À propos de Sofiane
Français
Bilingue ou natif
Anglais
Capacité professionnelle complète
Expériences
- ENGIELead SECOPSENERGIEoctobre 2024 - Aujourd'hui (1 an et 8 mois)Courbevoie, France• • Security Program Management: Bug Bounty program (YesWehack), managing triage, researcher relations, and remediation workflows.• • Cloud Governance: Enforce Cloud Security Posture Management (CSPM) across AWS and Azure using Prisma Cloud(Over 4000 assets).• • Audit Coordination: Managed the full pentest lifecycle: scoping, stakeholder communication, and post-audit remediation tracking.• • Operational Excellence: Orchestrated incident response and SecOps day-to day activities (Standard request, Whitelisting, IAM, WAF tuning..).
- SodexoSecurity EngineerSECTEUR PUBLIC & COLLECTIVITÉSoctobre 2022 - juin 2024 (1 an et 8 mois)Paris, France• • Vulnerability Management: Developed and executed a patching strategy based on NIST and editor threat intelligence using Qualys.• • Architecture Review: Validated HLD/LLD for SecDevOps projects, ensuring security by design.• • Edge Security: Managed F5 WAF administration, handling complex client requests and mitigating DDoS/Bruteforce attacks
- CriteoAnalyste sécurité - BlueTeamAGENCE & SSIIjanvier 2021 - septembre 2022 (1 an et 8 mois)Paris, FranceIncident Response and coordination with managed SOC• • CVE security vulnerabilities watching and patching (tenable, Nist report)• • Cloud Azure security administration (CASB, azure sentinel).• • Bug bounty program management (Hackerone). Hunting, report acknowledgment, reproduction, follow-up remediation, retest.
Recommandations
Soyez le premier à recommander Sofiane
Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.
Ces profils de freelance correspondent également à vos critères
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Formations
- MASTER II Computer SecurityESGI2017Offensive Security & Transverse