commerce
consultancy, design and implementation of Firewall-1 v4
installations/upgrades. Internet security consultancy and intrusion
testing.
Senior Software Engineer
RMC
(Privately Held; 51-200 employees)
Computer Software Industry
June 1997 – September 1998 (1 year 4 months)
Research
and Development of emerging technologies for reverse and forward
re-engineering of mainframe computer program suites. Work produced
advanced automated Y2K and currency (Euro) translation in multi-million
line systems.
Clients included major global financial institutions.
Designed and implementated cross-platform email including client OS upgrades, user tuition and directory services.
Creation of corporate Internet presence, intranet services, and
secure internet access. Setup and maintenance of corporate intranet and
secure remote access.
Software Engineer
Schlumberger Technologies
(Public Company; 10,001 or more employees; SLB)
Computer & Network Security Industry
June 1995 – June 1997 (2 years 1 month)
Software engineering embedded software, GUI redesign/implementation.
Risk evaluation for the local/global administrators, including network and system security auditin
Software Engineer (Intern)
Schlumberger Industries
(Public Company; 10,001 or more employees; SLB)
Computer & Network Security Industry
June 1993 – August 1994 (1 year 3 months)
Development of automatic source control and software build process. Local network and systems security expert.
WAN/LAN & system level security audits, identifying and quantifying security risks.
Student System/Network Administrator
Devizes School
(Educational Institution; 51-200 employees)
Higher Education Industry
June 1989 – July 1991 (2 years 2 months)
Student System and Network Administrator installing, configuring and managing a new IT centre.
Software migration (porting/bugfixing) of all educational software