
M. Chabanov
Linux Security Expert, Hardening, Firewall, Intrusion Prevention
Compétences

Voir mes services

Expérience professionnelle
Linux Security Engineer
Freelancer.com • Indépendant
Feb 2022 - Apr 2026 • 4 yrs 2 mos
Hardening production Linux servers for SaaS, e-commerce, hosting and WordPress clients across the EU and US. Core responsibilities: - CIS Benchmark and STIG-based server hardening (Ubuntu, Debian, RHEL, Rocky, AlmaLinux) - Firewall design and deployment: iptables, nftables, UFW, firewalld - SSH lockdown, fail2ban and CrowdSec integration, brute-force mitigation - Intrusion detection with Wazuh, OSSEC, AIDE and auditd - Malware scanning and cleanup using rkhunter, chkrootkit, ClamAV and Lynis - Web server hardening for Nginx and Apache, including ModSecurity WAF rules - Docker and Kubernetes security reviews, rootless containers, SELinux and AppArmor profiles - Automation with Ansible and shell scripts for repeatable hardening - VPN deployment: WireGuard, OpenVPN, IPsec - Incident response, log forensics and post-breach recovery Every engagement ends with a detailed report, documented changes and a clean rollback plan.