Ivan Cese Curriculum - Cybersecurity Professional
Cybersecurity professional with a strong technical background combining empathy and emotional intelligence to build effective teams, foster strong collaboration, and create a supportive, high-performance work environment. Detail-oriented, intellectually curious, and driven by a forward-thinking mindset focused on continuous growth.
Experience
- Red Team Leader at Netgroup SpA
- Cybersecurity Team Leader at Comando Generale della Guardia di Finanza
- Vulnerability Assessor & Penetration Tester at Presidenza del Consiglio dei Ministri
- SOC Analyst L2 at Radio Televisione Italiana
- Information Security Consultant at Assirecre Group
- Vulnerability Assessor at INMI Lazzaro Spallanzani
- SOC L1 Team Leader at Engineering
- Cybersecurity Developer at Fata Informatica
- Game Developer at H2App
University
Bachelor of Computer Engineering, Roma Tre University, Rome, Italy. Graduation grade 101/110.
Certifications
- CRTL
- CRTO
- CRTE
- CRTP
- OSWP
- eCPPT
- eCTHP
- eCIR
- eWPTX
- eCDFP
- eWPT
- eMAPT
- SecurityX
- PenTest+
- CySA+
- Security+
- ECES
- CTIA v2
- CASE Java
- ECIH
- CSA v1
- CEH
- BTL1
- Splunk Admin
- CCSK
- CCZT
- COBIT 2019
- ITIL 4
- CSM
- CSPO
- PSM I
Research
- INE / eLearnSecurity Interview: How one defender built mastery through training
- EC-Council Interview: How CTIA transforms a cybersecurity career
- Wordfence Hall of Fame: Listed among the Wordfence Threat Intelligence researchers
- Anibot Portfolio Tracker: Chrome extension to track your portfolio, live on the Chrome Web Store
CVEs
- CVE-2025-14868: CSRF → Arbitrary File Deletion (CVSS 8.8)
- CVE-2025-15477: SQL Injection (CVSS 6.5)
- CVE-2025-15476: Missing Authorization (CVSS 4.3)
- CVE-2026-1909: Stored XSS (CVSS 6.4)
- CVE-2025-14613: Server-Side Request Forgery (CVSS 7.2)
- CVE-2025-14464: Information Disclosure (SMTP credentials) (CVSS 5.3)
- CVE-2025-13694: IP Address Spoofing (CVSS 5.3)
- CVE-2025-14539: Arbitrary Shortcode Execution (CVSS 5.4)
- CVE-2025-14451: Open Redirect (CVSS 4.7)
- CVE-2025-14044: PHP Object Injection (CVSS 8.1)
- CVE-2025-12960: Directory Traversal → File Read (CVSS 6.5)
- CVE-2025-13629: Cross-Site Request Forgery (CVSS 4.3)
- CVE-2025-12186: Stored XSS (CVSS 4.4)
- CVE-2025-12879: CSRF → Admin Account Creation (CVSS 8.8)
- CVE-2025-12185: Stored XSS (CVSS 4.4)
- CVE-2025-13370: SQL Injection (CVSS 4.9)
- CVE-2025-13376: Arbitrary File Upload (CVSS 7.2)
- CVE-2025-13070: Local File Inclusion (CVSS 6.6)
- CVE-2025-12962: Server-Side Request Forgery (CVSS 6.4)
- CVE-2025-12961: Missing Authorization (CVSS 4.3)
- CVE-2025-13133: CSV Injection (CVSS 6.6)
- CVE-2025-12827: Cross-Site Request Forgery (CVSS 4.3)
- CVE-2025-12823: Stored XSS (CVSS 6.4)
- CVE-2025-12665: Missing Authorization (CVSS 4.3)