You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Firas MiladiFM

Firas Miladi

Cloud Security Engineer

€600/day
Paris, FR
3-7 years

Average response time: 1 hour

About Firas

Cloud & Infrastructure Security Engineer with 3 years of experience securing critical banking infrastructure at BNP Paribas, supporting international operations processing more than 2 million transactions per day.
Specialized in Zero Trust architecture, multi-cloud security across AWS and Azure, and DevSecOps automation using Jenkins and Terraform.
Experienced in translating regulatory and security frameworks such as EBIOS RM, GDPR, PCI-DSS, and ISO 27001 into practical technical controls, while contributing to zero critical findings across multiple external audits.
Also worked on secrets management and privileged access security using CyberArk, while training engineers on security automation practices.
  • English

    Native or bilingual

  • French

    Native or bilingual

  • Arabic

    Native or bilingual

Can work on-site
Paris (up to 50km)

Experience

  • BNP Paribas CIB GM
    cybersecurity engineer
    BANKING AND INSURANCE
    September 2022 - September 2025 (3 years)
    Paris, France
    Secured critical banking infrastructure processing more than 2 million daily transactions.

    Implemented Zero Trust security controls across AWS and Azure environments.

    Automated DevSecOps processes using Jenkins and Terraform.

    Translated compliance requirements into technical controls including encryption, firewall rules, and access policies.

    Managed secrets and privileged access using CyberArk.

    Trained more than 15 engineers on security automation, helping reduce findings by 45%.
    Terraform Microsoft Azure DevOps Cybersecurity Google cloud
  • BNP Paribas
    Cloud Security Engineer
    January 2022 - January 2025 (3 years)
    Paris, France
    • · Zero Trust Architecture: Designed and implemented enterprise-scale Zero Trust infrastructure protecting 5+ criti- cal banking applications processing 2M+ daily transactions: IAM hardening and least-privilege controls, reduced privileged accounts by 40%, achieving full ISO 27001/PCI-DSS compliance.
    • · Microsegmentation & Network Security: Deployed Illumio across 50+ production servers, creating policy-based segmentation with hardened DMZ & VLAN isolation: prevented unauthorized lateral movement across sensitive financial zones. . SIEM & Threat Detection: Led Splunk to OpenSearch/Logstash migration (500 GB+/day, 200+ sources), au- tomated correlation rules and alerting pipelines, reduced MTTD from 20h to 6h, integrated MITRE ATT&CK framework for structured threat hunting.
    • · Observability: Deployed Dynatrace across 100+ servers and containers, engineered security dashboards, im- proving MTTR by 35%. . DevSecOps & Automation: Built Python/Bash/Ansible security automation framework: integrated SAST/DAST and vulnerability scanning in CI/CD pipelines, prevented critical vulnerabilities from reaching production across 15+ cloud migration projects (AWS/Azure).
    • · Compliance: Translated EBIOS RM, GDPR, PCI-DSS, ISO 27001 into technical controls (encryption, firewall rules, access policies), zero critical findings across 4+ external audits, trained 15+ engineers on security au- tomation, reducing findings by 45%.

Recommendations

Be the first to recommend Firas

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • IAM
    IAM
  • DevSecOps CCSP
    2026
    DevSecOps CCSP

Skill set

Categories