You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Adam HdiaAH

Adam Hdia

Network Security - Cloud Security - F5 (LTM-ASM)

€600/day
Versailles, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Adam

Cloud Security Engineer, passionate about cybersecurity and cloud technologies, particularly Azure, with solid experience in implementing security solutions in hybrid cloud environments. My goal is to evolve and secure my clients' cloud infrastructures within the framework of "From Scratch" projects or "Move To Cloud" projects.
  • French

    Native or bilingual

  • English

    Fluent

  • Arabic

    Native or bilingual

Can work on-site
Versailles (up to 50km)

Experience

  • BNP Paribas Real Estate
    Security Consultant
    BANKING AND INSURANCE
    May 2022 - Today (4 years and 1 month)
    Boulogne-Billancourt, France
    For BNP Real Estate, within the ProdSec Team

    RUN

    • Management of L2/L3 incidents on firewalls in an international environment.
    • Opening and optimization of complex flows in RUN and project mode.
    • Ensuring on-call duty at night and on weekends to guarantee the availability of critical services.
    • Monitoring and optimization of AWS resource performance (EC2, RDS, ELB) via CloudWatch and AWS Config.
    • Management of automated backups and restores (AWS Backup, EBS/RDS snapshots)

    BUILD

    • Deployment and go-live of interconnection Firewalls with the group.
    • Configuration of IPSec VPN tunnels with international partners on Checkpoint firewalls.
    • Deployment and administration of SecureChange/SecureTrack, and user support for IT.
    • Implementation of SSO on Tufin TOS, and annual certificate management.
    • Integration of security solutions from the build phase (IAM roles/policies, Security Groups).
    • Technical lead for firewall remediation post-IG audit.
    • Onboarding of the entire subsidiary's Firewalling park into the group's ecosystem.
    • Implementation of high availability, resilience, and disaster recovery strategies on AWS.

    PROJECT MANAGEMENT

    • Migration of Real Estate flows from CIB to BNP's IT Production in collaboration with the relevant entities.
    • Facilitation of technical workshops with the CISO team as part of various projects.
    • Drafting of technical procedures and technical architecture documents (DAT).
    • Alignment of security posture with the group's in the context of the Cyber Program project.
    • Development of cloud transformation roadmaps in conjunction with business and IT teams.
    • Training and coaching of 5 consultants.
  • Accenture
    Network Security Engineer
    February 2020 - May 2022 (2 years and 3 months)
    Paris, France
    Client: Total Energies +Operations
    - Incident Management
    ▪ Troubleshooting and resolution of firewall-related incidents (Failover issues, compilation problems, non-functional flows, RMA).
    ▪ Management of IPSec VPN and SSL VPN incidents.
    ▪ Debugging issues related to load balancing on F5 and Netscaler.
    ▪ Analysis and resolution of web filtering problems on Zscaler.
    ▪ Resolution of WiFi incidents.
    - Change Management
    ▪ F5 VIP creation.
    ▪ Opening of standard and complex flows on firewalls.
    ▪ Firewall rule cleanup.
    ▪ Creation of new DMZs.
    ▪ Equipment certificate updates.
    ▪ Security equipment software updates (upgrades).
    ▪ Switch configuration.
    ▪ Publishing sites on Haproxy.
    ▪ Go-live tasks + Project.
    - Integration of Cisco switch stacks.
    - Migrations of Nortel switch stacks to AVAYA switch stacks.
    - Integration of Checkpoint firewalls.
    - Migrations of Juniper firewalls to Checkpoint firewalls version R77.30 and R80.10.
    - Installation of Checkpoint R80.20 management server.
    - Fortigate firewall software updates.
    - Responding to calls for tender.
    - Troubleshooting post-migration issues.
    - Drafting and updating technical documents.
    - Project monitoring.
    - Compliance with client processes.
  • Devoteam
    Network Security Consultant
    October 2017 - January 2020 (2 years and 3 months)
    Greater Casablanca, Morocco
    Client: INWI ISP
    • Handle issues on different security platforms, perform investigations and troubleshooting.
    • Solve existing security issues, such as viruses or hardware malfunction.
    • Ensure IP Backbone & B2B clients security at different levels.
    • Ensure Vulnerability Management.
    • Review of Security Architecture and mechanisms and recommend changes to the structure.

Recommendations

Be the first to recommend Adam

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • State Engineer in Network Security
    Ecole Nationale des Sciences Appliquées
    2015
    1. Fondamentaux des réseaux Modèle OSI & TCP/IP Adressage IP (IPv4/IPv6), sous-réseaux, CIDR Protocoles (ARP, ICMP, DNS, DHCP, NAT, etc.) Routage statique & dynamique (RIP, OSPF, BGP) VLAN, trunking, STP TCP, UDP, ports & sockets 2. Sécurité réseau – Bases Concepts de sécurité : CIA, risques, menaces, vulnérabilités Pare-feu (firewall) : étatful/stateless, zones, règles Listes de contrôle d'accès (ACL) DMZ, segmentation réseau NAT, PAT et sécurité 3. Sécurité périmétrique avancée UTM, NGFW (Fortinet, Palo Alto, Cisco ASA) IDS/IPS (Snort, Suricata) Proxy et filtrage web VPN (IPSec, SSL, L2TP, IKEv2) Sécurité sans fil (WPA2/3, 802.1X, EAP) 4. Outils & technologies de sécurité Wireshark, tcpdump, Nmap, Netcat SIEM (Splunk, Sentinel, QRadar) Antivirus/EDR/XDR Honeypots et sandbox PKI, certificats, TLS/SSL 5. Administration systèmes & scripts Windows Server & Linux (Debian, CentOS) Services réseau (DNS, DHCP, LDAP, FTP, etc.) PowerShell, Bash, scripts d’automatisation GPO & Active Directory Journalisation et surveillance système 6. Sécurité applicative & Web OWASP Top 10 Vulnérabilités courantes : XSS, SQLi, CSRF WAF Sécurité des API (JWT, OAuth2) 7. Architecture réseau sécurisée Design d’infrastructures sécurisées High Availability & Load Balancing Sécurité dans les datacenters Cloud networking 8. Sécurité dans le Cloud IAM, SSO, MFA NSG, route tables, firewalls cloud Zero Trust Sécurité des workloads (VM, containers) Sécurité des services managés (PaaS, SaaS) 9. Gouvernance et conformité Normes : ISO 27001, NIST, CIS RGPD, loi informatique et libertés Gestion des incidents et SOC PCA/PRA Analyse de risques & politique de sécurité 10. Projets & Labs pratiques Déploiement complet d’une infra sécurisée Configuration d’un VPN site-to-site Analyse de paquets réseau en temps réel Configuration de règles sur un firewall Simulations d’attaques / défenses (pentest éthique)

Certifications

  • NSE4: Fortinet Network Security Expert Level 4
    Fortinet
    2023
  • Palo Alto PCNSA
    Palo Alto
    2022

Skill set (10)

Categories