Mikhail Smolin

Tech Lead | Data Privacy | InfoSec | PhD Candidate



About Me

Hi and welcome to my homepage! My name is Mikhail »Mischa1« Smolin. I'm a computer scientist (MS), software expert and project manager pushing 10+ years of international IT project experience. My hunger for knowledge and determination to turn information into action has contributed to my most recent work. Currently, I work at Mercedes-Benz Group AG and undertake technical leadership for implementation of global digitization and automation projects. My main goal is to push the development of the local application landscape with modern technologies and concepts, including low-code/no-code, open-source, Cloud solutions, Docker, ServiceNow, and Agile principles. I firmly believe mindfulness in the workplace is key to success - a tenet I live out through my interest in calisthenics, table tennis, badminton and hiking.

1 IPA: [ˈmiʃa] - Mischa is a diminutive of the Russian name Михаил (Mikhail). A hypocorism of Michael, its English-language equivalent would be Mike.

Experience

From April 2020 To Present

Mercedes-Benz Group AG Automotive Stuttgart, Germany Homepage

InfoSec & Data Privacy Tech Lead at Mercedes-Benz Group AG - eDiscovery, CDP & ISO

Our ITG/CL department has the Information Officer (IO) function for more than 10 different departments within Mercedes-Benz headquarters. Our Center of Competence (CoC) IT eDiscovery, Corporate Data Protection & ISO, together with other teams, looks after the Integrity and Legal (IL) board department with a focus on electronic discovery, information privacy, and corporate security.

The implementation of my tasks and those of our team also takes place in close coordination with other IT support teams for IL. In addition, our team also has responsibility for the Information Security Officer (ISO) functions at headquarters, as well as the Information Security Architect (ISA) function at ITP.

As information security and data privacy expert within ITG/CL, I act as an intermediary between internal and external stakeholders and use my IT expertise to support our departments in the business analysis, the development of solution concepts and the specification of technical requirements and, as technical lead, coordinate planning, implementation and operation of new and ongoing IT projects. My tasks in the team are performed in coordination with the technical strategy of the respective department or the overarching corporate IT strategy. At the same time, I provide active input to my team for the digitization of departmental processes and point out improvements and opportunities in the digital working world of Mercedes-Benz.

I also ...

  • deal with supplier management, Local Compliance Officers (LCOs) for the digitization of the Records of Processing Activities (RoPAdigital)1. My duties include 1) coordination of IT topics including budget management, procurement of infrastructure and information security topics, 2) design of interactions between RoPA and other relevant IT tools, 3) elaboration of requirements into our existing IT landscape, and 4) outline technical requirements, APIs and procurement of the application.
  • support various investigation processes within the scope of the corporate Forensics Center in cooperation with the corporate security team and the investigating units (including CA, Legal, HR). In this context, as IT Case Manager, I act as the central coordination function within the global IT and ensure that necessary data is secured and made available worldwide in a legally required manner.
  • ensure the operation of the Custodian Administration Tool (CAT)2 in the eDiscovery IT landscape. In particular, the implementation of the necessary flagging of the custodians in the directory as well as the automated communication with the custodians to ensure compliance with legal requirements on my own responsibility.
  • provide technical specifications (patching of the IT landscape, as well as access protection). If required, I also support other project managers in their project for a successor solution of the current legal and corporate data privacy software.
  • establish further development of the internal eDiscovery and data protection IT landscape including forensic hardware and software with my colleagues.
  • prepare presentations for top management and create (technical) software documentations for cooperating business units.
  • take on the role of Information Officer and CISM Service Manager in our department.

