Remco Hannink ICT Security Consultancy Holterweg 36 7441DH Nijverdal 06-34204098 087-8724221 info@foursec.nl www.foursec.nl Education BSc, Computer engineering, Hogeschool Enschede (graduated 1992) MSc, Computer science, Universiteit Twente (graduated 1995) Courses Alfresco Jumpstart Course CISSP (2007) CCENT (CCNA part 1) Masterclass Infrastructure and Architecture (Cibit) Personal Skils - Company internal Writing of comprehensive documentation Windows NT workstation (MCSE) Windows NT server (MCSE) TCP/IP networking (IBM) Visual Age C++ for Java (IBM) IBM 4758 Crypto course (IBM) Introduction Prince II Projectmanagement Employment Period: August 2008 - current Company: Self employed at Foursec Job description: ICT Security consultant / owner Period: March 2004 - August 2008 Company: Be-Value b.v. Job description: Senior ICT consultant Period: August 2001 - December 2003 Company: Stelvio b.v. Job description: Internet security consultant Period: August 1995 - August 2001 Company: IBM Professional services N.V. Job description: Architect Project experience Period: November 2013 - current Organization: Department of Defense NL - JIVC/SATS
Job description: Network security architect Designing and accreditation of several gateways between networks with different classifications. Perform a (technical) risk analysis according to VIR E&E methodology. Design and implement a Drivelock endpoint solution on classified networks. Accreditation of a military classified semi-static network. Design and implement security measures to secure a mobile Android platform for military and classified use. Integrate DefCERT within military and classified networks. Period: March 2004 - November 2013 Organization: Department of Defense NL C2SC project TITAAN Job description: Security architect Design and implement an IDS/IDP. Design and implement a SIEM solution based on Intellitactics software. Design and test a Network Access Control (NAC) sytem based on 802.1X, PKI en RADIUS. Performance measurements en testing of application of different VPN solutions (hardware, software, tunnel mode, transport mode). Design of an Electronic Key Management Systeem for crypto hardware. Designing and implement an accredited gateway between networks with different classifications. Implementation of government security guidelines using the CRAMM analysis method. Design and implementation of security measures in the area of transmission, networks, VoIP and applications for a new semi-static military network (TITAAN). Implementation of a layer 2 crypto in an existing WAN network. Implementation of IP crypto s in an existing WAN network. Design and implementation of a RADIUS authentication system.
Design of a SNMPv3 management system. Design and implementation of a VPN solution. Development of a security awareness training. Development of a secure architecture training. Design and implementation of an IDS based on opensource software. Securing an Android tablet/smartphone to proces restricted information. Period: November 2002 March 2004 Organization: Stelvio b.v. Job description: Productmanager Design and implementation of a centralized Spamand Virusfilter. Based on open source products. Period May 2000 March 2004 Organization: nl.tree Job Description: Architect / security specialist Design parts of the new Kennisnet network (cisco) Design and migrate to a new serverfarm for Kennisnet (SUN Solaris en Iplanet) Design and projectmanagement of a provisioning system. Period December 2000 March 2004 Organization: nl.tree Job Description: Security consultant Implementation of security management within nl.tree. Perform an Afhankelijkheden & Kwetsbaarheden (A&K) risk analysis on all parts of Kennisnet. Design of a decentralized firewall service Design of a nationwide VPN service. Design of a nationwide Remote Access service. Design of a SSO (Single Sign On) and Identity Management platform. Period: June 2003 Organization: FOM (stichting Fundamenteel Onderzoek Materie) Job description: Consultant Design a secure remote connection, product selection and review of the implementation by third party.
