Giovanni B Colonna
Cyber Security Specialist - Adversary Simulation Tlpt - Red Team - Fraud Red Team @UniCredit
Signup · Get unlimited contacts
WORK HISTORY
Cyber Security Specialist - Adversary Simulation Tlpt - Red Team - Fraud Red Team @UniCredit
Roma, IT
Group Cyber Security Threat Intelligence and Monitoring Team @ UniCredit Group level oversight of Adversary Simulation and Red Teaming activities in all UniCredit Legal Entities (TIBER-Eu/TLPT) Threat-Intelligence driven Offensive Security activites Attack Surface Reduction for Group Digital Assets Execution of regular TTP-Driven internal Purple Team activites, assume-breach assessments and exposed perimeter continuous monitoring
EDUCATION
Sapienza Università di Roma
Master of Science (M.Sc.), Engineering in Computer Science - Cyber Security
Sapienza Università di Roma
Laurea di primo livello - Ingegneria Informatica ed Automatica, Ingegneria informatica, software
ABOUT GIOVANNI B COLONNA
Expand this section to read all about me!)Group Cyber Security Threat Intelligence and Monitoring Team @ UniCredit Group oversight of TLPT/TIBER/Adversary Simulation and Red Teaming activities in all UniCredit Legal Entities Threat-Intelligence driven Offensive Security activites - Threat Hunting, Black Team and Physical Intrusion assessment Attack Surface Reduction for Group Digital Assets Execution of regular TTP-Driven internal Purple Team activites, assume-breach assessments and Fraud Red Teaming activities Project ManagerMain tasks in my past role in UniCredit Vulnerability Management: Planning, Execution and Oversight of Penetration Testing activites, web & infra (Metasploit, Kali Linux, sqlmap, burp, nuclei, custom scripting) against Bank assets (Digital Channels, exposed assets, AD environment) Definition of policies and processes in Vulnerability Management for the Group Penetration Test team management and Red/Purple Team coordination (report evaluation, vulnerability severity scoring in financial ambitos) Vulnerability Assessment tools management (nexpose, TenableSC, Qualys), Qualys WAS and VM certified Design of cyber risk scenarios for projects in Financial context with sharing of results with project stakeholders Reporting to Bank Management and C-level area (CIO, CSO) Tender management and RTO for external suppliers in Vulnerability Management program Project Manager (for >1M EUR) in Cyber Security Initiatives Elite-hacker on HackTheBox CVE Contributor CVE-20•••••32 CVE-20•••••10 eWPTXv2 (INE Web Application Penetration Testing Extreme) programming languages (C/Java/python/ruby/shell/ps1/go)- scripting for pentest/red team- Basic knowledge of low level programming (Assembly)- Experienced in high-pressure work and emergency scenarios- Familiar with *NIX and Windows operating systems.Others- Fluent (C1) in English both written and spoken- TeamWork and Team Building attitude- Bullet points lover
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.