David Hartman
@davidhartman
Vulnerability Analyst and Linux security specialist with 4+ years in CVE research.
What I'm looking for
I’m a cybersecurity professional with 4+ years of experience in vulnerability analysis and security research. I specialize in analyzing software vulnerabilities, creating Docker-based testing environments, and developing Python tools for security automation. My daily work includes CVE/CWE analysis, vulnerability triage, and building proof-of-concept exploits.
As a Vulnerability Analyst at Kaspersky, I analyze software vulnerability flows and create comprehensive testing environments to validate security threats and attack scenarios. I’ve created 100+ Docker-based testing environments for CVE validation and streamlined vulnerability applicability assessment across multiple software versions. I also document findings and provide remediation recommendations.
Previously, as an Information Security Analyst at Astra Linux, I analyzed the effectiveness of information security tools for the Astra Linux OS. I worked on analysis of commonly known CVEs and identified vulnerabilities, automated vulnerability discovery and prioritization processes in CI/CD, and maintained the Bug Bounty program by analyzing researcher reports.
Earlier, as an Information Security Engineer at ICL Group, I deployed and administered comprehensive information security systems and solutions for enterprise clients. I handled deployment/configuration, ongoing administration and maintenance, troubleshooting, and documentation of system configurations and operating procedures. I’m also expanding my skills through hands-on practice on HackTheBox and pwn.college, focusing on web application vulnerabilities and binary exploitation fundamentals.
Experience
Work history, roles, and key accomplishments
Analyzing software vulnerability flows and creating comprehensive testing environments to validate security threats and attack scenarios.
Key Achievements
- Created 100+ Docker-based testing environments for CVE validation
- Streamlined vulnerability applicability assessment process for multiple software versions
Key Responsibilities
- Analyze registered software vulnerability flows and secur
Analysis of the effectiveness of information security tools (ISP) for the Astra Linux OS
Key Responsibilities
- Analysis of commonly known CVEs and identified vulnerabilities for the Astra Linux OS
- Automation and implementation of vulnerability discovery and prioritization processes in CI/CD
- Maintaining the Bug Bounty program and analyzing reports from researchers
Deployed and administered comprehensive information security systems and solutions for enterprise clients
Key Responsibilities
- Deployment and configuration of information security systems and solutions
- Ongoing administration and maintenance of the security infrastructure
- Troubleshooting technical issues related to the operation of security systems
- Documentation of system configuration
Education
Degrees, certifications, and relevant coursework
Kazan State University
Магистр компьютерных наук, Информационная безопасность
2022 - 2025
Kazan State University
Master of Computer Science, Information Security
2022 - 2025
Earned a Master’s degree in Computer Science with a focus on Information Security.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Salary expectations
Social media
Job categories
Interested in hiring David?
You can contact David and 90k+ other talented remote workers on Himalayas.
Message DavidGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