Period: May 2003 Organization: Stelvio b.v. Job Description: Consultant Designing, implementing, testing and migrating an Open Source mailserver (Linux, software RAID, Postfix, Cyrus, Mailman en Apache). Period: May 2002 Organization: LSOP (Dutch Police Academy) Job description: Consultant Perform a security scan and penetration test on extranet part of the network. Implement security management in the organization and perform A&K analysis on a part of the network. Period: May 2001 Organization: Hogeschool van Utrecht Job Description: Consultant Advice on measures for restricting internet access by students. Period: June 2000 en June 2001 Organization: PBNA Job description: Trainer Teach 2 PBNA courses on Information security based on the Code voor Informatiebeveiliging guidelines from the Dutch government. Period: September 2000 June 2001 Organization: PON automobielhandel Job description: Project manager Technical projectmanagement for router management for their complete worldwide network. Period: Augustus 2000 December 2000 Organization: DSM Born Job description: Consultant Compose a policy for internet access. Period: May 2000 November 2000 Organization: NIMR (Nederlands Instituut voor metallurgische Research)
Job description: Consultant Consult the organization on securing their LAN, Internet Access and Intranet. Period: January 1999 July 1999 Organization: Informatie beheer Groep Job description: Design and System integration of a Student administration application by using Student Chipcard as authentication token. Period: July 1999 January 2000 Organization: Easychip (Interpay) en RAI Datacenter Job description: IT architect: Design, implement and perform system integration of a license plate registration application using Chipknip as an authentication token. Period: July 1999 Organisatie: IBM Nederland N.V. IT architect Design, product selection and installing a PKI system integrated with smartcards. Period: May 1999 June 1999 Organization: CenE bankiers Utrecht Integration of a homebanking application with a smartcard (Java, PC/SC en smartcards). Period: March 1999 Organization: KLM Security scan and penetration test of the KLM office LAN. Period: June 1998 Organization: De Nederlandsche Bank Review of a payment system (PC hardware, Tokenring, SNA en cryptohardware). Period: March 1998
Organization: Chipper (Postbank) Design and implement a refund application for the Chipper smartcard. Period: September 1996 December 1997 Organization: Informatie beheer groep Functie Design and system integration of an IBG selfservice terminal for students (OS/2, AS/400 CM/2, ISDN, smartcards en TCP/IP). Design and integration of a smartcard helpdesk station (X25, ISDN, Client Access, 5250 emulatie). Period: September 1995 February 1996 Organization: Studentenchipkaart IT architect Skills Languages : Security : Design and system integration of a smartcard Personalisation Station (OS/2. hardware-integratie, AS/400 koppeling). Dutch, native language. English, fluent in speaking and writing. German, Intermediate in speaking an writing. Designing and implementing of an IDS- IDP solution (Juniper, Niksun, Snort, Cisco ASA, open source solutions and Intellitactics) Performing penetration test on systems and networks Security Reviews on systems and networks Design of secure networks Design of secure systems Hardening of systems Firewalls (checkpoint, Linux, IBM, Cisco and Netscreen) Remote access solutions (Netscreen and Cisco) VPN technieken (Cisco, OpenVPN)
Hardware: Code voor informatiebeveiliging (dutch government guidelines) A&K analyse VIR 94 CRAMM NEN/ISO 17799:2005 / BS 7799 Common Criteria Smartcards and other secure tokens Cryptography (cryptohardware and algoritmes) NATO crypto, layer 2 and layer 3 PGP and S/MIME Public Key Infrastructures Workstation Security (port security, hard disk security) Identity management Netwerk equipment, Cisco, Palo Alto and Netscreen (routers, switches, firewalls en VPN concentrators) PC hardware RS/6000 hardware SUN hardware Apple hardware Crypto hardware (Serial and IP) 4th generation firewalls Microcontrollers Arduino Raspberry Pi Operating systems: Windows XP / Vista / Vista / 7 / 8 Windows advanced server 2003 Windows Server 2003 R2 / 2008 R2 / 2012 R2 UNIX (Solaris, AIX en BSD) Linux Ubuntu Redhat, Debian, Fedora en Suse Mac OS X (server) OS/2 Networking : LAN (Ethernet/Tokenring) WAN connections (ISDN, X25, G.703) WLAN (802.11 and the security aspects) TCP/IP, NetBIOS Cisco IOS ((dynamic) routing and switching) Cisco PIX and ASA OS Palo Alto 4th generation firewalls Netwerkrouting
Internet/Intranet : Projectmanagement: Design IP number plan Serial protocols and interfacing (RS-232, RS-449, EIA530, X21, V11, V35, en LVDS) VoIP, SIP, H.323 DNS, DHCP, LDAP, SNMP, POP3, IMAP en SMTP Email servers off Microsoft Iplanet and other open source products Webservers (IIS, Apache en Iplanet) VoIP services (Cisco and Asterisk) Prince II Programming languages: C/C++ Java, Javascript, NodeJS PHP, Perl, Python en Bash Windows script and Powershell Databases: MSAccess (2.0 7.0 97, 2000) SQL server MySQL 4.* 5.* PostgreSQL Oracle