You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Paul GawrilenkoPG

Paul Gawrilenko

IT Security Specialist

€720/day
Frankfurt am Main, DE
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Paul

Over 7 years of professional experience and a freelancer since 2023. My specialization lies in the area of Penetration Test Management & (IT) Project Management.

Through my previous professional experience (Consultant at KPMG & IT Security Specialist at DekaBank), I possess extensive knowledge of business processes and IT landscapes of financial institutions.

I hold a Bachelor's degree in Business Administration, am a Certified Ethical Hacker (CEH), Certified ScrumMaster®, and possess the ITIL® 4 Foundation certification.
  • German

    Native or bilingual

  • English

    Fluent

  • Russian

    Conversational

Remote only
Primarily works remotely

Experience

  • Hessische Zentrale für Datenverarbeitung
    Security Incident Manager (CSIRT)
    PUBLIC SECTOR
    August 2023 - Today (2 years and 10 months)
    Wiesbaden, Germany
    • Research, analysis, and evaluation of IT vulnerabilities and IT threat landscapes
    • Target group-specific information preparation and provision of recommendations for action regarding IT vulnerabilities and IT threat landscapes
    • Initiation, consultation on mitigation, and follow-up of security incidents
    • Vulnerability scans and management (Nessus, Greenbone, Nuclei)
    • Processing and follow-up of security incidents (Remedy)
    • Optimization of existing CSIRT processes
    • Organizational support for IT crisis situations
    CSIRT Incident Management IT Security BSI IT Basic Protection Vulnerability Analysis Vulnerability Management
  • DekaBank Deutsche Girozentrale
    IT Security Specialist
    BANKING AND INSURANCE
    December 2020 - June 2023 (2 years and 7 months)
    Frankfurt, Germany
    Penetration Test Manager | DekaBank
    Frankfurt am Main | December 2020 – June 2023
    Project Work
    • Identification of potential for internal process improvements
    • Project initiation and development of a blueprint for process automation
    • Analysis of internal and external process-supporting tools
    • Project plan management (Jira)
    • Management of Red Team activities in an agile style
    • Determination of test scope, milestones, and target systems within the framework of a simulated cyber attack
    • Coordination and moderation of daily meetings
    • Quality assurance of test results, as well as assignment of derived measures to existing projects & lines
    Day-to-day business

    • Responsibility for the field of penetration testing with an annual budget > EUR 1 million
    • Coordination of over 150 penetration tests annually
    • Moderation of kick-off and daily meetings
    • Onboarding and offboarding of external penetration testers including authorization management (Omada IAM)
    • Quality control of penetration test results
    • Vulnerability and incident management (BMC Remedy ITSM, RADAR Cyber Security)
    • Provider management
    • Commissioning and management of external service providers
    • Recording of KPIs & requirements for service providers
    • Effort / budget controlling (MS Office, SAP)
    • Collaboration with information security management
    • Participation in phishing campaigns
    • Close coordination on risk acceptances from penetration tests
    • Consultation on the creation of security concepts
    • Collaboration with the Security Operation Center
    • Creation and expansion of SIEM use cases from penetration tests
    • Purple team coordination to improve detection mechanisms
    IT Security IT Security PenTest pentest management Project Management Scrum Cybersecurity Cybersecurity ITIL
  • DekaBank Deutsche Girozentrale
    Business Service & Regulatory Control
    BANKING AND INSURANCE
    November 2018 - November 2020 (2 years)
    Business Service & Regulatory Control | DekaBank
    Frankfurt am Main | November 2018 – November 2020

    Project Work

    Sub-project management for identifying digitalization potential of existing processes
    Coordination and moderation of status meetings
    Recording and tracking of project results and milestones (MS Excel, PowerPoint)

    Day-to-day business

    Coordination of money transactions between the securities system and the central order platform (SAP)
    Project Management Accounting Controlling

Recommendations

Be the first to recommend Paul

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Bachelor of Arts
    Technische Hochschule Mittelhessen
    2017
    Bachelor of Arts (B.A.), Business Administration - Financial Services

Certifications

Skill set (25)

Categories