Dom De Vitto
Security Consultant
| Current: | |
| Past: |
|
| Education: |
Summary:
Security Specialist.
Contactable at: dom at devitto dot com
Specialties:
Risk Analysis, Threat Analysis, Physical Security, Cryptography, Cryptanalysis, Telecommunications, Internet Security, Business Continuity, Disaster Recovery, IT Law, IT Forensics, Security Management, Security Architecture, Access Control, Applications Security, Operational Security, Security Research, Security Testing, Penetration Testing.
Experience:
Security Consultant
Virgin Media
(Public Company; 10,001 or more employees; NTLI)
Computer & Network Security Industry
June 2001 – Present (4 years 10 months)
This is such a broad role that it now covers every accepted area of information security.
4 people have endorsed Dom at NTL:
Joint Founder Moderator
Comp.Lang.C++.Moderated
(Non-Profit)
Computer Software Industry
November 1995 – Present (10 years 5 months)
I am a joint Founder Moderator of the Usenet newgroup Comp.Lang.C++.Moderated, which I helped create and maintain since 1995.
The group's purpose is to manage and foster spam-free, discussion of
the C++ Programming launguage and it's core library interfaces.
Managing Director
Secure Technologies Ltd.
(Privately Held; 1-10 employees)
Computer & Network Security Industry
September 1997 – June 2001 (3 years 10 months)
This was my comsulting company, during my 5 years as a indepentant consultant.
Security Consultant
Accenture
(Partnership; 5001-10,000 employees)
Computer & Network Security Industry
April 2001 – June 2001 (3 months)
Security
Management at the Financial Services Solution Center. Including complex
extranet structure and core service network - email, web hosting, web
browsing etc.
Security consultancy and technical knowledge for internetworking
projects, defining and implementing security architecture and policy
changes, designing, proving and implementing solutions for global
network security and connectivity, planning & performing
penetration testing.
Security Consultant
Abby National Treasury Services
(Public Company; 10,001 or more employees)
Computer & Network Security Industry
September 2000 – March 2001 (7 months)
Network
and system security consultant, responsible for the secure operation of
payment systems, internal backoffice and internet systems (email
servers, web access, firewalls).
Providing security consultancy and technical skill for
internetworking projects, defining and implementing architecture
changes, designing, proving and implementing new/improved solutions for
global network security and secure access, Liasing with and advising on
Security Policy and implementing improved technology in test and live
environments. Planning & performing penetration testing.
Maintaining the network security of all current systems, including
live payment/reconciliation systems, 3rd party data feeds, web access,
email systems and all networking elements.
Security Consultant
Barclays Bank Plc
(Public Company; 10,001 or more employees)
Computer & Network Security Industry
September 1998 – September 2000 (2 years 1 month)
Reponsible
for the network and system security of the Barclays bank group systems.
Including internal, extranet and internet firewalls, payment systems,
public web servers (including content management) and the worlds third
largest internet banking operation.
Providing pre, mid and post project consultancy with regard to
functional design and secure project implementation. Management of
extranet security between financial institutions and suppliers.
Maintenance of security for intranet and internet network boundaries.
Ensuring that Barclays E-resources infrastructure (including Internet
Banking, web sites, web access, internal and external email), all
remain secure and functional. Planning and performing service upgrades
with suitable management reporting.
Security Consultant
Quza
(Public Company; 5001-10,000 employees)
Computer & Network Security Industry
September 1998 – September 1999 (1 year 1 month)
Providing security consultancy direct to customers, including installations, maintenance and support.
One of less than a dozen 3rd line support staff in the UK for
Checkpoint products, with direct access to Checkpoint developers to
validate features and issues.
3rd line support for internet connectivity and security products
(Firewall-1, SecureID, MailSweeper, WebSweeper etc.) for a large number
of corporations, government agencies, and retail ISPs. Provided initial
and ongoing design & policy consultancy, installation,
configuration and management of various software products and hardware
devices. Service provider level fault diagnosis and remedy. E-commerce
consultancy, design and implementation of Firewall-1 v4
installations/upgrades. Internet security consultancy and intrusion
testing.
Senior Software Engineer
RMC
(Privately Held; 51-200 employees)
Computer Software Industry
June 1997 – September 1998 (1 year 4 months)
Research
and Development of emerging technologies for reverse and forward
re-engineering of mainframe computer program suites. Work produced
advanced automated Y2K and currency (Euro) translation in multi-million
line systems.
Clients included major global financial institutions.
Designed and implementated cross-platform email including client OS upgrades, user tuition and directory services.
Creation of corporate Internet presence, intranet services, and
secure internet access. Setup and maintenance of corporate intranet and
secure remote access.
Software Engineer
Schlumberger Technologies
(Public Company; 10,001 or more employees; SLB)
Computer & Network Security Industry
June 1995 – June 1997 (2 years 1 month)
Software engineering embedded software, GUI redesign/implementation.
Risk evaluation for the local/global administrators, including network and system security auditin
Software Engineer (Intern)
Schlumberger Industries
(Public Company; 10,001 or more employees; SLB)
Computer & Network Security Industry
June 1993 – August 1994 (1 year 3 months)
Development of automatic source control and software build process. Local network and systems security expert.
WAN/LAN & system level security audits, identifying and quantifying security risks.
Student System/Network Administrator
Devizes School
(Educational Institution; 51-200 employees)
Higher Education Industry
June 1989 – July 1991 (2 years 2 months)
Student System and Network Administrator installing, configuring and managing a new IT centre.
Software migration (porting/bugfixing) of all educational software
Education:
University of Brighton
BSc Hons (Sandwich),
Computer Science,
1991 – 1994
Activities and Societies:
.
During my 'sandwich' (intern) year I was a member of 5 continent
Security Tiger Team for Schlumberger Group (www.slb.com). Also became a
Configuration Control and Build Management (CCBM) expert during this
(extended) employment that formed a key part of the course.
At the end of the second year,
I gained the highest mark for the Software Engineering Exam.
Devizes
A-Levels,
Physics,
Chemistry,
Design & Technology,
1989 – 1991