You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Achraf E.AE

Achraf E.

Expert Pentest & Red Team

€750/day
Paris, FR
8-15 years

Average response time: 2 hours

Freelancer profile translated to English.
Back to original language

About Achraf

Offensive cybersecurity consultant specializing in pentesting, application security, Active Directory, and cloud security. I help companies identify, exploit, and prioritize vulnerabilities in critical environments.

I have conducted over 100 pentests on sensitive systems, particularly in the payment, booking, banking, government platform, and corporate network sectors. I perform audits on web, API, Active Directory, network segmentation, and cloud architectures, with an approach that is both technical and business-risk oriented.

In parallel, I have contributed to advanced red teaming missions on cutting-edge AI systems at OpenAI, focusing on adversarial injection techniques and security mechanism bypass. I have also participated in designing secure architectures, implementing AppSec/DevSecOps pipelines, and securing AWS and Kubernetes infrastructures.

My deliverables are clear, actionable, and prioritized: audit reports, proof-of-concepts, exploitation scenarios, remediation recommendations, and support for technical teams until correction.

If you are looking for a profile capable of intervening quickly on pentest, offensive security, or AppSec topics in critical environments, I can assist you.
  • English

    Native or bilingual

  • French

    Native or bilingual

  • Arabic

    Native or bilingual

Can work on-site
Paris (up to 50km), Lyon (up to 30km), Bordeaux (up to 30km), Nice (up to 30km)

Experience

  • OpenAI
    Red Teamer
    January 2024 - Today (2 years and 5 months)
    Paris, France
    – Contribution, as a contractor, to the security evaluation of over 20 cutting-edge models before their production release, identifying critical vulnerabilities in Operator systems, the RFT API, and image generation systems.

    – Recurrently recognized as a high-impact contributor on red teaming missions, specializing in adversarial prompt injection and security policy bypass techniques.

    – Mentioned as a top red teamer in OpenAI's Operator System Card (2025).
    Red Team Application Security LLM Artificial Intelligence
  • ACCOR SA
    Security Engineer
    October 2022 - Today (3 years and 8 months)
    Paris, France
    – Conducted over 100 penetration tests on critical infrastructures, including payment and booking systems, and managed Accor's bug bounty program: triaging reports, assisting teams with fixes, and monitoring remediation.

    – Designed secure architectures for several group solutions and implemented application security pipelines (SAST + dependency analysis) across over 2,000 projects.
    Penetration Testing Application Security Active Directory SAST
  • IntelliSecSolutions
    Pentester
    July 2024 - Today (1 year and 11 months)
    Paris, France
    – Performed over 40 penetration tests on critical infrastructures, including banking systems, government platforms in Quebec, and corporate networks.

    – Conducted Active Directory security assessments on sensitive environments, notably Quebec's 911 emergency services and other critical government systems.

    – Performed web application and network segmentation security audits, identifying security flaws in highly regulated sectors.
    Active Directory Cybersecurity Audit Application Security

Recommendations

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master's Degree
    Eurecom
    2022
    Master 2 en cybersécurité
  • Engineer's Degree in Cybersecurity
    IMT Atlantique
    2021
    Diplôme d’ingénieur – spécialisation cybersécurité

Categories