You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Coraline AmemoutouCA

Coraline Amemoutou

Security Engineer - Detection/Incident Response/IA

€500/day
Paris, FR
3-7 years

Average response time: 1 hour

About Coraline

Security Engineer with 7 years of hands-on experience building and operating monitoring systems, detecting
data breaches, and automating security workflows at scale. I have spent most of my career designing the
technical infrastructure that makes threats visible, from ingesting events across more than 100 sources into a
centralized SIEM, to building alerting pipelines, automating incident response, and integrating AI agents to
reduce manual workload. On AI: I use it daily and have built real agentic workflows in production. I have a
grounded view of what it can and cannot do. I work with high autonomy, deliver projects independently, and am
comfortable operating in environments where ethics and data protection are non-negotiable. Python is my go-to
language for automation, scripting, and building custom data collectors and parsers.
  • French

    Native or bilingual

  • English

    Fluent

Remote only
Primarily works remotely

Experience

  • Veepee
    Security Engineer
    E-COMMERCE
    February 2019 - December 2025 (6 years and 10 months)
    ▪ Built and maintained the ELK SIEM ingesting logs from 100+ sources — including Google Workspace, GCP, AWS, Slack, and SAP — and authored MITRE ATT&CK-aligned detection rules across the full stack.

    ▪ Continuously collaborated with the Red Team on attack simulations, validating detection coverage, verifying remediation effectiveness, and tuning alerting rules based on real attacker behavior

    ▪ Designed Incident Response Plans mapped to TheHive case templates and handled daily alert triage, monitoring, and incident management across cloud infrastructure, Windows/macOS endpoints, and on-premises Windows servers.

    ▪ Built AI-powered agentic workflows (n8n + LLMs) for alert qualification, case management, and automated response — materially reducing manual analyst workload.

    ▪ Orchestrated fleet-wide migration from Sophos to HarfangLab EDR via GPO; benchmarked CrowdStrike vs HarfangLab to inform the procurement decision.

    ▪ Implemented email security rules in Google Workspace (malicious mail detection, encrypted attachment quarantine, sender blocking), DLP controls, and HTTP security headers governance across the organisation.

    ▪ Conducted vulnerability scans (Nessus, Nmap, Nuclei), mapped AD attack paths with BloodHound, and contributed to risk assessments with the governance team.
  • Aubay (Innovation Unit)
    Blockchain Engineer Intern - Go'Chain Project
    April 2018 - August 2018 (4 months)
    • ▪ Contributed to the development and security validation of Go'Chain, a private blockchain-based document certification solution designed to guarantee document integrity across multi-party distribution channels
    • ▪ Gained foundational exposure to blockchain security principles and decentralised trust models

Recommendations

Be the first to recommend Coraline

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • SecOps
    SecOps
  • Security Operations & Defense Analysis (Offensive Security)
    Security Operations & Defense Analysis (Offensive Security)

Certifications

  • OSDA
    Offensive Security
    2022
    Threat Detection Elastic Stack (ELK) SIEM Log analysis

Categories