About Adam
French
Native or bilingual
English
Fluent
Arabic
Native or bilingual
Experience
- BNP Paribas Real EstateSecurity ConsultantBANKING AND INSURANCEMay 2022 - Today (4 years and 1 month)Boulogne-Billancourt, FranceFor BNP Real Estate, within the ProdSec TeamRUN• Management of L2/L3 incidents on firewalls in an international environment.• Opening and optimization of complex flows in RUN and project mode.• Ensuring on-call duty at night and on weekends to guarantee the availability of critical services.• Monitoring and optimization of AWS resource performance (EC2, RDS, ELB) via CloudWatch and AWS Config.• Management of automated backups and restores (AWS Backup, EBS/RDS snapshots)BUILD• Deployment and go-live of interconnection Firewalls with the group.• Configuration of IPSec VPN tunnels with international partners on Checkpoint firewalls.• Deployment and administration of SecureChange/SecureTrack, and user support for IT.• Implementation of SSO on Tufin TOS, and annual certificate management.• Integration of security solutions from the build phase (IAM roles/policies, Security Groups).• Technical lead for firewall remediation post-IG audit.• Onboarding of the entire subsidiary's Firewalling park into the group's ecosystem.• Implementation of high availability, resilience, and disaster recovery strategies on AWS.PROJECT MANAGEMENT• Migration of Real Estate flows from CIB to BNP's IT Production in collaboration with the relevant entities.• Facilitation of technical workshops with the CISO team as part of various projects.• Drafting of technical procedures and technical architecture documents (DAT).• Alignment of security posture with the group's in the context of the Cyber Program project.• Development of cloud transformation roadmaps in conjunction with business and IT teams.• Training and coaching of 5 consultants.
- AccentureNetwork Security EngineerFebruary 2020 - May 2022 (2 years and 3 months)Paris, FranceClient: Total Energies +Operations- Incident Management▪ Troubleshooting and resolution of firewall-related incidents (Failover issues, compilation problems, non-functional flows, RMA).▪ Management of IPSec VPN and SSL VPN incidents.▪ Debugging issues related to load balancing on F5 and Netscaler.▪ Analysis and resolution of web filtering problems on Zscaler.▪ Resolution of WiFi incidents.- Change Management▪ F5 VIP creation.▪ Opening of standard and complex flows on firewalls.▪ Firewall rule cleanup.▪ Creation of new DMZs.▪ Equipment certificate updates.▪ Security equipment software updates (upgrades).▪ Switch configuration.▪ Publishing sites on Haproxy.▪ Go-live tasks + Project.- Integration of Cisco switch stacks.- Migrations of Nortel switch stacks to AVAYA switch stacks.- Integration of Checkpoint firewalls.- Migrations of Juniper firewalls to Checkpoint firewalls version R77.30 and R80.10.- Installation of Checkpoint R80.20 management server.- Fortigate firewall software updates.- Responding to calls for tender.- Troubleshooting post-migration issues.- Drafting and updating technical documents.- Project monitoring.- Compliance with client processes.
- DevoteamNetwork Security ConsultantOctober 2017 - January 2020 (2 years and 3 months)Greater Casablanca, MoroccoClient: INWI ISP• Handle issues on different security platforms, perform investigations and troubleshooting.• Solve existing security issues, such as viruses or hardware malfunction.• Ensure IP Backbone & B2B clients security at different levels.• Ensure Vulnerability Management.• Review of Security Architecture and mechanisms and recommend changes to the structure.
Recommendations
Be the first to recommend Adam
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- State Engineer in Network SecurityEcole Nationale des Sciences Appliquées20151. Fondamentaux des réseaux Modèle OSI & TCP/IP Adressage IP (IPv4/IPv6), sous-réseaux, CIDR Protocoles (ARP, ICMP, DNS, DHCP, NAT, etc.) Routage statique & dynamique (RIP, OSPF, BGP) VLAN, trunking, STP TCP, UDP, ports & sockets 2. Sécurité réseau – Bases Concepts de sécurité : CIA, risques, menaces, vulnérabilités Pare-feu (firewall) : étatful/stateless, zones, règles Listes de contrôle d'accès (ACL) DMZ, segmentation réseau NAT, PAT et sécurité 3. Sécurité périmétrique avancée UTM, NGFW (Fortinet, Palo Alto, Cisco ASA) IDS/IPS (Snort, Suricata) Proxy et filtrage web VPN (IPSec, SSL, L2TP, IKEv2) Sécurité sans fil (WPA2/3, 802.1X, EAP) 4. Outils & technologies de sécurité Wireshark, tcpdump, Nmap, Netcat SIEM (Splunk, Sentinel, QRadar) Antivirus/EDR/XDR Honeypots et sandbox PKI, certificats, TLS/SSL 5. Administration systèmes & scripts Windows Server & Linux (Debian, CentOS) Services réseau (DNS, DHCP, LDAP, FTP, etc.) PowerShell, Bash, scripts d’automatisation GPO & Active Directory Journalisation et surveillance système 6. Sécurité applicative & Web OWASP Top 10 Vulnérabilités courantes : XSS, SQLi, CSRF WAF Sécurité des API (JWT, OAuth2) 7. Architecture réseau sécurisée Design d’infrastructures sécurisées High Availability & Load Balancing Sécurité dans les datacenters Cloud networking 8. Sécurité dans le Cloud IAM, SSO, MFA NSG, route tables, firewalls cloud Zero Trust Sécurité des workloads (VM, containers) Sécurité des services managés (PaaS, SaaS) 9. Gouvernance et conformité Normes : ISO 27001, NIST, CIS RGPD, loi informatique et libertés Gestion des incidents et SOC PCA/PRA Analyse de risques & politique de sécurité 10. Projets & Labs pratiques Déploiement complet d’une infra sécurisée Configuration d’un VPN site-to-site Analyse de paquets réseau en temps réel Configuration de règles sur un firewall Simulations d’attaques / défenses (pentest éthique)
Certifications
- NSE4: Fortinet Network Security Expert Level 4Fortinet2023
- Palo Alto PCNSAPalo Alto2022