Your browser is outdated!

To ensure you have the best experience and security possible, update your browser. Update now

×

Paweł Hacuś

IT Security Specialist

Security Consultant
Cybersecurity ICT/OT expert
Vulnerability Management Specialist
Ethical hacker
Security Pentester
Paweł Hacuś
Driving License
Professional Status
Employed
Open to opportunities
About Me
I’m a meticulous and proactive Cyber Security Specialist with hands-on experience in vulnerability management, system health checks, and compliance gap analysis aligned with CIS Benchmarks and industry best practices. I specialize in identifying and prioritizing security misconfigurations across enterprise environments and translating technical findings into actionable remediation plans.

My focus is on strengthening the overall security posture through in-depth assessments, scan data correlation, and collaboration with stakeholders to close compliance and configuration gaps. I also develop training materials and documentation to support sustainable improvements in security hygiene.

Core Competencies:
• Vulnerability assessment and remediation workflows
• Deep knowledge of CIS Benchmarks and system hardening (Windows/Linux)
• Identifying and closing security gaps through health checks and policy audits
• Experience with SIEM, proxy, and endpoint protection platforms
• Translating technical risks into business-impact insights
• Clear communication with both technical teams and business stakeholders
• Strong documentation and audit readiness skills
Resume created on DoYouBuzz
  • Responsible for managing IT security risks, coordinating remediation activities, and ensuring compliance with both IBM Global Security processes and client-specific requirements. Collaborates with account teams, technical experts, and clients to strengthen overall cybersecurity posture and maintain audit readiness across environments.
  • Maintain and update customer security documentation in line with internal and client standards.
  • Identify, assess, and track IT security risks, ensuring timely mitigation and closure.
  • Perform comprehensive Health Check assessments across IT infrastructure — servers, applications, databases, and network devices.
  • Manage vulnerability assessment and patch remediation processes, including follow-ups and exception tracking.
  • Collect, verify, and maintain audit evidence for compliance and risk reporting.
  • Generate regular reports on security posture, vulnerabilities, and remediation progress.
  • Coordinate with internal and client stakeholders on security-related initiatives and reviews.
  • Improved overall compliance and vulnerability management efficiency by streamlining health check and exception-tracking processes. Strengthened collaboration between IBM security teams and clients, resulting in faster risk mitigation and improved audit outcomes.
  • Administered and supported centralized SIEM and logging infrastructure using IBM QRadar, ensuring effective monitoring, detection, and response to security incidents across IT and OT environments. Managed enterprise-level threat protection systems and maintained compliance with ITIL-based operational standards.
  • Operated and tuned IBM QRadar SIEM to enhance threat visibility and reduce false positives.
  • Supported and optimized key threat protection tools, including:
    – McAfee ePolicy Orchestrator (ePO) – antivirus management and reporting.
    – McAfee Web Gateway – web filtering, malware protection, and policy enforcement.
    – Anti-spyware and application control tools for endpoint security.
  • Drove continuous development and improvement of the SIEM platform within IT and OT security projects.
  • Handled Change, Incident, Problem, and Service Request tickets in alignment with ITIL processes
  • Administered FUDO Privileged Session Manager (PSM) — monitoring, controlling, and recording privileged access across the infrastructure.
  • Provided operational support for Windows and Linux security environments.
  • Enhanced detection and response capabilities through advanced SIEM tuning and threat intelligence integration. Reduced incident resolution time by implementing automated correlation rules and improving cross-team collaboration between IT and OT security operations.
  • Developed and implemented comprehensive cybersecurity procedures to safeguard organizational data and systems
  • Collaborated with management to update security policies, strengthen defenses, and ensure compliance with corporate and regulatory standards
  • Proactively monitored infrastructure and responded to potential security incidents.
  • Designed and deployed security protocols protecting critical infrastructure and databases.
  • Monitored user activity and access logs to detect anomalies and potential vulnerabilities.
  • Implemented system recovery and incident response procedures to minimize operational impact.
  • Ensured timely deployment of security updates and antivirus definitions.
  • Conducted cybersecurity awareness training for employees and management teams.
  • Maintained compliance with internal and external data protection and email security standards.
  • Led investigations into cybersecurity incidents, identifying root causes and recommending preventive actions.
  • Compiled and analyzed daily security and database integrity reports to identify risks before exploitation.
  • Enhanced organizational cybersecurity posture by establishing standardized response procedures and awareness programs. Reduced incident response time by 30% through improved monitoring and reporting processes.
  • Responsible for designing, testing, and maintaining Microsoft System Center Configuration Manager (SCCM) solutions for multiple clients, both remotely and on-site. Experienced in large-scale SCCM deployments, Windows Server administration, and application packaging. Provided end-to-end management of IT infrastructure standardization and automation processes.
  • Administered Windows Server 2008 / 2012 environments, including Active Directory
  • Managed SCCM 2007 and SCCM 2012 R2 infrastructure, deployments, and reporting
  • Implemented and maintained Advanced Group Policy Management (AGPM) for GPO creation and deployment
  • Managed Windows Deployment Services (WDS) — image editing, migration, and deployment for Windows XP through Windows 8
  • Utilized Microsoft Application Virtualization (App-V) and User State Migration Tool (USMT) technologie
  • Oversaw Software Update Point (SUP) and Windows Server Update Services (WSUS) operations
  • Maintained technical documentation and updated configuration knowledge bases
  • Improved system reliability and deployment speed across distributed environments through automation and standardization of SCCM processes. Streamlined software distribution and patch management for over 1,000 endpoints within corporate infrastructure.
  • Coordinated IT maintenance and support operations.
  • Managed IT infrastructure issues and provided technical solutions.
  • Coordinated IT support team activities for Pekao SA.
  • Maintained strong relationships with existing and former clients.
  • Created technical specifications, service manuals, and documentation.
  • Delivered training sessions for employees on system maintenance.
  • Conducted training for service technicians on troubleshooting and operational procedures.
  • Standardized computer configurations across environments.
  • Performed data archiving and backup management.
  • Tested software and system compatibility in new environments.
  • Configured and supported Cisco VPN solutions on workstations.
  • Provided IT infrastructure support and coordinated maintenance activities for Pekao SA banking branches. Improved service efficiency through process standardization, technical documentation, and staff training. Supported secure remote access by configuring and managing Cisco VPN connections.
  • Provided technical support for HP and Dell desktop, laptop, and modem products across the European region
  • Specialized in troubleshooting hardware, software, and connectivity issues on Windows 2000, XP, and 7 platforms
  • Served as the Single Point of Contact (SPOC) for escalations, forwarding critical issues and improvement suggestions to management
  • Handled supervisor and escalation calls in the absence of the Technical Support Supervisor (TSS)
  • Achieved Hewlett-Packard Accredited Platform Specialist certification
  • Enhanced customer satisfaction by resolving high-priority technical issues across multiple European markets. Acted as a key escalation point, improving communication flow between support teams and management. Recognized for in-depth hardware diagnostics and efficient resolution of complex system problems on HP and Dell platforms.
  • Designed and implemented operating system environments for enterprise clients, including PKO BP
  • Supported system standardization and optimization of information processing procedures
  • Responsible for data archiving and maintaining consistent workstation configurations across the infrastructure
  • Contributed to the successful deployment of standardized operating environments for PKO BP, improving system stability and data management efficiency across multiple locations.
  • Provided end-user support for IT infrastructure and business systems
  • Diagnosed and resolved software, hardware, and network issues
  • Installed and configured systems and applications in accordance with company procedures
  • Administered Windows environments and managed LAN/WAN infrastructure
  • Supported Active Directory domain migration and post-migration troubleshooting
  • Participation in the corporation's IT
  • Managing LAN and WAN infrastructures
  • Active Directory migration of company domain and troubleshooting connected with it
  • Prepared activity reports and ensured continuous IT operations across departments
  • Improved system reliability and user satisfaction through proactive infrastructure maintenance and prompt issue resolution. Successfully supported the Active Directory migration project, ensuring minimal disruption to business operations.

