Benjamin Chehade
Enterprise Cyber Security Skillmatrix – Offensive, Defense, Engineering & Architecture
Kompetenz-Level:
1 – Grundlagen | 2 – Fortgeschritten | 3 – Spezialist | 4 – Experte / Architektur / R&D
Identity, Active Directory & Hybrid Access
Active Directory Core
AD DS Architecture
Level 4 – Multi-Forest, Trusts, GPO Hardening
Kerberos Security
Level 4 – Tickets, Delegation Abuse
Attack Path Analysis (BloodHound)
Level 4
ADCS & PKI
ADCS Exploitation
Level 4 – ESC1–ESC13
Azure / Entra ID
Hybrid Identity (AD Connect)
Level 3–4
Conditional Access & PIM
Level 3–4
Cloud Attack Paths
Level 3–4
Cloud Platforms & Modern Workplace
Microsoft 365
Exchange Online Security
Level 3
Mail Security (DMARC/DKIM/SPF)
Level 4
AWS
IAM & Role Design
Level 2–3
Security Misconfig Analysis
Level 3
GCP
IAM & Service Accounts
Level 2
Hybrid & Enterprise Architecture
Hybrid Security Models
Level 4
Cloud-to-OnPrem Attack Paths
Level 4
Offensive Security & Red Team Operations
Red Teaming & Adversary Simulation
C2 Frameworks (Cobalt Strike, Sliver, Havoc, Mythic)
Level 4 – Operational Tradecraft
Lateral Movement & Privilege Escalation
Level 4
In-Memory Execution & OPSEC
Level 4
Exploit Development & Reversing
Binary Exploitation (BOF, Format Strings)
Level 4
Reverse Engineering (Ghidra, IDA, WinDbg)
Level 4
Fuzzing & Protocol Analysis
Level 4
EDR / XDR Evasion
Syscalls (Direct / Indirect)
Level 4
Loader Development (C / C++ / Go)
Level 4
EDR Bypass Techniques
Level 4
Web & API Offensive Security
REST / Swagger Analysis
Level 4
BOLA / IDOR / Auth Flaws
Level 4
Detection Engineering, Incident Response & Defense
SIEM & Threat Hunting
Microsoft Sentinel
Level 3–4
Cross-Domain Correlation
Level 4
Detection Engineering
Sigma Rules / Use Case Design
Level 3–4
Sysmon / Logging Strategy
Level 4
Incident Response & Forensics
Root Cause Analysis
Level 4
Endpoint Protection
Microsoft Defender
Level 4
Hardening & Policy Design
Level 4
Development, DevSecOps & Automation
Programming
Python (AsyncIO, Automation)
Level 4
DevSecOps
SAST (CodeQL, Semgrep)
Level 3–4
Container & Microservices
Docker / Kubernetes Security
Level 3
Microservice Isolation
Level 3
Network, Infrastructure & Enterprise Systems
Firewalls & Perimeter
Check Point (Gaia)
Level 4
Cisco ASA / Securepoint
Level 4
Network Security
IDS/IPS & Traffic Analysis
Level 4
802.1X / NAC / VLAN Segmentation
Level 4
Email & Gateway Security
Cisco IronPort (ESA)
Level 4
Overall Competency Evaluation
Gesamtbewertung:
Offensive Security: Level 4 (Expert)
Defense & Detection: Level 4 (Expert)
Identity & AD: Level 4 (Expert)
Cloud & Hybrid: Level 3–4 (Advanced Specialist)
Dev / DevSecOps: Level 3 (Specialist)
Network & Infrastructure: Level 4 (Expert)
Gesamtprofil:
Senior / Principal Cyber Security Architect mit starker Spezialisierung in
Offensive Security, Active Directory Security, Hybrid Identity und Enterprise Defense Engineering.