You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Chaco M.CM

Chaco M.

System and Security Engineer AD/EntraID/M365

€400/day
Paris, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Chaco

Microsoft System and Security Engineer with over 5 years of experience in designing, securing, and administering complex hybrid infrastructures. CISO certified and holder of several international technical certifications (Microsoft, Cisco, etc.), as well as Microsoft Applied Skills validating practical skills in Microsoft 365, Active Directory, Azure AD, and identity security.

Expert in the following areas:

Migration of on-premise infrastructures to Azure / Microsoft 365
Hardening, auditing, and securing Active Directory (Tiering, MFA, ADFR, Tenable AD, Semperis, etc.)
Design of Microsoft architectures (ADDS, ADFS, ADCS, Exchange Online, Microsoft Entra)
Advanced administration of VMware, Citrix, and Windows Server environments (2003 to 2025)
Automation via PowerShell and Ansible for monitoring and operational maintenance
Technical project management, IT team support, documentation, governance, and best practices
Recognized for the ability to act as a technical referent, conduct security audits, and industrialize critical IT environments with a focus on reliability, compliance, and performance.
  • French

    Native or bilingual

  • English

    Conversational

Can work on-site
Paris (up to 50km)

Experience

  • Groupama SA
    Active Directory System and Security Engineer
    BANKING AND INSURANCE
    July 2024 - July 2025 (1 year)
    Montpellier, France
    Responsible for the management, security, and maintenance of Windows server environments, primarily Active Directory. In-depth understanding of operating systems, cloud computing environments, and best security practices.

    Responsibilities:
    • Design, administer, evolve, and maintain the Active Directory architecture in operational condition (25,000 users, multiple domains and forests, trust relationships),
    • Audit of the Tiering Model in AD (+ 30 domains - entities and regional banks)
    • Actively participate in improving the security of Active Directory directories by producing KPIs to track progress,
    • Participate in various projects to strengthen the Tier 0 infrastructure
    • Ensure compliance with current security rules.
    • Provide support for the Active Directory domain,
    • Develop PowerShell / Ansible scripts for process automation and AD infrastructure monitoring,
    • Keep the infrastructure's technical documentation up to date,
    • Work on AD remediation plans following security audits,
    • Act as the technical contact for the Server team for the Office 365 deployment project,
    during the establishment of ADFS and AD Connect links with the group's entities.
    • System monitoring, security incident detection and analysis
    • Management of security and data protection
    • Migration to Microsoft M365 and Exchange Online
    • Management and optimization of existing infrastructures
    • Administration and support of messaging infrastructures
    • Technical support and advice on messaging projects
    Azure Active Directory Microsoft Office Microsoft Entra ID Windows Server Pingcastle
  • QuantumVertex
    System, Cloud, and Security Engineer
    TELECOMMUNICATIONS
    November 2021 - February 2024 (2 years and 3 months)
    Kinshasa, KN, Democratic Republic of Congo
    Manage the company's hybrid and Office 365 IT systems: system administration.
    Tasks performed:
    - Technical Project Manager
    - Azure Portal Administration (Microsoft Entra)
    - Office 365 Administration Center and subscription management
    - Management of internal (DRC) and external (Quebec) networks.
    - Implementation of system infrastructure (hardware and network)
    - Lead the migration of on-premise datacenter machines to Azure
    - Troubleshooting and maintenance.
    - Implementation of Azure AD SSO solution with FortiGate SSL VPN
    - Determine the IT hardware to install (or uninstall) and the software to use
    - Configure IT hardware and create user-specific interfaces
    - Management of Office 365, McAfee Antivirus, and Windows system licenses
    - Management of access rights to solutions based on profiles
    - Perform security updates
    - Identification, resolution, and prediction of IT bugs
    - Conduct technological watch to stay informed about new security practices
    - Level 3 incident management (diagnosis, resolution, and follow-up) and security anomalies
    - Ensure follow-up and remediation of identified vulnerabilities
    - Configuration and Monitoring with security alerts using the Zabbix supervision tool
    - Contribution to the configuration of security solutions and change management
    - Contribution to user awareness and training on security solutions
    - Ensure the security of the entire IT system
    - Registration of enterprise applications on Azure
    - Management of synchronization via Azure AD Connect
    - Configuration of Group Policies (GPO) on the domain controller
    - Planning and execution of backup and load tests for solutions
    - Implementation of workstation/server updates via WSUS with GPO
    Microsoft Azure Microsoft Office Microsoft Entra ID Active Directory Windows Server
  • OLIUM GROUP
    System and Cloud Engineer
    CONSULTING AND AUDITS
    March 2020 - October 2021 (1 year and 8 months)
    Kinshasa, KN, Democratic Republic of Congo
    Design and creation of operating procedures, documentation, technical sheets, implementation, and integration of client systems.

    Tasks Performed:
    • Install and configure operating systems (Linux, Windows, etc.).
    • Deploy applications and services.
    • Configure system security settings.
    • Ensure preventive and corrective maintenance of systems.
    • Resolve user incidents and technical problems.
    • Perform security updates and patches.
    • Implement monitoring tools to track system performance.
    • Analyze system logs to detect and resolve anomalies.
    • Optimize system resources to ensure optimal performance.
    • Install and configure network equipment (routers, switches, firewalls).
    • Ensure service continuity in case of failure.
    • Monitor network performance and manage bandwidth.
    • Resolve connectivity issues and network failures.
    • Implement redundancy and fault tolerance measures.
    • Configure security devices (firewalls, VPNs, IDS/IPS).
    • Implement network security policies.
    • Monitor and analyze traffic to detect threats and intrusions.
    • Develop and implement IT security policies.
    • Train staff on security best practices.
    • Administer user accounts and access rights.
    • Implement strong authentication systems (MFA).
    • Provide Level 2 and 3 technical support to users.
    • Resolve tickets and support requests.
    • Train users on new technologies and deployed solutions
    • Analyze client needs and problems and manage IT assets
    • Technically respond to tenders and client issues.
    • Identify client needs and establish specifications
    Linux Network Administration Windows Server VMware ESX Microsoft Entra ID

Recommendations

Be the first to recommend Chaco

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Cybersecurity Analyst
    African Institute of Cybersecurity and Infrastructure Security
    2022
    Cybersecurity Analyst
  • Bachelor's Degree, Computer Science
    University of Kinshasa
    2019
    Licence, Informatique

Certifications

Skill set

Categories