|
|
Curriculum vita for Will Wilkinson
Personal Information
- Marital Status: Married, No Children
- Nationality: British
- Date of Birth: 16 February 1967
- Place of Birth: Salford, Lancashire
- Current Location: Bletchley, Buckinghamshire
Skills
- Security Architecture
- ISO27001 Audit
- Windows (NT, 2000, 2003 and XP) Security (including
Compaq's Security Enhancements (NT(SE), Windows 2000 (SE), Exchange
(SE)))
- Vulnerability Assessments of Windows (NT, 2000 and
XP), Novell NetWare and UNIX systems in TCP/IP networked environments
- Network Security Assessments comprising both testing
and
rule-set reviews of routers, firewalls and switches and including
wireless systems
- Application vulnerability assessments, to source code
level
- Development of custom penetration test tools in C and
perl
- UNIX Security Standards (Solaris, Linux, HP-UX, some
IRIX and AIX)
- Intrusion Detection Systems (snort, CISCO, ISS and
NAI)
- Security incident response and investigation
- Forensic analysis of computer systems
- Firewall Policies and configuration (Gauntlet,
CyberGuard, CISCO PIX, Borderware and Firewall-1)
- TCP/IP Network Security
- Security Policies
- UK HMG Accreditation Document Sets (ADS)
- ITSEC and Common Criteria Documentation
- Risk Assessment (Using L3 Expert and CRAMM v3)
- Cryptographic Standards and solutions - both
Public-Key and Symmetric systems
- Public Key Infrastructure (Baltimore PKI, Entrust
PKI, Windows 2000/2003 CA and Active Directory)
- End User Training
- Anti-Virus Measures
- Content Protection (e.g. MimeSweeper)
- TSCM (Bug sweeping)
- Photography, both film and digital, including
processing experience
- IT hardware and software implementation and support
- Festival operations management
- Off-road driving (landrover)
- Basic field maintainance of vehicles and
communications equipment
Professional Experience
2007 - Present: Security Minds Ltd.
Principal Consultant
- Penetration test team leader
- Senior technical architect specialising in
cryptographic implementations and network design
- CLAS Consultant providing security advice to both
local and national government bodies
- ISO27001 Lead auditor
- Provision of Technical Surveillance Countermeasures
services (bug sweeping)
2007 - Present: Self Employed
Freelance Photographer
- Left Vega at the end of July 2006 and spent 6 months
travelling before setting up as a freelance photographer
- Motorsports, commercial, wildlife, wedding, portrait
and canals
photographer and photojournalist specialising in political activities
(demonstrations etc.)
- Campaign photographer for Save our Waterways
2004 - 2006: Vega Group Plc., Fareham, Hampshire
Consultant
- CHECK team member (team leader from 06/1999 until
10/2004)
conducting penetration tests for mostly UK government and military
customers
- CLAS Consultant providing security advice to both
local and national government bodies
- Security Architect responsible for the development of
a secure document management system for the European Space Agency
- CLAS Consultant responsible for the design,
implementation
and successful accreditation of a cryptographically secured remote
access solution for Fleet Support Limited at Portsmouth Naval Dockyard
1998 - 2003: EDS Information Assurance, Wavendon,
Buckinghamshire
Senior Security Consultant
- Penetration testing of numerous commercial and UK
government systems, much of which has been carried out under the CHECK
scheme. Customers include Cable & Wireless, BP, Inland Revenue,
DWP, FastWeb, National Grid, CBA, Amlin and others
- Provision of Security Consultancy to the Inland
Revenue
Infrastructure 2000 project (60,000 desktops) involving the development
of a secure architecture, production of configuration standards for
Microsoft Windows NT with NT (SE) and Security Policy documentation.
Testing of security products for use within the network and the
penetration testing of the pilot and live (performed under CHECK)
systems
- Provision of Security Consultancy to the DSS Accord
project
(80,000 desktops) involving the production of Security Architecture
documentation and configuration standards for Microsoft Windows 2000.
