Summary
Overview
Work History
Education
Timeline
Generic

Onofrio Montrone

Cyber Risk & Advisory
Geneve

Summary

Results-driven Cyber Risk & Advisory specialist with experience in comprehensive risk assessments, third-party management, and incident response across diverse projects. Adept at providing strategic recommendations and ensuring cybersecurity compliance. Skilled in assessing and monitoring third parties to enhance cybersecurity postures

Overview

11
11
years of professional experience
3
3
years of post-secondary education
1
1
Language

Work History

Cyber Risk & Advisory Specialist

Richemont
Geneva
02.2023 - Current

Lead cyber risk assessments for different projects and deliver actionable recommendations to enhance security measures.

  • Spearhead comprehensive cyber risk assessments for various projects, ensuring thorough coverage of potential vulnerabilities and threats.
  • Collaborate with cross-functional teams to integrate cybersecurity best practices into project lifecycles, contributing to proactive risk mitigation.
  • Provide strategic recommendations to enhance cybersecurity controls, aligning with industry standards and regulatory requirements.

Assess and monitor vendors using a robust third-party risk management framework.

  • Execute comprehensive third-party risk management framework to assess, monitor, and mitigate cyber risks associated with external partners.
  • Conduct regular reviews of third-party cybersecurity practices, ensuring alignment with organizational standards and regulatory compliance.

Manage cyber security incidents and offer recommendations to third-party stakeholders.

  • Collaborate with external partners during incident investigations, providing clear and concise recommendations to improve overall cyber resilience.

Cyber Resilience - Short Assignment

Richemont
Geneva
04.2023 - 06.2023

Contributed to the transformation of the CSIRT towards a new generation model.

  • Focused on evolving CSIRT by emphasizing context and correlation of events and detections.
  • Gained insights into objectives and goals of various cyber functions, including Incident Response, Offensive Operations, User Awareness, Forensics, and Threat Intelligence.
  • Facilitated migration of incident response tools to new products, enhancing event correlation and contextualization.
  • Transitioned from QRadar to Microsoft Sentinel for SIEM and from Resilient to PaloAlto XSOAR for SOAR.

IT Specialist

Richemont
Milan
01.2018 - 03.2023

Provide comprehensive IT support for local and remote users across multiple locations.

  • Offer local and remote support for users situated in offices, stores, and manufacturing facilities, ensuring seamless operations.
  • Troubleshoot incidents and deliver user services promptly, resolving issues to enhance overall user experience.

Manage setup and delivery of IT equipment, including laptops, desktops, smartphones, phones, and tablets.

  • Efficiently handle setup and delivery of various IT devices, ensuring users have the necessary equipment for optimal productivity.
  • Collaborate with teams to streamline equipment deployment processes and enhance user onboarding experiences.

Install network devices, maintain racks, and manage cabling infrastructure.

  • Execute the installation of network devices, ensuring reliable and secure connectivity for users.
  • Maintain racks and manage cabling infrastructure, contributing to a well-organized and efficient IT environment.

Contribute to local, regional, and global IT projects.

  • Actively participate in the management and execution of local, regional, and global IT projects, ensuring successful implementation and delivery.
  • Collaborate with cross-functional teams to address project requirements and achieve project objectives.

Manage hardware lifecycle, ensuring optimal performance and cost-effective solutions.

  • Oversee the complete hardware lifecycle, from acquisition to retirement, ensuring efficient use of resources and cost-effective solutions.
  • Implement strategies for hardware upgrades and replacements, contributing to a modern and reliable IT infrastructure.

IT Technical Support Specialist

RCS
Milan
05.2016 - 01.2018

Manage and troubleshoot incidents on critical infrastructure and applications of lawful interception.

  • Demonstrate proficiency in incident management, ensuring prompt resolution of issues on critical infrastructure and applications related to lawful interception.
  • Utilize troubleshooting skills to address and resolve complex problems, maintaining stability and security of interception systems.

