You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Ange KouakouAK

Ange Kouakou

GRC & ISP Cybersecurity Consultant

€600/day
Paris, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Ange

Are you managing IT projects without knowing if security is truly considered? Are you an Information Security Officer (ISO) alone facing project managers who move forward without you?
I help mid-sized companies and private and public organizations integrate security into their projects from the start, without slowing down the teams.

Specifically, I intervene to:
• Structure your ISP (Information Security Project) framework and train your project managers on best practices.
• Conduct your risk analyses (EBIOS RM) and produce the associated deliverables.
• Support you with your ISO 27001, NIS2, or RGS compliance without unnecessary complexity.
• Audit your security and provide you with a concrete action plan, not an 80-page report.

Certified EBIOS RM by ANSSI. Field experience: multi-sector missions in consulting firms.

Available remotely and for on-site assignments.
  • French

    Native or bilingual

  • English

    Conversational

Can work on-site
Paris (up to 50km)

Experience

  • Cyber4U
    Cybersecurity Consultant
    September 2023 - December 2025 (2 years and 3 months)
    IS Governance & Project Management. Supporting clients in structuring their IS security governance. Facilitating workshops and steering committees with management, ISOs, and business teams. Clarifying roles, responsibilities, and decision-making processes for security. Defining and monitoring security action plans. Providing concise reports on the state of IS security to decision-makers.

    ISO 27001 Compliance Support. Support for ISO 27001 preparation: structuring the ISMS, developing and updating the Statement of Applicability (SoA), defining IS security policies and procedures, developing the action plan. Formalizing security policies, operational procedures, and risk treatment plans. Monitoring the implementation of compliance actions and reporting to governance.
    Security Integration in Projects Risk Analysis Cybersecurity Awareness GDPR
  • RSSI
    Assistant
    April 2023 - September 2023 (5 months)
    Aix-en-Provence, France
    Large territorial collectivity with an extensive and heterogeneous information system. Intervention within the ISO function to support operational security, IS security requirements management, and coordination with technical and business teams.
    • Tasks performed

    Operational Security & Vulnerability Management

    Security audits and vulnerability detection via Qualys. Monitoring identified vulnerabilities on the IS, in liaison with technical teams and service providers. Coordination of remediation actions and monitoring of treatment deadlines. Incident and SOC alert handling (EPP/EDR TEHTRIS). Monitoring and resolution of incidents in GLPI according to ITIL best practices.
    • Weekly security watch (CERT-FR, ANSSI, YARA, ABUSE.CH)

    IS Security Steering, Governance, and Reporting

    Steering and facilitating cyber governance (COSEC, COPIL). Production and updating of security monitoring indicators. Concise reporting of progress status to governance. Verification of service provider security requirements via Security Assurance Plans (PAS). Steering the accreditation of sensitive information systems (MonServiceSécurisé). Integrating security into projects (ISP). Deployment of the ISP approach on over 200 digital projects, in compliance with RGS. Conducting risk analyses (EBIOS RM for new projects, FEROS for existing projects). Reviewing architecture documents (DAT, flow matrices). Developing and monitoring an ISP maturity dashboard and accreditation deadlines. Drafting security opinions and preparing accreditation files. Facilitating security committees and raising awareness among business teams.
    Security Integration in Projects Risk Analysis EBIOS RM Feros Monarc
  • Qwamplify Shopper
    CTI Analyst
    June 2021 - December 2021 (6 months)
    Collection, Analysis & Automation
    • Implementation of an automated monitoring system.
    • Daily monitoring of vulnerabilities affecting SaaS software dependencies.
    • Exploitation of Indicators of Compromise (IOC).
    • Use of YARA rules for threat detection.
    • Aggregation of sources via RSS feeds.
    • Monitoring of cyber threats and trends (Cyber Threat Intelligence).
    • Identification of potential compromise signals.

Recommendations

Be the first to recommend Ange

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Advanced Master in Cybersecurity of Complex Systems
    2023
    Mastère Spécialisé Cybersécurité des Systèmes Complexes
  • Master in Technological Watch and Innovation
    Aix-Marseille University
    2021
    Master Veille Technologique et Innovation

Skill set

Categories