CHECK penetration testing of development and live systems
- Production of Accreditation Document Sets (ADS) for
various UK government customers
- Provision of pre-evaluation Consultancy to NAI for
the
evaluation of the Gauntlet Firewall product on Windows NT. Including
the production of Architectural and detailed designs from source code
- Production of Windows NT, Windows 2000 and UNIX
security
standards for RESTRICTED and SECRET systems for MoD and other
government contracts
- Configuration of Firewall-1, CyberGuard and Gauntlet
firewalls for various government and commercial customers
- Investigation of computer security incidents and the
development of countermeasures to defeat further attacks
- Risk assessment of MoD disaster recovery processes
for the AFPAA project
1995 - 1998: EDS Corporate Security, Telford, Shropshire
Security Advisor
- Provision of general Security Consultancy to the EDS
Inland
Revenue Division including the production of Community, System and
System Interconnection Security policies and Security Architecture
documentation
- Assistance in the penetration testing of the Inland
Revenue's Strategic Wide-Area Network by DERA
- EDS Corporate Security representative on the
Intelligent
Forms Project to provide a proof of concept demonstrator for the
electronic submission of forms over the Internet for the Inland
Revenue, Customs and Excise and the DSS
This was a Joint project between EDS and Microsoft
- Training of EDS Security Managers in the requirements
of their role and the applicable policies for the Inland Revenue Account
1989 - 1995: EDS Technical Infrastructure, Worthing,
West Sussex
Systems Engineer
- Provision of second and third-line support to the EDS
Inland Revenue Division and Inland Revenue
- Software development in Clipper, MS Access,
QuickBasic and Visual Basic
- Training for users of bespoke software developed by
EDS
- Hardware and software support of Intel based PCs,
Hubs and Routers including multi-protocol connections with MVS and UNIX
hosts
- Support of Novell and Windows Local-Area Networks
- Production of QMS documentation for ISO 9001
certification
- Provision of Anti-Virus advice and a
disinfection/clean-up service for significant infections
- Configuration and support of PC-DACS and Stoplock
access control software
1988 - 1989: Jesuit Volunteer Community, Birmingham,
West Midlands
Volunteer
- Day care assistant for tetrapleigic man, providing
care to enable home living (6 months)
- Assistant at drop in centre for young unemployed and
homeless (6 months)
- Residential warden at move-on hostel for 16-18 year
olds
leaving care assisting them to develop life skills to allow them to
move to their own homes (6 months)
Education
- 1982-1985: Falibroome County High School,
Macclesfield, Cheshire.
- "A" Levels: Chemistry, Biology, Physics
- 1978-1982: Cheadle Hulme School (MWACOS), Cheadle
Hulme, Cheshire.
- "O" Levels: Mathematics, Chemistry, Biology,
Physics, Computer Studies, English Language, English Literature, Latin
Accreditations
- CESG Listed Advisor Scheme (CLAS) Consultant from
October
1998 until July 2006, accepted for re-entry to the scheme in October
2008
- CESG CHECK Team Leader from 06/1999 until 10/2004
- CISSP
- ISO27001 Lead Auditor
- Formerly Technical Authority for EDS's participation
in the CHECK Scheme
- ITSEC and Common Criteria trainee Evaluator
Security Clearance
- I hold a current UK Government clearance (details
provided on request to HMG/List X security controllers only)
Interests and Activities
- I am involved in conservation activities with the
BBONT (local Nature Trust) and am a RSPB member
- I am also actively involved in the canal restoration
movement with the Waterways Recovery Group. This has enabled me to
learn many practical skills including hedge laying, brick laying,
dumper driving, concrete forming (including re-bar installation) and
shortly to include chainsaw operation (CS30 & 31)
- I have worked at the Greenbelt Festival for the last
20
years including 8 years managing a team of 30-50 stewards and 9 years
as an operations controller
For further details on the CLAS scheme please visit http://www.cesg.gov.uk/site/clas/index.cfm.
For further details on the CHECK scheme please visit http://www.cesg.gov.uk/site/check/index.cfm.
To contact me please email
.
|