Achievements

  • As technical owner, I supported the 2021 company-wide Automated Data Deletion3 including more than 330 entities worldwide. I successfully pushed and managed the implementation of the central Exception Management Tool (AVT)4 for our Corporate Data Protection (CDP) team.
  • Thanks to the can-do attitude and goal-driven work with colleagues from Corporate Security, I was able to roll-out our Forensic Management System (eForensics)5 in only 2.5 months from start to production. I am glad that together with the business unit we mastered the project in such a short time with all the hurdles and were able to go live as planned in November 2021.
  • In order to validate my proficiency in eDiscovery, adding more value to our organization, and distinguish myself in the industry, I successfully attended trainings in case administration, processing, active learning and analytics with Relativity6.
  • I successfully pitched my project to our CIO and the works council.
  • More to come. :)


1 Records of Processing Activities (RoPAdigital): Article 30 of the General Data Protection Regulation (GDPR) requires that companies with more than 250 employees must maintain an internal record of processing activities and have it available in case a supervisory authority requests to review those records. RoPAdigital is the digitization of RoPA system focusing on regulatory standardized process design to fulfill data protection compliance obligations deriving from the GDPR.
2 Custodian Administration Tool (CAT): End-to-end management tool of custodian related activities.
3 Experience shows that data in companies is often stored for indefinite periods and is never deleted if there is no regulation limiting the storage period. Often, much of this data is no longer needed or rapidly becomes obsolete. This leads to a continuous increase in the total volume of data stored on the servers as well as an increase in costs – not only due to the storage capacity required but also to data management. The huge amount of data also interferes with performance of the IT systems and efficient workflows. Furthermore, in the case of personal data, data protection regulations – such as the EU’s GDPR – require that such data may only be stored as long as is necessary for the respective purpose.
4 Ausnahmeverwaltungstool (AVT): Successor of the group-wide data retention to manage the retention process (identification of fileshares and SiteCollections (SharePoint) and requesting exceptions). AVT is a .NET tool, partly hosted as Application Consolidation (ApCos) Microsoft Service.
5 Forensic Management System (eForensics): Python-based (Django framework) application hosted as Software-as-a-Service (SaaS). eForensics is used for managing and documenting of IT forensic investigations, as well as collections and imaging of evidence items.
6 Relativity is a complete eDiscovery platform that helps legal teams solve complex data problems during litigation, investigation, and compliance projects. It comes with a set of tools executing on each step of the process on-premise and in the cloud.

From July 2019 To Mar. 2020

Daimler AG Automotive Stuttgart, Germany Homepage

Senior IT Architect at Daimler AG - Digitalization, Data Analytics & Industry 4.0

The Center of Competence Production Powertrain (ITO/CP) provides efficient and stable applications for the control of production processes in foundry, manufacturing and assembly. Our applications for assembly control, in-line quality, machine and plant efficiency and dispatch are used in the powertrain plants in Germany, Romania, China and Poland.

As IT Architect within the ITO/CP department, I effectively connected business and IT, ensuring that systemic solutions comply with IT standards while meeting business needs. To optimize production processes and to generate new solution approaches, my team and I developed innovative .NET-based big data solutions on top of the eXtollo platform using Microsoft Azure Cloud functionalities such as Azure Data Lake Store and Azure Data Factory for data storage and data processing. By keeping track of innovations and technological development, I controlled the worldwide rollout and accessibility of our data platforms PRADA 1 and Analytics@PT 2 and ensured daily technical and functional support. My main goal was to promote driving digital transformation efforts across the broader powertrain landscape while collaborating closely with other internal teams and stakeholders, to help define and execute the digital strategy of our core processes and the utilization of forward-looking technologies.

I also ...

  • analyzed processes and requirements with international cross-departmental specialists.
  • collaborated with teams across production plants, to define and increase our application's user experience.
  • translated complex functional, technical and business requirements into architectural designs.
  • led all aspects of engineering and people activities within the development team.
  • assisted IT departments at international locations, especially within the scope of piloting new APIs.
  • advised upper management on technologies and development of innovative ideas for new approaches.

