You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Asaph A.AA

Asaph A.

Cybersecurity DLP & Python/Next.js Developer

€450/day
Paris, FR
0-2 years

Average response time: 24 hours

Freelancer profile translated to English.
Back to original language

About Asaph

Cybersecurity engineer with 2 years of experience in a banking environment (BPCE IT), specializing in Data Loss Prevention and incident detection. In parallel, I design and deploy full-stack applications in production.

What I bring concretely:

→ Cybersecurity & DLP
Qualifying 400 to 1,000+ alerts/week. End-to-end management of a Fraud DLP project (scoping, benchmark of Netskope/Forcepoint/Trellix, deployment of 30+ rules). Reduction of recurring incidents by approximately 30% through tuning detection rules. 20+ formalized runbooks, GDPR/NIS2/PCI DSS compliance.

→ Full-Stack Development & DevSecOps
Creator of Sanctum (parole-fidele.org), an AI transcription platform in production: Next.js 15, FastAPI, PostgreSQL, Redis, Docker, CI/CD GitHub Actions. Multi-provider AI pipeline, RBAC, audit trail, automated quality gates.

→ Automation & Tooling
Python automation scripts (saving 1 to 3 hours/week), Power Automate workflows, Splunk and Power BI dashboards, pre-commit Gitleaks hooks.

I am available for missions in cybersecurity (DLP, SIEM, security policy) as well as backend/full-stack development (Python, TypeScript, APIs).
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • Asaphakoa
    DevSecOps Architect & Developer
    CONSULTING AND AUDITS
    January 2026 - Today (5 months)
    Paris, France
    ▸ Design of a complete audit trail with traceable identifiers and date exports · conservation of execution and historization evidence.
    ▸ Implementation of pre-prod / go-prod quality gates: environment checks, automated tests, GO/NO-GO date reports.
    ▸ Application of RBAC on all endpoints with fail-closed behavior in production.
    ▸ Development of a pre-commit hook for secret detection (Gitleaks) to block exposed tokens before integration into the repository.
    ▸ CI/CD pipeline with GitHub Actions: build, tests (pytest, Playwright), linting (ruff), automated deployment.

    Environment: FastAPI (Python), Next.js 15, TypeScript, PostgreSQL 16, Redis 7, MinIO (S3), Docker / Compose, GitHub Actions, Caddy (TLS), Playwright,
    pytest
    ,
    Python AI Automation DevOps TypeScript Playwright
  • BPCE Infogérance & Technologies
    Data Protection Analyst
    BANKING AND INSURANCE
    October 2023 - September 2025 (1 year and 11 months)
    Toulouse, France
    ▸ Automation: Python script for incident log archiving (saving 1 to 3 hours/week), 5 Power Automate workflows (alert routing, notifications, escalations) with DevSecOps practices and CI/CD deployment.
    ▸ Design and development of internal interfaces (dashboards, forms, tracking tools) for security teams, with continuous iteration based on user feedback.
    ▸ Collaboration in a multidisciplinary squad (infra, security, product) in Agile/Scrum on short cycles. Systematic code reviews.
    ▸ Qualification of 400 to 1,000+ alerts/week in SPL: triage, investigation, multi-source log correlation, corrective coordination, and reporting to security committees.
    ▸ Splunk RBAC management: administration of user roles and rights, application of best practices for access security and data compartmentalization by index.
    ▸ Management of the Fraud DLP project (5 months): scoping, benchmark of 3 solutions (Netskope / Forcepoint / Trellix), specifications, testing, and production deployment. Deployment of 30+ detection rules.
    ▸ Creation of Splunk dashboards and KPI reports for operational monitoring and stakeholder reporting (Power BI).
    ▸ Continuous tuning of detection rules: reduction of approximately 15% of false positives in the covered scope; decrease of approximately 30% of recurring incidents through filter optimization.
    ▸ Documentation of processes and recurring incidents: 7 project documentation pages, 20+ formalized runbooks. Contribution to GDPR / NIS2 / PCI DSS procedures.

    Environment: Splunk Enterprise (SPL), Netskope DLP, Trellix DLP, Forcepoint, Python, Regex, Power Automate, Jira, Confluence, Power BI, Zabbix,
    GDPR, NIS2, PCI DSS, ANSSI frameworks
    Python Automation Splunk Netskope Trellix
  • SEPEFREI Junior-Entreprise
    Backend Developer · Application Security
    EDUCATION AND E-LEARNING
    October 2024 - October 2025 (1 year)
    Villejuif, France
    ▸ Design and development of secure REST APIs: endpoint structuring, authentication, authorization, and input validation.
    ▸ PostgreSQL database modeling and exploitation: relational schemas, performant queries, data integrity.
    ▸ Implementation of CI/CD pipelines to automate build, tests, and deployments. Reusable technical documentation.

    Environment: TypeScript, Next.js, Prisma, tRPC, REST API, PostgreSQL, Git, GitLab CI/CD, Docker
    TypeScript DevOps Next.js API PostgreSQL

Recommendations

Be the first to recommend Asaph

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • MSc
    EFREI Paris & Paris School of Business
    2025
    MSc
  • Computer Science Systems & Security Bachelor's Degree (Bac+3)
    EPITECH
    2023
    Licence Informatique Systèmes & Sécurité (Bac+3)

Categories