IT in management and e-commerce

School of Banking and Management

2010 to 2011

Electronics technician

Electrical School Complex

September 1998 to June 2000

Computer Systems Networking and Telecommunications

Complex of Secondary Technical Schools of Communication Technology

September 1995 to May 1998
  • Vulnerability Management & Remediation
    Expert
  • Gap Analysis & CIS Benchmark Compliance
    Expert
  • IT Risk Assessment & Mitigation Planning
    Advanced
  • Security Policy Development & Implementation
    Advanced
  • Incident Response & Investigation
    Advanced
  • Ethical Hacking & Penetration Testing
    Good
  • Windows Server Security
    Expert
  • Linux Server Hardening
    Advanced
  • Group Policy & Active Directory Security
    Advanced
  • Patch Management & Software Updates
    Expert
  • System Configuration Audits
    Expert
  • Endpoint Protection
    Good
  • Microsoft SCCM Administration
    Expert
  • Windows Deployment Services
    Advanced
  • Software Packaging & App-V Virtualization
    Advanced
  • Active Directory & Group Policy Management
    Advanced
  • Data Archiving & Standardization
    Advanced
  • ITIL Process Management
    Advanced
  • Audit Evidence Collection & Reporting
    Expert
  • Technical Documentation & Service Manuals
    Expert
  • Training & Knowledge Transfer
    Advanced
  • Stakeholder Communication (IT / Business)
    Advanced
  • Project Coordination & Team Leadership
    Advanced
Certifications

Red Hat System Administration

Windows Server Administration

Cisco Certified Network Associate Routing & Switching (CCNA)

HP Accredited Platform Specialist

Computer Forensics

A Security Certificate giving acces to classified and confidential information

  • Music production
  • Sound design
  • Audio editing
  • Live music and local events
  • Weekend trips and hiking with my dog
  • CrossFit
  • Edurance training
  • Outdoor activities