Suggestions
Steeve Barbeau
Security Engineer
Professional Background
Steeve Barbeau is a seasoned security engineer with a decade of experience specialized in application security and network penetration testing. His robust career spans various roles where he has honed his expertise in both web and mobile security. Currently, he serves as an Application Security Engineer at Opendoor, where he leverages his extensive knowledge to protect digital assets and ensure the integrity of application environments. Steeve's journey into the world of cybersecurity began with a focus on infrastructure security and quickly evolved towards application security, reflecting the growing importance of safeguarding software systems in today's digital landscape.
Before joining Opendoor, Steeve held notable positions at Deloitte, where he progressed from a Security Consultant to a Specialist Master (Manager). His tenure at Deloitte allowed him to develop and execute comprehensive security assessments and implement effective security controls, solidifying his reputation as an expert in the field. Prior to his time at Deloitte, Steeve gained valuable experience as a Senior Security Consultant and a Security Consultant at Hervé Schauer Consultants (HSC), where he played a pivotal role in analyzing security risks for various clients.
Steeve's technical acumen is highlighted by his ability to identify and report several significant security vulnerabilities, showcasing his keen analytical skills and dedication to improving the security posture of organizations. His contributions to the field include reporting vulnerabilities such as CVE-2017-1000493 related to NoSQL injection, CVE-2018-13791 concerning Access Control issues, and multiple CVEs in the SQL injection and CSRF domains. These achievements reflect his proactive approach to finding vulnerabilities before they can be exploited, thereby enhancing the security landscape for the companies he collaborates with.
Education and Achievements
Steeve holds a Master’s degree in Computer Security from Université de Rouen, which laid the foundation for his expertise in cybersecurity principles and practices. This educational background has equipped him with the necessary knowledge to tackle complex security challenges in application and network domains. Steeve also studied at SUPINFO, further enhancing his skills and competencies in the field of information technology.
Throughout his career, Steeve has maintained a commitment to professional development and community engagement. He has served as a Community Instructor at the SANS Institute, where he shared his expertise with aspiring security professionals, fostering the next generation of cybersecurity experts. This role not only allowed him to give back to the community but also enabled him to stay current with the latest developments in cybersecurity education and practices.
Professional Journey and Early Experience
Steeve's journey in the cybersecurity domain began with a series of internships that provided him with hands-on experience in various aspects of security. He started as a Security Intern at Hervé Schauer Consultants (HSC), where he assisted in security assessments and learned valuable skills that would shape his career. He also interned at P1 Security, working on a vulnerability scanner project, which gave him insight into tools and techniques for identifying vulnerabilities in systems.
His early internships at BULL Services Infogérés and EADS Defence and Security provided him with exposure to strong authentication projects and security initiatives, enabling him to develop a comprehensive understanding of security frameworks and solutions. As a part-time intern at DSI Conseil Général Loire Atlantique, he contributed to real-world security projects that prepared him for the challenges of a full-time role in the industry. His experience as a Web Developer Intern at smARTactif further diversified his skills, allowing him to understand the development lifecycle alongside security considerations.
Achievements
Steeve Barbeau's impact on the field of cybersecurity is marked by his notable achievements, particularly in vulnerability reporting. By identifying critical vulnerabilities such as NoSQL injection and SQL injection vulnerabilities, Steeve has played a vital role in enhancing the security measures of various platforms. His work has not only benefited the organizations he has worked with but also contributed to the broader cybersecurity ecosystem by sharing his findings with the community.
In addition to his technical contributions, Steeve's dedication to teaching and mentoring future security professionals through his role at SANS Institute showcases his commitment to the growth of the cybersecurity field. His willingness to lead workshops and share knowledge reflects a passion for education and a desire to create a safer digital environment for everyone.
Achievements
Steeve Barbeau has identified and reported multiple critical vulnerabilities in cybersecurity. His work in application security has contributed to significant improvements in security measures across organizations.