# Slobodan "Bob" Horvat — Curriculum Vitae

**Email:** bob@craftbyte.com  
**Phone:** +353 83 052 1944  
**Location:** Malahide, Co. Dublin, Ireland  
**Website:** https://craftbyte.com  
**GitHub:** https://github.com/hytrex  

---

## Summary

Principal Cybersecurity Engineer specialising in Security, Cloud, and SecDevOps. Over 25 years
building and supporting complex system and network solutions, with current focus on cloud security,
Zero Trust architecture, agentic AI security, and infrastructure security across private and
public cloud platforms.

---

## Experience

### Principal Cybersecurity Engineer
**Company:** Workday Ltd  
**Period:** 2020 – Present  
**Location:** Dublin, Ireland  

Architect and enforce security across Private Cloud (bare-metal, OpenStack) and AWS, with
Kubernetes as the primary workload platform. Lead infrastructure security reviews and
threat-model new product designs. Deployed Zero Trust micro-segmentation using Illumio in
Private Cloud. Engineered ModSecurity WAF as a Kubernetes sidecar. Operate and tune endpoint
and cloud security tooling: Palo Alto Cortex XDR, CrowdStrike Falcon, Wiz Sensor, and Wiz
Advanced.

Spearheading security for agentic LLM deployments across the enterprise AI platform. Define
guardrails and evaluation harnesses to assess LLM models for security compliance, prompt
injection resistance, and data leakage. Apply the OWASP LLM Top 10 framework to AI workload
threat modelling and red-team exercises.

**Technologies:** AWS, Kubernetes, OpenStack, Illumio, ModSecurity WAF, Palo Alto Cortex XDR,
CrowdStrike Falcon, Wiz, Zero Trust, LLM Security, AI Guardrails, OWASP LLM Top 10

---

### Senior Cybersecurity Engineer
**Company:** Workday Ltd  
**Period:** 2019 – 2020  
**Location:** Dublin, Ireland  

Expanded Zero Trust coverage across Private and Public Cloud. Drove the infrastructure security
review programme and developed security design patterns adopted platform-wide.

**Technologies:** AWS, OpenStack, Kubernetes, Zero Trust, Infrastructure Security

---

### Cybersecurity Engineer
**Company:** Workday Ltd  
**Period:** 2018 – 2019  
**Location:** Dublin, Ireland  

Joined Workday Security Engineering. Hardened Private Cloud (bare-metal, OpenStack) and AWS
infrastructure. Conducted security assessments and contributed to the team's design-review
methodology.

**Technologies:** AWS, OpenStack, Infrastructure Security, Security Reviews

---

### Senior Network & Security Engineer, Team Lead
**Company:** Tokić d.o.o. (Automotive aftermarket parts distributor)  
**Period:** Feb 2010 – 2017  
**Location:** Zagreb, Croatia  

Led network and security engineering for an automotive aftermarket distributor with 100+ branch
locations. Architected and operated the full server estate (Windows, Linux, VMware). Designed
private cloud on VMware 5/6 and orchestrated phased migration to AWS S3/EC2, Azure, and Digital
Ocean. Administered MS SQL 2008/2012 with AlwaysOn HA cluster backing Navision ERP. Developed a
C# DLL integrating EFT POS terminals directly with the ERP system.

**Technologies:** VMware, Amazon S3/EC2, Azure, Digital Ocean, MS SQL Server, Navision ERP,
Cisco SSLVPN, AnyConnect, Apache, WordPress, Active Directory, GPO, Exchange 2010, C#

---

### Senior Network & Security Engineer
**Company:** Sberbank d.d. (Banking)  
**Period:** Apr 2004 – Feb 2010  
**Location:** Zagreb, Croatia  

Engineered and maintained network connectivity for a retail bank spanning 30+ branches, 2 NOCs,
and 100+ servers. Designed corporate LAN segmentation (VLANs, routing). Deployed and managed UTM
platforms (Fortigate, Palo Alto). Operated ATM/Frame Relay WAN links on Cisco 800–3600 series.
Administered Swift infrastructure.

**Technologies:** Cisco 800/1600/2900/3600, Fortigate, Palo Alto, ATM, Frame Relay, VLAN, Swift

---

### Senior Network & System Engineer
**Company:** AlterBox d.o.o. (Telecom service integrator)  
**Period:** Apr 2002 – Apr 2004  
**Location:** Zagreb, Croatia  

Built the company NOC from the ground up for a telecom service integrator. Deployed and hardened
Linux servers (Debian, RedHat, Suse) with iptables, VPN, and IDS. Instrumented network monitoring
via SNMP/MRTG. Administered Oracle 8i/9i RAC. Automated operations with Bash, Python, and Perl.

**Technologies:** Debian, RedHat, Suse, iptables, SNMP, MRTG, Oracle 8i/9i RAC, bash, python, perl

---

### Junior Network Engineer
**Company:** GlobalNET d.d. (Internet service provider)  
**Period:** Mar 2000 – Apr 2002  
**Location:** Zagreb, Croatia  

Part of the core ISP team operating a multi-technology network (Frame Relay, ATM, DSL) across
Cisco, RAD, and Zyxel platforms. Implemented MPLS and VPN services. Supervised NOC equipment
health via SNMP. Delivered a Call Center solution on Intel Dialogic and Cisco Call Manager.