Achievements

  • Daimler »DRIVE«: Within two months, my team and I developed a fully functional, web-based tool to consolidate master data for the entire powertrain.
  • Daimler »PRADA«: Thanks to the excellent cooperation between the project members and the manufacturing department, our team could schedule the IT rollout at Sebes (Romania) for the first quarter of 2020.
  • I further developed and implemented a comprehensive digital platform strategy, including a 2-year-roadmap.
  • As an IT representative, I led workshops for connecting new and existing plants to our IT landscape.
  • By creating mockups and prototypes myself, I was able to reduce the cost for UX design by 100%.


1 PRADA (Powertrain Reporting and Data Analytics) is the central and consolidated data platform for all top powertrain use cases within the Daimler AG.
2 Analytics@PT is the technical analysis board for the powertrain and, based on a Microsoft Power BI interface, enables interactive visualizations for production-relevant KPIs.

From Feb. 2017 To June 2019

EXXETA AG IT Consultancy Stuttgart, Germany Homepage

Software Engineer and Consultant at EXXETA AG - UI & Web Solutions

Leading agile software development according to Scrum, full-stack UI/UX Web development, and with regard to on-time delivery and seamless integration of the software components, I was also responsible for interpersonal communication in inter-cultural, inter-disciplinary teams, across multiple time zones with lead customers so that our outcome meets the product requirements. Ranging from connected car, mobility, finance, and embedded automotive systems, I was involved in a variety of projects for major automotive OEMs and Tier 1 suppliers. I have worked on Java EE backends as well as with frontend technologies such as JavaScript, TypeScript, HTML5, CSS, NodeJS using client-side frameworks being React, AngularJS, Dojo and Django.

I also ...

  • planned and directed all aspects of engineering and people activities within the development team.
  • mentored working students, new colleagues and provided technical guidance for new initiatives.
  • managed budget and costs including planning, tracking as well as communication to stakeholders.
  • developed future-proof components to efficiently adapt UX principles across projects.
  • recruited talents for innovations and state-of-the-art software development practices.
  • collaborated with external companies to develop strategic partnerships.

Achievements

  • Daimler »EDLS Cockpit«: I developed a Web application to replace an old .NET (Windows) frontend system, which was able to perform a better job, resulting in a 20% reduction in response time for the processing of user queries and replacing up to 90% of previous software in Germany as well as India. Managed the project (four-member team) during the whole project lifecycle.
  • Daimler Financial Services »eRDR Data Tracker«: UI development and coordination of a distributed and inter-disciplinary agile development team (four-member team). My team was able to develop a fully functional MVP within two months.
  • Daimler UX Design: I co-developed future-proof UI Web components to efficiently adapt Daimler UX principles across multiple company-wide projects.
  • I established an innovative mentoring program for working students, interns as well as new colleagues.
  • I recruited new talents for innovations and state-of-the-art software development practices.

From Mar. 2016 To Jan. 2017

EXXETA AG IT Consultancy Stuttgart, Germany Homepage

Research Assistant and Master's Thesis at EXXETA AG - Automotive Cyber Security

Big Data research in the field of automotive cyber security with Matlab, Python, Keras and TensorFlow. I built a novel vehicular intrusion detection system using a deep feed forward neural network. The parameters building the neural network structure are trained with probability-based feature vectors that are extracted from controller area network packets.

Achievements

  • I was one of the very first German students who dealt with the research of vehicular anomaly (intrusion) detection systems for the automotive CAN bus. My results were presented to a public audience and been awarded for the best student's work of the year in the property computer science course.
  • I established reproducible research principles which have helped others to improve their workflow in various projects.
  • I worked with the company's CTO and product managers from different departments to analyze new technologies which resulted in two new projects.
  • I co-developed in-house workshops that resulted in an increase of 50+ employees enrolling in company development courses per year.
  • I created scripts to ensure a consistent development setup across company laptops (which codifies best practices).

