Resume
-
Summary
Eric Romang, 38 years old, near 16 years of professional experience, and 13 years of passion for IT Security.
Starting as webmaster and postmaster, in French IT national players companies, I’m involved to System & Security Architect, with some development background (mainly PHP and Perl), and finally became a Team Leader, now working for e-Business & Resilience Centre.
I’m also Project Manager & Senior Supplier (ArcSight architect)for designing & implementing Log Management, Event Management and Security monitoring, based on ArcSight products (ArcSight ESM SIEM & Logger) and others monitoring tools. ArcSight infrastructure architecture & design, uses cases definition how meet business requirements.
I’m also playing the role of ITIL Configuration Manager, ITIL V3 foundation certified and CAB member. I designed, implemented the related process and CMDB. Necessarily I provide Business Activity Monitoring & Intelligence Reporting to follow and measure the activities off all ITIL processes. I also actively participated in the implementation of the Incident & Change Management process.
I’m also Lean Six Sigma Champion in order to be mentor, remove obstacles, verify business alignment, keep projects focused, ensure timing completion and drive quantifiable results.
In parallel of my regular activities, I co-founded, in 1998 ZATAZ.com, French spoken online newspaper, leader in IT Security news. With my 12 years in IT Security awareness, I have developed strong knowledge and skills in incident recognition and response, security visualizations and pen tests.
During my professional activities, I have managed security consultants specialized into pen tests, vulnerability audits, computer forensics and web application security.
-
Experience
Service Design & Industrialization Team Leader @e-Business & Resilience Centre – Luxembourg
September 2008 – Present
In charge of managing, coordinating, interviewing and stimulating SDI team. Preparation and participation in operational boards. Monitoring and reporting of all team activities. Quality & risks controls, deadline follow-up. Cost center owner, supplier management.
Project Manager & Senior Supplier (ArcSight architect) for designing & implementing Log Management, Event Management and Security monitoring, based on ArcSight products (ArcSight ESM SIEM & Logger) and others monitoring tools. ArcSight infrastructure architecture & design, use cases, correlation rules, dashboards, reports definitions how meet business requirements. Also administrating ArcSight ESM and associated Oracle database.
ITIL Configuration Manager, CAB member, in charge of the process activities and follow-up. Definition, implementation and CSI of the process. Senior supplier of the CMDB engine and related Business Activity Monitoring. Senior supplier for Incident, Problem, Change & Release Management.
Participant to the ebrc ISO 27001 certification project (acquired in July 2010), especially on the ICT Incident Management controls, Configuration Management controls, and monitoring controls.
Security Architect @e-Business & Resilience Centre – Luxembourg
September 2007 – September 2008
Pre-sales budget definition and suppliers management. IT & Security infrastructure design authority based on business services requirements.
Operational security authority for client’s infrastructures (report of findings, client’s security concerns follow-up, security strategies, security procedures, guidance’s, risk analysis and mitigation, vulnerability review,…).
System Architect @Datacenter Luxembourg S.A – Luxembourg
October 2002 – September 2007
System architect and team leader of three system engineers. In charge of managing the IT operational infrastructures (around 200 servers). In charge of incident detection, categorization and resolution. In charge of validating all required and proposed changes on the IT infrastructures. Operational problem and release management.
Pre-sales budget definition and suppliers management. IT & Security infrastructure design authority based on business services requirements. Operational security authority for client’s infrastructures (report of findings, client’s security concerns follow-up, security strategies, security procedures, guidance’s, risk analysis and mitigation, vulnerability review…).
Red Hat Linux system administration, storage and virtualization architect. Red Hat Network Satellite organization manager. MySQL clustering, load balancing & high availability implementation. Security management of the IT infrastructure (log centralization, IDS, VPN, antivirus, …)
System & Security Administrator @Synapse Internet Service – Luxembourg
2001 – 2002
System and security administrator of web, mail, database, file servers and corporate workstations.
System & Security Administrator @XYZ – Luxembourg
2000 – 2001
System and security administrator of web, mail, database, file servers and corporate workstations.
Postmaster @YoupY
1999 – 2000
IT & Security infrastructure elaboration. WAP & PDA solution design. Junior webmasters trainer. Supplier management. Mail server administration and spam fighting.
Webmaster @Internence
1998 – 1999
Occupied station: Half-time – Webmaster YOUPY CORP. (France – Germany – Italy – US – the U.K. – Spain – Portugal – Switzerland) (Animation, Referencing, Promotion, partnerships management, updates, HTML).
Another half-time – Webmaster of the INTERNENCE customers websites. Castorama, Cofidis, Flunch, Furet du Nord… (Referencing, Internet marketing, HTML).
-
Certifications
PRINCE2 Foundation @DEMETS & HEUSKIN
Lean Six Sigma Champion @DEMETS & HEUSKIN
ITIL v3 Foundation @DEMETS & HEUSKIN
ACSA – ArcSight Certified Security Analyst @ArcSight University
ACIA – ArcSight Certified Integrator / Administrator @ArcSight University
ArcSight Logger Administration and Operations @ArcSight University
-
Education
BTS Electronique – Paul Langevin, Beauvais, France – 1996 – 1998
-
Languages
French – Father tongue
Luxembourgish – Mother tongue
English – Fluent spoken, medium writing
German – Medium spoken, medium writing
Korean – Beginner spoken, beginner writing
Recent Comments