**Technologies:** Cisco, RAD, Zyxel, Frame Relay, ATM, DSL, MPLS, VPN, SNMP, Intel Dialogic, Cisco Call Manager

---

### System & Software Engineer
**Company:** Leggett & Platt (LPT) d.d. (Manufacturing)  
**Period:** Feb 1999 – Apr 2000  
**Location:** Zagreb, Croatia  

Administered Novell Netware servers and IPX/SPX network for a manufacturing plant. Designed TCP/IP
transition to replace legacy IPX/SPX. Produced design guides and documentation for Scala ERP
rollout. Developed a G-Code application for a 5-axis CNC mill producing industrial feed screws.

**Technologies:** Novell Netware, IPX/SPX, TCP/IP, Scala ERP, G-Code, CNC

---

### Intern — POS System Integration
**Company:** Edeka Zentrale AG & Co KG (Supermarket)  
**Period:** Jan 1997 – Feb 1998  
**Location:** Hamburg, Germany  

Ported a CA-Clipper DOS POS system to CA-Visual Object (Windows) for a major supermarket chain
in Hamburg. Integrated a CTI application with an Oracle database.

**Technologies:** CA-Clipper, CA-Visual Object, Oracle, CTI

---

### Software & Hardware Engineer
**Company:** Revoc d.o.o. (Software & Hardware distributor)  
**Period:** Aug 1994 – Aug 1997  
**Location:** Zagreb, Croatia  

Delivered Novell Netware (IPX/SPX) network solutions for SMB clients. Built CA-Clipper financial
software for accounting and banking. Designed Oracle databases and wrote PL/SQL for core banking
software. Implemented the company's first CTI system with IVR and ACD on Intel Dialogic.

**Technologies:** Novell Netware, IPX/SPX, CA-Clipper, Oracle, PL/SQL, Intel Dialogic, IVR, ACD

---

## Education

### Technical School for Computer Science and Technology (TSC)
**Location:** Čakovec, Croatia  
**Period:** Oct 1989 – Apr 1994  
High school with computer labs and programming courses. Foundation in computer science,
electronics, and networking.

---

## Technical Skills

### Networking (15+ yrs — Expert)
TCP/IP routing/switching, OSPF, BGP, L2 (VLAN, STP, 802.1x), VXLAN, Cisco

### Network Security (15+ yrs — Expert)
Cisco IOS ACL, Cisco ASA VPN, iptables, OpenVPN, Cisco FirePower UTM, Meraki MX, VPN IKE/IPSEC

### Cloud Security (5+ yrs — Expert)
Illumio Zero Trust, Palo Alto Cortex XDR, CrowdStrike Falcon, Wiz, ModSecurity WAF, AWS Security, K8s Security

### AI / LLM Security
LLM Security, AI Guardrails, OWASP LLM Top 10, Prompt Injection, Agentic AI Security

### Cloud Infrastructure (5+ yrs — Advanced)
Private Cloud VMware, OpenStack, Amazon S3/EC2, Microsoft Azure, Digital Ocean

### Linux/Unix Infrastructure (5–10 yrs — Advanced)
Apache, nginx, BIND, Samba, Postfix, LDAP

### Linux/Unix OS (5–10 yrs — Advanced)
Debian, Ubuntu, CentOS, RedHat, Suse, Yocto

### Containers & DevOps (5+ yrs — Advanced)
Kubernetes, Docker, Helm, Terraform, Ansible, Puppet, Chef

### Microsoft Windows Infrastructure (10+ yrs — Expert)
Domain Controller, GPOs, MS Exchange, MS SQL Server, Active Directory, NAC/Radius, Veritas Backup Exec, EMC Networker

### Databases (10+ yrs — Advanced)
MySQL/MariaDB, Postgres, MS SQL Server, Oracle

### Programming/Scripting (10+ yrs — Good)
Bash, Awk, Perl, Python, PHP, NodeJS, Ruby, Rust, C#, C++, MicroPython

### Storage (10+ yrs — Good)
SAN/NAS, Pure Storage m10, HP 3Par, EMC, Brocade FC Switches, iSCSI

### Monitoring (10+ yrs — Expert)
Syslog, fluentd, LogStash, SNMP, Nagios, Zabbix

### Troubleshooting (15+ yrs — Advanced)
tcpdump, Wireshark, IDA Pro, GDB, WinDBG

---

## Languages

- Croatian — Native speaker (C2)
- English — Fluent (C1)
- German — Basic (A1)

---

## Extracurricular

### Mobile Development 2D & 3D — 2012–Present
Android and iOS game development using Unity3D and UnrealEngine 4.
2D/3D games and prototypes, shader optimisation.
Unity3D C# Mono programming.
Prototyping in UnrealEngine Blueprint and C++.

### Embedded Development — 2014–Present
Raspberry Pi, Arduino, and SmarTEK platform projects.
OpenCV with Python and C++.
Custom Raspbian (Debian) builds, bash/python scripting.
IoT home-automation controller on Arduino.
Windows application for GigE Vision SmarTek high-speed cameras.
MicroPython firmware development on ESP32 microcontrollers — sensor nodes, MQTT telemetry,
Wi-Fi mesh automation, and low-power IoT prototypes.

---

*Last updated: 2026-06-28*  
*Machine-readable version: https://craftbyte.com/cv/slobodan-horvat-cv.md*
