About Bassem
- Security Audits (technical & organizational): ISO 27001, 27032, 22301, 37001, PCI-DSS…
- Penetration Testing: web, network, OT, business applications (SAST/DAST)
- Implementation of management systems (ISMS, QMS, EOMS, DevSecOps)
- Strategic Consulting: cloud security, BCP/DRP, GRC governance, ISPS
- Training & Awareness: CISSP, CEH, ISO, cybersecurity for managers
French
Native or bilingual
English
Fluent
German
Basic
Arabic
Native or bilingual
Experience
- DataScientestOffensive Cybersecurity TrainerEDUCATION AND E-LEARNINGJuly 2025 - Today (11 months)Paris, FranceActing as an expert trainer for ethical hacking (CEH) and penetration testing (pentest) modules, as part of DataScientest's certified cybersecurity programs. I lead practical sessions on methodologies (OWASP, PTES), tool usage (Nmap, Burp, Metasploit…), vulnerability exploitation, and professional report writing. I guide learners in acquiring advanced technical skills and preparing for CEH and pentest certifications.
- Bassem LAMOUCHI EIFreelance Cybersecurity, Cloud, and Compliance ConsultantCONSULTING AND AUDITSMarch 2025 - Today (1 year and 3 months)Paris, FranceAs a registered independent professional (SIREN: 942072752), I assist companies, public institutions, and training organizations in achieving compliance, securing their systems, and developing their skills to meet current digital challenges.With over 14 years of international experience, I offer a comprehensive service structured around 6 key areas:Audit and Compliance
- Technical audits (web, network, cloud, source code), organizational audits ISO 27001, 27032, 37001, 42001, PCI-DSS
- Certification preparation, document reviews, action plans, BCP/DRP
Penetration Testing & Forensics- Pentests (OWASP, PTES, OSSTMM), attack simulations (black-box, grey-box, white-box)
- Digital investigations, post-incident forensic reports
Cloud & DevSecOps- Secure cloud migration consulting, architecture reviews, cloud security (ISO 27017/27018)
- DevSecOps integration, secure CI/CD pipelines, application security (ISO 27034)
Management Systems & GRC- ISMS, QMS, EOMS, ISPS implementation
- IT risk governance, impact analysis, strategic security alignment
Certified Training & Awareness- CEH, CISSP, ISO training (accredited by EC-Council & PECB), team awareness sessions (HR, IT, Executive Committee)
- Development of customized training paths, inter/intra-company sessions, certification support
Managed Services & Secure Maintenance- Deployment and management of secure environments (VMware, VDI, firewalls, hosting), system hardening, monitoring
I work remotely or on-site (Île-de-France and international), with a high level of professionalism, confidentiality, and regulatory rigor.Contact me to secure your assets, train your teams, or achieve your compliance goals. - ISC2Accredited Trainer – (ISC)² Authorized Instructor (since 2023)EDUCATION AND E-LEARNINGJanuary 2023 - Today (3 years and 5 months)Paris, FranceSince 2023, I have been an official (ISC)² Authorized Instructor as part of the Official Training Provider program, delivered in partnership with accredited centers.I primarily teach for CISSP certification, as well as information security fundamentals, both in-person and remotely, in Europe and Africa.My role includes:
- Delivering CISSP certification training, aligned with the official CBK (8 domains)
- Intensive preparation for candidates, including memorization techniques and practical case studies
- Simplifying advanced concepts in governance, architecture, IAM, cryptography, etc., for technical or functional profiles
- Personalized support for learners until they pass their exam
- Ensuring compliance with (ISC)² quality requirements, with a high level of pedagogical commitment
My expertise in audit, governance, and operational security allows me to illustrate each CISSP concept with real-world case studies from field missions, enhancing the value of each session.
Recommendations
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Computer Science EngineerNational School of Computer Science2011Ingénieur en informatique
- Master in Software Engineering and Decision SupportNational School of Computer Science2013LLM, IA, les bonnes pratiques de développement...
Certifications
- PECB Certified ISO 42001 Senior Lead AuditorPECB2025
- PECB Certified ISO 42001 Senior Lead ImplementerPECB