About Abdellah
French
Native or bilingual
English
Fluent
German
Conversational
Arabic
Native or bilingual
Experience
- OrangeWeb Security Expert (OSCP|OSWE|CWES)TELECOMMUNICATIONSOctober 2018 - Today (7 years and 8 months)Arcueil, FranceDuring my assignment at ORANGE (on behalf of the IT services company AUSY, now Randstad Digital), I am responsible for manual code audits on various technologies, as well as performing penetration tests on web applications. The audit can also cover mobile applications developed for Android or iOS.
- SogetiApplication Security EngineerDIGITAL AND ITMarch 2016 - October 2018 (2 years and 7 months)92130 Issy-les-Moulineaux, FrancePerformed various penetration tests and manual code audits focused on Web applications (Struts, Spring, Drupal, Zend, Wicket, etc.) for ad-hoc assignments.► Conducted external and internal penetration tests (OWASP methodology).► Assessed system and network security levels (Vulnerability Scanning).► Code Audit (manual and with Open Source tools): Analysis of application source code to identify potential vulnerabilities:- Unhandled behaviors- Obsolete functions, not supported by the publisher,- System command executions with overly permissive rights,► Configuration Audit: Review of server configurations (Linux, Windows). Verification of configuration file parameters (Apache, PHP, MySql, etc.). Establishment of a compliance score according to CIS (Center for Internet Security) checklists. Rewriting Nessus audit files for automatic auditing.► Implementation and monitoring of documentary reviews and validations: Study of existing systems, vulnerabilities, audit methods, and tools. Prototyping methods and practical application on mock-ups. Development of attacks and audit tools. Qualification of methods and tools during technical audit missions.► Active participation in pre-sales activities.
- OrangeApplication Security Engineer (Code Audit, Penetration Testing)TELECOMMUNICATIONSSeptember 2014 - March 2016 (1 year and 6 months)FranceEmployed at ORANGE on behalf of ECONOCOM. I am responsible for:- Performing code audits (JAVA, PHP) for projects developed internally or by external companies. The audit is carried out using code audit tools or manually for certain unsupported languages.- Conducting penetration tests (black box and grey box).- Security supervision (log analysis, investigation).
Recommendations
Be the first to recommend Abdellah
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master 2 (M2), Information Systems Security / SafetyUniversité Paris-Est Créteil (UPEC)2013Master 2 (M2), Sécurité / sûreté de l''information des systèmes informatiques
- Bachelor's Degree, MathematicsUniversité Paris-Est Créteil (UPEC)2011Licence, Mathématiques
Certifications
- GMOB (GIAC Mobile Device Security Analyst)SANS2019
- OSCP (Offensive Security Certified Professional)OFFSEC2021