About Sofiane
French
Native or bilingual
English
Fluent
Experience
- ENGIELead SECOPSENERGY AND UTILITIESOctober 2024 - Today (1 year and 9 months)Courbevoie, France• • Security Program Management: Bug Bounty program (YesWehack), managing triage, researcher relations, and remediation workflows.• • Cloud Governance: Enforce Cloud Security Posture Management (CSPM) across AWS and Azure using Prisma Cloud(Over 4000 assets).• • Audit Coordination: Managed the full pentest lifecycle: scoping, stakeholder communication, and post-audit remediation tracking.• • Operational Excellence: Orchestrated incident response and SecOps day-to day activities (Standard request, Whitelisting, IAM, WAF tuning..).
- SodexoSecurity EngineerPUBLIC SECTOROctober 2022 - June 2024 (1 year and 8 months)Paris, France• • Vulnerability Management: Developed and executed a patching strategy based on NIST and editor threat intelligence using Qualys.• • Architecture Review: Validated HLD/LLD for SecDevOps projects, ensuring security by design.• • Edge Security: Managed F5 WAF administration, handling complex client requests and mitigating DDoS/Bruteforce attacks
- CriteoAnalyste sécurité - BlueTeamDIGITAL AND ITJanuary 2021 - September 2022 (1 year and 8 months)Paris, FranceIncident Response and coordination with managed SOC• • CVE security vulnerabilities watching and patching (tenable, Nist report)• • Cloud Azure security administration (CASB, azure sentinel).• • Bug bounty program management (Hackerone). Hunting, report acknowledgment, reproduction, follow-up remediation, retest.
Recommendations
Be the first to recommend Sofiane
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- MASTER II Computer SecurityESGI2017Offensive Security & Transverse