About Mohand Tahar
French
Native or bilingual
English
Fluent
Arabic
Fluent
Experience
- IDEMIASenior Coud/security & Software ArchitectSOFTWARE PUBLISHINGMarch 2026 - Today (3 months)Osny, France
- Conducted an Azure security posture audit using Defender for Cloud and Secure Score — reviewed existing controls, identified misconfigurations and coverage gaps across the biometric platform environments.
- Audited the Azure architecture across Landing Zone design, network topology, and IAM configuration — produced findings and a prioritised remediation plan aligned with the division’s security standards.
- Led remediation efforts on the identified gaps — hardening network segmentation, tightening IAM roles and access policies, and fixing misconfigured security controls across the Azure environments.
- Worked with engineering and DevOps teams to translate audit findings into concrete security improvements — updated Azure Policies, reviewed CI/CD pipeline controls, and documented security baselines for ongoing compliance tracking.
- Ceva LogisticsLead Cloud Security Architect & Azure Lead ArchitectLOGISTICS AND SUPPLY CHAINDecember 2023 - January 2026 (2 years and 1 month)• • Designed and led the end-to-end Cloud Security Architecture for an Azure Tenant-to-Tenant migration across 40+ applications, defining security reference architecture (identity, network, data, workload layers) as the foundation ensuring zero critical downtime and full business continuity.• • Designed and deployed enterprise-grade hybrid connectivity (ExpressRoute, Site-to-Site VPN, Hybrid DNS) and secured PaaS workloads across AKS, Azure Container Apps, Azure Functions, Web Apps, and managed databases ensuring network isolation, private endpoint exposure, and consistent security controls across all services.• • Designed and deployed Azure Landing Zones based on Microsoft CAF, embedding security governance (RBAC, Azure Policy, Defender for Cloud) from day one. Reducing provisioning time and achieving full compliance alignment with corporate security baselines.• • Implemented IAM/PAM, PIM & RBAC frameworks, cuting privileged access risks and enabling a scalable Zero Trust model.
- FUJITSUAZURE SOLUTION & SECURITY ARCHITECTFebruary 2022 - December 2023 (1 year and 10 months)Design & deployment of cloud-based projects:o Saft: Move2cloud integration with TotalEnergies Inox@Scale Landing Zone,includingRefactoring, Rebuild, Cloud Security Posture Management (CSPM) setup, compliancemonitoring, and optimize Azure infrastructure cost.o Hutchinson: Security-first Landing Zone design with network segmentation, Defenderfor Cloud integration, identity governance (Azure AD/RBAC), Firewall, WAF,ExpressRoute, AKS, and full IaC (GitHub) aligned with Zero Trust principles.o HubOne: Data cloud application based on Dataiku PaaS service, Azure Synapse, AzureData Lake, API Management, and Azure Purview.• Redesign & modernization of TotalEnergies applications towards microservices architecturewith AKS, Serverless, Azure Service Bus & SignalR.• Designed cloud security architectures for multi-client environments: data classification,encryption at rest and in transit, CSPM integration via Microsoft Defender for Cloud andSentinel, and ISO 27001 / CIS-aligned security baselines.• Led Azure security architecture advisory in pre-sales phases — producing security referencearchitectures, threat models, and technical proposals covering cryptography, secure accessmechanisms, and compliance frameworks (NIST, ISO 27001).
Recommendations
Be the first to recommend Mohand Tahar
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Executive MSc in CybersecurityEcole Polytechnique - executive Education2026
- Ingénieur AutomatiqueUniversité Mouloud Mammeri2006