From Apr. 2014 To Oct. 2014

TWT GmbH Automotive Engineering Stuttgart, Germany Homepage

Working Student at TWT Automotive Engineering - Car Infotainment

I configured, deployed and supported client-server systems such as Windows, macOS and Linux for the conception, implementation and validation of automotive safety-, comfort and infotainment applications. My work also included network management, shell script programming and Tier II technical support. With a focus on the development of distributed architectures and services in the ecosystem of the vehicle, I also translated business requirements into suitable technical solutions.

Achievements

  • Being part of a five-member Tier II technical support team for 200+ employees, I was accountable for 55% reduction of hardware failures and network downtime as well as a 30% growth in productivity among colleagues.
  • My team and I eliminated managed service provider costs by taking over server monitoring and overall help desk functions.
  • I contributed toward network installation encompassing 120 workstations, 20 printers, and 7 communication rooms with supporting infrastructure. The move was accomplished within two weeks.

From Oct. 2012 To Aug. 2013

Robert Bosch GmbH Automotive Electronics Ansbach, Germany Homepage

Intern and Bachelor's Thesis at Bosch Automotive Electronics - Mobility Solutions

Being part of a distributed development team in an agile project setup, my duties involved Java programming to graphically modeling ESP control module test sequences, test automation design in LabView and creation of mockups and technical documentations in coordination with internal customers.

Achievements

  • Started a team effort to switch to a more agile development process so that in-house stakeholders and team members remain motivated for optimal project outcome.
  • I built a novel GUI to graphically modeling ECU control sequences to make automotive ECU quality testing easier and less time-consuming (before that our engineers examined and created XML lists for test sequences manually).
  • I created technical documentations to established guidelines, policies, and practices across departments and utilized information mapping for increase end user's understanding of the application.
  • I led, trained and worked very closely with new interns and working students to effectively create qualitative project output.

From Oct. 2010 To Sept. 2012

Ansbach University of Applied Sciences Ansbach, Germany Homepage

Tutor in Statistics and Mathematics - Faculty of Engineering

Volunteering as a tutor and graduate assistant, I achieved noy only strong interpersonal communication skills but also listening expertise in order to explain concepts in a multitude of ways.

Achievements

  • I established and lead an academic writing workshop which not only improved any student's writing ability but also served as a University-wide guideline.
  • Being a member of the student's council and the University’s table tennis team has helped me broaden my cultural knowledge and the ability to work effectively with other people in an international context.

Education

From Sept. 2023 To Present

Kyrgyz State Technical University Bishkek, Kyrgyzstan Homepage

Computer Science, PhD

Research in the field of ensemble deep learning for cyber security intrusion detection by optimizing intrusion detection systems for real-time network traffic.

From Mar. 2014 To Jan. 2017

Stuttgart Media University Stuttgart, Germany Homepage

Computer Science and Media, MS ∅1.3

Master's thesis (∅1.0): »Anomaly-based intrusion detection for automotive networks« - In this work, the applicability towards the problem of detecting cyber attacks in an automobile network by means of a self-learning mechanism is proposed and evaluated. Using in-vehicle network recordings of a modern sedan, an artificial neural network is trained in order to detect malicious CAN bus packet injection as a nomalous behavior deviating from the learned vehicle state.

From Sept. 2015 To Feb. 2016

University of the West of Scotland Glasgow, Scotland Homepage

Advanced Computer Systems Development, MS (Erasmus grant)

Studying one period in Scotland, I successfully attended courses in data mining, ethics for IT professionals, cyber security and intermediate English. I would also like to mention the intensive group work on a software project. The goal of the project was to build a mobile diagnostics instrument from vehicular on-board diagnostics (OBD2) data in Java. The time in Scotland was a great opportunity to collect experiences in an international context.

From Oct. 2010 To Mar. 2014

Ansbach University of Applied Sciences Ansbach, Germany Homepage

Business Informatics, BS ∅2.3

Bachelor's thesis (∅1.0): »Version verification of HIL test sequences in automotive ECU manufacturing« - In cooperation with Robert Bosch GmbH, I developed a Java desktop application in order to provide mechanical and software engineers a tool for analyzing and verifying automotive ESP test sequences.