Bar Haim

Research And Development Engineer at IBM

Sderot, South District, Israel
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

👤
Senior
🎓
Top School
Bar Haim is a security-focused Research and Development Engineer at IBM with nine years of backend and security engineering experience. Based in Sderot, Israel, he combines hands-on software development with security research to deliver scalable, auditable defense systems. An active open-source contributor, he advanced STIX translation for SigmaHQ/sigma (including x-sigma support) and enhanced STIX backends in stix-shifter for QRadar and Elastic ECS. His career spans IBM Innovation Center initiatives, along with roles as a SOC analyst and security researcher earlier in his trajectory. He holds a multidisciplinary academic background in physics, computer science, and communications engineering, complemented by an MBA from Ben-Gurion University, underscoring a blend of analytical rigor and business acumen.
code10 years of coding experience
job1 year of employment as a software developer
bookPhysics, Computer Science, 93, Physics, Computer Science, 93 at Ironi Aleph
book94, 94 at Ben-Gurion University of the Negev
languagesEnglish, Hebrew, Chinese, Arabic
github-logo-circle

Github Skills (28)

sti10
stx10
elasticsearch710
back-end-development10
python10
amazon-elasticsearch10
elasticsearch810
stig10
sigmajs10
cybersecurity10
elasticsearchapi10
security10
elasticsearchquery10
threat-intelligence10
aws-elasticsearch10

Programming languages (10)

TypeScriptPowerShellCSSCJavaScriptGoPHPSwift

Github contributions (5)

github-logo-circle
This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return results as STIX Observations.
Role in this project:
userBack-end Developer & Security Engineer
Contributions:13 reviews, 14 commits, 21 PRs in 1 year 4 months
Contributions summary:Bar focused on improving the project's STIX translation capabilities, specifically for the QRadar and Elastic ECS modules. Their work involved bug fixes related to escaping values, handling the LIKE operator, and correctly translating IPv4/IPv6 addresses. Furthermore, they addressed missing features in the Elastic ECS query construction and added support for carbon black response events. The user also contributed to the project by adding and updating search fields for different ECS network fields.
repositoriesstixpythonsecurity-automationsecurity-tools
SigmaHQ/sigma

Jul 2020 - Aug 2020

Main Sigma Rule Repository
Role in this project:
userBackend & Security Engineer
Contributions:3 reviews, 19 commits, 8 PRs in 1 month
Contributions summary:Bar contributed to the development of a STIX (Structured Threat Information Expression) backend for the Sigma rule repository. This involved implementing custom STIX object support, specifically "x-sigma", to handle fields missing mappings. The user also modified the STIX backend to include support for keywords without field, and modified existing backend code to better handle AND/OR/NOT logic. This work enhanced the repository's ability to translate Sigma rules into STIX patterns for security analysis.
signaturessysmonrulesecurityids
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial