Tommaso Bonfà work email
- Valid
Tommaso Bonfà personal email
Tommaso Bonfà is a Manager at Deloitte. He is proficient in Inglese.
-
ManagerDeloitteVerona, It -
ResponsabileHwg Sababa Sep 2024 - PresentVerona, Veneto, Italia -
Cyber Security SpecialistHwg S.R.L. Jan 2023 - Oct 2024Verona, Veneto, ItaliaI currently hold this job position. I am responsible for the review and quality assurance of the company's information security services. Some of the activities I perform involve the management and maintenance of security platforms (SIEM) using an approach based on MITRE Framework and specific customer needs. In addition, I do strategic review of business KPIs to understand any inefficiencies and improve the effort of Cyber Security services. In addition, I do risk and security posture… Show more I currently hold this job position. I am responsible for the review and quality assurance of the company's information security services. Some of the activities I perform involve the management and maintenance of security platforms (SIEM) using an approach based on MITRE Framework and specific customer needs. In addition, I do strategic review of business KPIs to understand any inefficiencies and improve the effort of Cyber Security services. In addition, I do risk and security posture analysis, devising medium- to long-term solutions to improve the security level of customers. Show less -
Cyber Security EngineerHwg S.R.L. May 2022 - Jan 2023Verona, Veneto, ItalyAt this stage, I was involved in developing and maintaining technology solutions for the purpose of improving and automating the company's work and service in the area of Cyber Security. Specifically, I developed back-end and front-end in JavaScript (Node & React) as well as both relational (MySQL) and non-relational (MongoDB) databases. For the development of the tools in question, I had to manage and implement API communication interfaces between the third-party applications and the… Show more At this stage, I was involved in developing and maintaining technology solutions for the purpose of improving and automating the company's work and service in the area of Cyber Security. Specifically, I developed back-end and front-end in JavaScript (Node & React) as well as both relational (MySQL) and non-relational (MongoDB) databases. For the development of the tools in question, I had to manage and implement API communication interfaces between the third-party applications and the implemented systems. Show less -
Cyber Security EngineerHwg S.R.L. May 2021 - May 2022Verona, Veneto, ItaliaIn this phase of my experience in HWG, I was involved in the design, installation and maintenance of various Splunk infrastructures (SIEM). Specifically, I led entire on-boarding of Splunk based SIEM infrastructure projects up to 7 instances (machines) on-prem and cloud. I am, therefore, able to manage the entire Spunk SIEM lifecycle, from package installation to configuration and content creation (dashboard, correlation search, integrations, ..). During this period I also achieved the… Show more In this phase of my experience in HWG, I was involved in the design, installation and maintenance of various Splunk infrastructures (SIEM). Specifically, I led entire on-boarding of Splunk based SIEM infrastructure projects up to 7 instances (machines) on-prem and cloud. I am, therefore, able to manage the entire Spunk SIEM lifecycle, from package installation to configuration and content creation (dashboard, correlation search, integrations, ..). During this period I also achieved the certification of Splunk Enterprise Administrator. Show less
-
Ethical HackerHwg S.R.L. May 2021 - May 2022Verona, Veneto, ItaliaDuring this path I was able to learn and put into practice Red Team concepts that allowed me to carry out Vulnerability Assessment and Pentration Test activities. In particular, I focused on infrastructural assessment activities using tools such as Nessus and custom tools or scripts for Reconnaissance, Fingerprinting and assessment activities of target systems. Also, I'm able to use Metasploit and run/write scripts for manual vulnerability exploitation. In the last period of my journey, I was… Show more During this path I was able to learn and put into practice Red Team concepts that allowed me to carry out Vulnerability Assessment and Pentration Test activities. In particular, I focused on infrastructural assessment activities using tools such as Nessus and custom tools or scripts for Reconnaissance, Fingerprinting and assessment activities of target systems. Also, I'm able to use Metasploit and run/write scripts for manual vulnerability exploitation. In the last period of my journey, I was able to approach assessment activities also on web applications but at a less advanced level. Last but not least, I am able to draw up an entire document and/or report containing the description of the activities carried out. Show less
-
Cyber Security AnalystHwg S.R.L. May 2020 - May 2021Verona, Veneto, ItaliaAt the beginning of my career path in HWG, my task was to handle security incidents from platforms such as SIEM, EDR, NDR... During this path I was able to learn analysis and correlation techniques that allowed me to improve my critical and analytical thinking, asking the right questions for cyber problem solving. In addition, to improve my threat detection skills, I delved into different topics and technologies with their related threats and vulnerabilities in addition to studying real cyber… Show more At the beginning of my career path in HWG, my task was to handle security incidents from platforms such as SIEM, EDR, NDR... During this path I was able to learn analysis and correlation techniques that allowed me to improve my critical and analytical thinking, asking the right questions for cyber problem solving. In addition, to improve my threat detection skills, I delved into different topics and technologies with their related threats and vulnerabilities in addition to studying real cyber attacks to improve my ability to detect malicious pathways. Show less -
Cyber Security AnalystCalzedonia Group Oct 2019 - Jan 2020Villafranca Di Verona, Veneto, ItaliaDuring this internship in which I developed my thesis, I conducted studies and insights into some of the DNS protocol threats and related mitigations. As a result of my research, I designed a Brand Monitoring tool that can check if an organization's domain is being targeted for malicious purposes (eg phishing). For its realization, I had to understand all the functioning of the DNS infrastructure and implement the integration with the ICANN database.
Tommaso Bonfà Education Details
-
110 E Lode -
Itis G. Ferraris80
Frequently Asked Questions about Tommaso Bonfà
What company does Tommaso Bonfà work for?
Tommaso Bonfà works for Deloitte
What is Tommaso Bonfà's role at the current company?
Tommaso Bonfà's current role is Manager.
What is Tommaso Bonfà's email address?
Tommaso Bonfà's email address is tommaso.bonfa@hwg.it
What schools did Tommaso Bonfà attend?
Tommaso Bonfà attended Università Degli Studi Di Verona, Università Degli Studi Di Verona, Itis G. Ferraris.
Who are Tommaso Bonfà's colleagues?
Tommaso Bonfà's colleagues are Jenna N., Michal Dahan, 梁思其, Carlos Antonio Hernández Angeles, Sharon Chand, Yurik Nakagawa, Siming Guo.
Free Chrome Extension
Find emails, phones & company data instantly
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial