You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Hana MostefaouiHM

Hana Mostefaoui

Consultante Gouvernance, Risques & Conformité

530 €/jour
Paris, FR
0-2 ans

Délai de réponse moyen : 1h

À propos de Hana

Working in the public sector, for the French government, taught me criticality, in a demanding and confidential environment. At the French Prime Minister's Office, in a sovereign SecNumCloud environment, I worked on critical infrastructures where rigor, operational continuity and security are paramount, with 50M+ monthly visits by French citizens depending on them.
Louis Vuitton and the LVMH Group taught me to cultivate excellence, exigence and a spirit of innovation in an international environment. Securing the world's most valuable luxury brand, a retail network across 60+ countries, an e-commerce site drawing 20M+ monthly visits, and a vast supplier ecosystem, means handling third-party and supply-chain risk, industrial/retail cyber risk, and regulatory requirements that differ from one region to another (GDPR, local data-protection regimes, etc.), all to a level of exigence the brand never compromises on.
I work across the full GRC spectrum backed by a hands-on cybersecurity / network / infrastructure / security operations foundation that gives me a field-level view.
I'm also committed to women's place in cyber and tech: active at CEFCYS and WiCyS as a volunteer, participant and speaker, and vice president of a student association dedicated to that cause.
  • Français

    Bilingue ou natif

  • Anglais

    Bilingue ou natif

En télétravail uniquement
Travaille majoritairement à distance

Expériences

  • Louis Vuitton, LVMH Group
    Governance, Risk & Compliance
    septembre 2025 - Aujourd'hui (10 mois)
    Paris, France
    – Drove the end-to-end redesign of the Third-Party Risk Management (TPRM) program; assessed and elevated the cyber maturity of 70+ European suppliers through self assessments, audits, remediation tracking and action plans.
    – Contributed to NIST CSF v2 audits and LVMH-vs-LV policy gap analyses; prepared and orchestrated Security Steering Committees with business directors across HQ, APAC, AMER and EMEA.
    – Designed Jira dashboards consolidating internal audits, pentests and the YesWeHack bug-bounty into centralized vulnerability tracking; followed incident remediation for the Worldwide Cyber Defense lead.
    – Launched a global cyber-awareness platform with role-based training, coordinating a team of 4; speaker and LV_NEO ambassador at internal and external tech & cyber events.
  • Services du Premier ministre (French Prime Minister' s Of ice)
    Network, Security & Infrastructure Engineer, NetSec & SecOps
    septembre 2024 - septembre 2025 (1 an)
    Paris, France
    – Secured and operated high-availability sovereign infrastructures serving 50M+ monthly visits under the SecNumCloud framework.
    – Executed security hardening, access management and SIEM onboarding; conducted SOC-level traffic analysis, network-flow investigations and incident diagnostics.
    – Led architecture-modernization projects (datacenter security, WAF / load balancing) while ensuring continuous operation of critical networks.
    – Industrialized IT workflows via Python / Shell and enforced strict IT governance (RFCs, procedures). Tools: Stormshield, Fortigate, Firepower, Wallix, F5/A10, SIEM, Terraform, VMware, Kubernetes.
  • Louis Vuitton, Groupe LVMH
    Gouvernance, Risques & Conformité, Direction du CISO Monde
    septembre 2025 - Aujourd'hui (10 mois)
    Paris, France
    – Piloté la refonte end-to-end du programme de gestion des risques tiers (TPRM) ; évalué et élevé la maturité cyber de 70+ fournisseurs européens via self-assessments, audits, suivi de remédiation et plans d'action.
    – Contribué aux audits NIST CSF v2 et aux analyses d'écarts de politiques (LVMH vs LV) ; préparé et orchestré les Security Steering Committees avec les directions métiers (HQ, APAC, AMER, EMEA).
    – Conçu des dashboards Jira centralisant audits internes, pentests et bug-bounty YesWeHack pour un suivi unifié des vulnérabilités ; assuré le suivi de remédiation des incidents pour le Head of Cyber Defense Monde.
    – Lancé une plateforme mondiale de cyber-awareness (formations par rôle) en coordonnant une équipe de 4 ; intervenante et ambassadrice LV_NEO lors d'événements tech & cyber internes et externes.

Recommandations

Soyez le premier à recommander Hana

Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.

Ces profils de freelance correspondent également à vos critères

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Formations

  • EFREI, Engineering Degree
    EFREI, Engineering Degree
  • ANSSI "SecNumEdu"-certified curriculum
    ANSSI "SecNumEdu"-certified curriculum

Compétences

Catégories