Conduct log analysis and gather information for incidents and problem resolution.

  • Perform thorough log analysis to identify patterns, trends, and anomalies, contributing to efficient incident and problem resolution.
  • Gather information from diverse sources to enhance understanding and diagnosis of incidents, facilitating effective solutions.

Activate and manage interception targets, ensuring operational effectiveness.

  • Successfully activate and manage interception targets, adhering to legal and operational requirements.
  • Collaborate with relevant stakeholders to ensure proper functioning of interception targets and compliance with regulatory standards.


Provide user support and training on applications functionality.

  • Offer comprehensive user support, addressing queries and issues related to applications functionality.
  • Conduct training sessions to enhance user proficiency and promote efficient utilization of applications.


Provide on-call service outside business hours for interception activation and critical failure resolution.

  • Maintain on-call service outside regular business hours to address interception activation requests and critical failures promptly.
  • Demonstrate availability and responsiveness during on-call periods to ensure continuous functioning of interception systems.

IT Technical Consultant

Intesi Group
Milan
12.2014 - 04.2016

Provide technical assistance on middleware digital signature and secure authentication software.

  • Offer expert technical assistance on middleware digital signature and secure authentication software, ensuring users have smooth and secure experience.
  • Collaborate with clients and internal teams to address complex technical queries and provide effective solutions.

Manage incidents and deliver customer service.

  • Oversee incident management, ensuring timely and efficient resolution to maintain high levels of customer satisfaction.
  • Deliver exceptional customer service by addressing client concerns, providing guidance, and ensuring positive overall experience.

Handle product installation, update, and maintenance.

  • Manage end-to-end process of product installation, updates, and maintenance, contributing to seamless functioning of software solutions.
  • Collaborate with development teams to implement enhancements and improvements based on user feedback.

Conduct software testing and report bugs.

  • Perform rigorous software testing to identify and report bugs, contributing to overall quality assurance process.
  • Collaborate with development teams to provide detailed bug reports and participate in resolution process.

Provide on-call service outside business hours for critical failure resolution.

  • Demonstrate commitment to resolution of critical failures by maintaining on-call service outside regular business hours.
  • Ensure prompt response and effective resolution of critical issues, minimizing downtime for clients.

IT Consultant

Accenture
Milan
11.2013 - 11.2014

Provide application support and technical assistance on custom-made platforms for an oil & gas company.

  • Offer expert-level application support, ensuring the optimal performance of custom-made platforms critical to the operations of the oil & gas company.
  • Provide technical assistance to users, addressing queries, resolving issues promptly, and ensuring smooth user experience.

IT Technical Support Intern

Teva Pharmaceuticals
06.2013 - 10.2013

Specialized in incident management, user support, service delivery, and software/hardware installation.

  • Efficiently managed incident resolution processes, ensuring swift and effective resolution of issues to minimize downtime.
  • Provided user support, addressing queries, and delivering solutions to enhance overall user experience.
  • Demonstrated excellence in service delivery, contributing to achievement of organizational goals and client satisfaction.
  • Conducted software and hardware installations, ensuring proper setup and functionality for end-users.

Education

Bachelor of Science - Computer Systems And Networks Security

University of Milan
Milan
10.2019 - 10.2022

Timeline

Cyber Resilience - Short Assignment

Richemont
04.2023 - 06.2023

Cyber Risk & Advisory Specialist

Richemont
02.2023 - Current

Bachelor of Science - Computer Systems And Networks Security

University of Milan
10.2019 - 10.2022

IT Specialist

Richemont
01.2018 - 03.2023

IT Technical Support Specialist

RCS
05.2016 - 01.2018

IT Technical Consultant

Intesi Group
12.2014 - 04.2016

IT Consultant

Accenture
11.2013 - 11.2014

IT Technical Support Intern

Teva Pharmaceuticals
06.2013 - 10.2013
Onofrio MontroneCyber Risk & Advisory