{"id":122,"date":"2013-09-15T21:26:56","date_gmt":"2013-09-15T19:26:56","guid":{"rendered":"http:\/\/ngweb.netnea.com\/cms\/?page_id=122"},"modified":"2022-11-21T17:42:00","modified_gmt":"2022-11-21T16:42:00","slug":"christian-folini","status":"publish","type":"page","link":"https:\/\/www.netnea.com\/cms\/netnea-the-team\/christian-folini\/","title":{"rendered":"Christian Folini"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft\" style=\"margin: 0px 40px 5px 5px; border: 0px;\" title=\"Christian Folini\" src=\"\/cms\/wp-content\/uploads\/2017\/11\/portrait_christian_folini_3.jpeg\" alt=\"Christian Folini\" width=\"183\" height=\"244\" border=\"0\" \/><\/p>\n<h3>netnea security engineer and partner<\/h3>\n<h4>Dr. phil. (History), University of Fribourg, Switzerland<\/h4>\n<div style=\"clear: both;\"><\/div>\n<h4>Steps and Skills<\/h4>\n<p>Christian Folini is a teacher, author and application security engineer with twenty years of experience.<\/p>\n<p><a href=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2016\/11\/half-title-1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-1140 alignright\" src=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2016\/11\/half-title-1-243x300.png\" alt=\"Book cover: ModSecurity Handbook\" width=\"243\" height=\"300\" srcset=\"https:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2016\/11\/half-title-1-243x300.png 243w, https:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2016\/11\/half-title-1.png 389w\" sizes=\"auto, (max-width: 243px) 100vw, 243px\" \/><\/a>He is the author of the 2nd edition of the <a href=\"https:\/\/www.feistyduck.com\/books\/modsecurity-handbook\/\" target=\"_blank\" rel=\"noopener\">ModSecurity Handbook<\/a> and one of the best known experts of the Open Source ModSec Web Application Firewall (WAF). He is a Co-Lead of the <a href=\"https:\/\/coreruleset.org\" target=\"_blank\" rel=\"noopener\">OWASP ModSecurity Core Rule Set (CRS)<\/a> project and represents the project externally. His best known contributions to the project are the concept of Paranoia Levels and his design of the plugin architecture as well as his set of canonical Apache \/ ModSecurity \/ Core Rule Set <a href=\"https:\/\/www.netnea.com\/apache-tutorials\/\">tutorials<\/a> that he maintains on our website.<\/p>\n<p><a href=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/CRS-logo.png\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-1962 alignleft\" src=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/CRS-logo.png\" alt=\"CRS Logo\" width=\"128\" height=\"178\" \/><\/a>Christian Folini <a href=\"https:\/\/www.netnea.com\/cms\/courses\/\">teaches ModSecurity and CRS<\/a> in public and in inhouse settings. His courses have a very practical approach that teaches the participants the necessary skills to integrate and run ModSecurity \/ CRS in their organizations. His course agenda is the only education program available that covers the conceptual questions necessary to run the ModSec WAF on a scale.<\/p>\n<p>Apart from several open source utilities, he has also developed <a href=\"https:\/\/c-rex.netnea.com\">C-Rex<\/a>, a tools that helps businesses and organizations dealing with false alarms on a day to day base in a systematic and consistent way.<\/p>\n<div id=\"attachment_1959\" style=\"width: 310px\" class=\"wp-caption alignright\"><a href=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/scs-folini-2.jpeg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-1959\" class=\"wp-image-1959 size-full\" src=\"http:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/scs-folini-2.jpeg\" alt=\"Photo: Christian Folini &amp; Carmela Troncoso\" width=\"300\" height=\"301\" srcset=\"https:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/scs-folini-2.jpeg 300w, https:\/\/www.netnea.com\/cms\/wp-content\/uploads\/2022\/11\/scs-folini-2-150x150.jpeg 150w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><p id=\"caption-attachment-1959\" class=\"wp-caption-text\"><em>Program Chair Christian Folini with EPFL Ass. Professor Carmela Troncoso at Swiss Cyber Storm<\/em><\/p><\/div>\n<p>If you are interested to follow Christian Folini online, he&#8217;s active on Mastodon as <a href=\"https:\/\/infosec.exchange\/@Folini\">@folini@infosec.exchange <\/a>and on twitter as <a href=\"https:\/\/twitter.com\/ChrFolini\">@ChrFolini<\/a>. He is also hosting a monthly <a href=\"https:\/\/www.meetup.com\/meetup-group-ungjkskv\/\">ModSec \/ CRS webcast<\/a> with news and practical workthroughs that are also published on <a href=\"https:\/\/www.youtube.com\/channel\/UChh-aZrivNaF0G9oR0fU1Fg\">youtube<\/a>.<\/p>\n<p>Dr. Christian Folini serves as board member and program chair of the <a href=\"https:\/\/swisscyberstorm.com\" target=\"_blank\" rel=\"noopener\">Swiss Cyber Storm<\/a> conference, that he also moderates annually. He is a frequent speaker at international conferences and maintains contact with an extensive network of security experts around the globe.<\/p>\n<h4>Selected Projects<\/h4>\n<ul>\n<li>ModSecurity Tuning of a large mobile provider in Switzerland<\/li>\n<li>Designing and building of the WAF layer of one of the most prolific high security online services in Switzerland<\/li>\n<li>Teaching ModSecurity on commercial integrations like AdNovum&#8217;s Nevis server, and United Security Providers Secure Entry Server and the Kemp \/ Progress LoadMaster.<\/li>\n<li>Design and implementation of the reverse proxy layer for 120 dedicated services of a very big Swiss company<\/li>\n<li>Series of four blog posts for a large commercial ModSecurity \/ CRS integrator<\/li>\n<li>Author of several corporate DDoS defense handbooks<\/li>\n<\/ul>\n<h4>Interests and hobbies<\/h4>\n<ul>\n<li>His Family, the historical house and their large garden.<\/li>\n<li>Medieval Reenactment with the <a href=\"http:\/\/www.companie-of-st-george.ch\">Company of Saynt George.<\/a><\/li>\n<\/ul>\n<h4>Links<\/h4>\n<ul>\n<li><a href=\"\/cms\/wp-content\/uploads\/2017\/05\/folini2017.asc\" target=\"_self\" rel=\"noopener\">PGP key<\/a><\/li>\n<li><a href=\"http:\/\/www.christian-folini.ch\" target=\"_self\" rel=\"noopener\">Personal web site with full list of publications<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>netnea security engineer and partner Dr. phil. (History), University of Fribourg, Switzerland Steps and Skills Christian Folini is a teacher, author and application security engineer with twenty years of experience. He is the author of the 2nd edition of the ModSecurity Handbook and one of the best known experts of the Open Source ModSec Web [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"parent":6,"menu_order":0,"comment_status":"closed","ping_status":"open","template":"","meta":{"footnotes":""},"class_list":["post-122","page","type-page","status-publish","czr-hentry"],"_links":{"self":[{"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/pages\/122","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/comments?post=122"}],"version-history":[{"count":44,"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/pages\/122\/revisions"}],"predecessor-version":[{"id":1970,"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/pages\/122\/revisions\/1970"}],"up":[{"embeddable":true,"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/pages\/6"}],"wp:attachment":[{"href":"https:\/\/www.netnea.com\/cms\/wp-json\/wp\/v2\/media?parent=122"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}