You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Sofiane D.SD

Sofiane D.

Sécurité informatique / Cybersecurity expert

€700/day
Paris, FR
8-15 years

Average response time: 1 hour

About Sofiane

Ingénieur Sécurité opérationnelle depuis + de 5 ans. Je vous accompagne dans vos projets d'intégration de solutions sécurité (Firewall, EDR, Antivirus, SIEM), coordonne vos campagnes de pentest (Cadrage Périmètre, Relais, Plan d'actions).

N'hésitez pas à me contacter.

  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km), Toulouse (up to 50km), Strasbourg (up to 50km), Nice (up to 50km)

Experience

  • ENGIE
    Lead SECOPS
    ENERGY AND UTILITIES
    October 2024 - Today (1 year and 9 months)
    Courbevoie, France
    • • Security Program Management: Bug Bounty program (YesWehack), managing triage, researcher relations, and remediation workflows.
    • • Cloud Governance: Enforce Cloud Security Posture Management (CSPM) across AWS and Azure using Prisma Cloud(Over 4000 assets).
    • • Audit Coordination: Managed the full pentest lifecycle: scoping, stakeholder communication, and post-audit remediation tracking.
    • • Operational Excellence: Orchestrated incident response and SecOps day-to day activities (Standard request, Whitelisting, IAM, WAF tuning..).
    Gouvernance Cybersécurité Incident response SecOps
  • Sodexo
    Security Engineer
    PUBLIC SECTOR
    October 2022 - June 2024 (1 year and 8 months)
    Paris, France
    • • Vulnerability Management: Developed and executed a patching strategy based on NIST and editor threat intelligence using Qualys.
    • • Architecture Review: Validated HLD/LLD for SecDevOps projects, ensuring security by design.
    • • Edge Security: Managed F5 WAF administration, handling complex client requests and mitigating DDoS/Bruteforce attacks
    Threat Intelligence WAF Gestion des vulnérabilités Audit & Conformité : ITGC, SOX, HIPAA, PCI-DSS, RGPD, NIST 800-53, IRS, Bâle III PenTest
  • Criteo
    Analyste sécurité - BlueTeam
    DIGITAL AND IT
    January 2021 - September 2022 (1 year and 8 months)
    Paris, France
    Incident Response and coordination with managed SOC
    • • CVE security vulnerabilities watching and patching (tenable, Nist report)
    • • Cloud Azure security administration (CASB, azure sentinel).
    • • Bug bounty program management (Hackerone). Hunting, report acknowledgment, reproduction, follow-up remediation, retest.
    Incident response DevSecOps Gestion des vulnérabilités Bug Bounty CSPM

Recommendations

Be the first to recommend Sofiane

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • MASTER II Computer Security
    ESGI
    2017
    Offensive Security & Transverse

Certifications

Skill set (11)

Categories