Martin Holovský

CTO

Prague, Czech Republic19 yrs 5 mos experience
Highly StableAI Enabled

Key Highlights

  • Designed security architectures for millions of users.
  • Authored over 100 cybersecurity articles.
  • Expert in innovative security solution design.
Stackforce AI infers this person is a Cybersecurity Architect specializing in advanced security solutions for enterprise environments.

Contact

Skills

Core Skills

Security ArchitectureCybersecurityThreat ModelingAws SecurityNetwork SecurityInfrastructure Management

Other Skills

Cybersecurity Tools & TechnologiesEndpoint ProtectionMobile ProtectionInfrastructure ProtectionMail ProtectionCloud ProtectionAdvanced ThreatsCyber Threat HuntingUser & Entity Behavior Anomaly DetectionSplunk CoreSplunk Enterprise SecurityAutomation & OrchestrationActive Directory Threats ProtectionPKI Environment ConsolidationBusiness Continuity

About

Cybersecurity Architect | Author of 100+ Security Articles | Author of Adaptive Cybersecurity framework I design security architectures that protect hundreds of millions of users in high-threat environments. My approach combines deep technical expertise with a focus on practical implementation—creating solutions that are secure, scalable, and operationally sustainable. What Drives Me My work is my passion. Complex problem-solving is in my DNA, and I thrive on the challenge of architecting security solutions that others consider impossible. I approach every project with a commitment to excellence that some might call perfectionism—but in cybersecurity, the details matter. A single overlooked vulnerability can compromise an entire system, which is why I remain relentless in pursuing not just working solutions, but the right solutions. What I Do I specialize in solving complex security challenges through innovative architecture design. My work focuses on moving beyond standard security concepts that often fail in practice, developing new approaches that prove durable in sensitive production environments. Whether designing zero-trust architectures, implementing defense-in-depth strategies, or evaluating emerging technologies, I prioritize solutions that are robust, maintainable, and aligned with business objectives. Proven Impact Throughout my career, I've had the opportunity to design and implement security environments across diverse requirements, industries and technologies. This hands-on experience—including the inevitable challenges and lessons learned—has built a deep understanding of what works in production and what doesn't. I've demonstrably saved organizations millions in resources by steering them toward effective solutions and away from concepts that fail under real-world conditions. Knowledge Sharing I believe in advancing the security community through education. As an author of over 100 cybersecurity articles and a conference speaker, I share practical insights from production environments. My writing focuses on security architecture, threat modeling, and implementation strategies that teams can actually use. Core Principles Every solution I deliver must be secure, high-quality, scalable, and—critically—simple enough to understand, operate, and troubleshoot. Bringing simplicity to complex problems is challenging work, but it's what I genuinely enjoy. The satisfaction of transforming architectural chaos into elegant, defensible systems never gets old.

Experience

19 yrs 5 mos
Total Experience
5 yrs
Average Tenure
4 yrs 5 mos
Current Experience

Dhl

Head of Security Architecture

Dec 2021Present · 4 yrs 5 mos · Prague, Czechia

Security ArchitectureCybersecurity

Novartis

2 roles

Lead Cyber Security Architect

Promoted

Nov 2018Dec 2021 · 3 yrs 1 mo

  • Focusing on Cybersecurity Tools & Technologies, Endpoint, Mobile, Infrastructure, Mail, and Cloud protection up to Advanced Threats as well as TTPs, Threat Modeling, and Cyber Threat Hunting. Shifting mindset into Cyber Defense operation mode (sensing, detecting, orienting, and engaging adversaries) and Proactive security.
  • Working very closely with SOC, Cyber, Data Onboarding, Engineering, and CyberOps teams and gaining maximum from our tools landscape (continuous improvements).
  • // Key Focus
  • User & Entity Behavior Anomaly Detection (UBA / UEBA)
  • Splunk Core & Splunk Enterprise Security (SIEM) Architecture
  • Advanced Threats Detection, Protection, Response & Remediation
  • MITRE ATT&CK framework weaponization and mapping to security technologies
  • Automation & Orchestration (SOAR)
  • Active Directory threats protection and remediation
  • PKI environment consolidation
  • Business continuity
  • ... and gaining maximum from our tools landscape (continuous improvements)
Cybersecurity Tools & TechnologiesEndpoint ProtectionMobile ProtectionInfrastructure ProtectionMail ProtectionCloud Protection+11

Security Architect

Jan 2016Oct 2018 · 2 yrs 9 mos

  • // Key deliverables (RFI/RFP/PoC/Deployment)
  • AWS Security Framework & Modular DMZ design with full-stack protection
  • Mail Advanced Threat Protection, Targeted Attacks & Fraud Defense
  • Micro-Segmentation (non-SDN), Lateral Movement visualization and Deception
  • DDoS Cloud Protection for Internet facing applications
  • Advanced Endpoint Protection (RFI & Evaluation only)
  • SOC Assessment and Roadmap for Proactive Threat Hunting capability development
  • Security Log attributes & Context standardization + Schema for Data Enrichment
  • OT/ICS Security Architecture & concepts for manufacturing sites
  • OT/ICS Anomaly & Threat detection
  • Insider Threat Program
AWS Security FrameworkModular DMZ DesignMail Advanced Threat ProtectionMicro-SegmentationDDoS Cloud ProtectionAdvanced Endpoint Protection+4

Dhl

4 roles

Team Leader & Principal Network Security Engineer

Promoted

Oct 2013Dec 2015 · 2 yrs 2 mos

  • // Experience
  • Global deployments of: Firewalls (Check Point, Cisco, Juniper), Web proxies (BlueCoat), Load Balancers (F5), Intrusion Prevention Systems (SourceFire, Check Point), on-prem DDoS protection (Arbor APS), DDoS scrubbing centers, complete build of new Data Centers, DC-in-DC isolated environment, LAN segmentation (NGFW & NGIPS), micro-segmentation (VMware NSX), firewall virtualization (Check Point VSX), OS hardening, Centralized Management, Infrastructure Services (LDAP, DNS & DHCP, RADIUS, …), Device Monitoring (Zabbix), Reverse Proxies (Apache, NGINX), VPN gateways, Virtual LAB environment (VMware ESX), fully automated deployments (REST API, shell scripts), Software Defined Networks (SDN) and Data Centers (SDDC), ...
FirewallsWeb ProxiesLoad BalancersIntrusion Prevention SystemsDDoS ProtectionData Center Build+12

Senior Network Security Engineer

Dec 2011Sep 2013 · 1 yr 9 mos

Senior Secure Services Analyst

Promoted

Dec 2010Nov 2011 · 11 mos

Security Analyst

May 2009Nov 2010 · 1 yr 6 mos

Ness czech s.r.o.

Experienced Network Specialist

Jun 2006Apr 2009 · 2 yrs 10 mos

Education

Masarykova univerzita

None

Jan 2005Jan 2006

SSŠVT

Information Technology

Jan 2001Jan 2005

Stackforce found 100+ more professionals with Security Architecture & Cybersecurity

Explore similar profiles based on matching skills and experience