You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Francois BernardonFB

Francois Bernardon

Supermalter

Information security expert (cybersecurity)

€620/day
3 projects
Dijon, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Francois

Hello!

Passionate about cybersecurity since childhood, I went from pentester to vulnerability manager.
I also worked on governance topics, particularly on PCIDSS.

My experience:

Pentest: experience in America (Montreal), Asia (Bangkok and Phnom Penh) and of course France. I am able to help you with all your projects.
Having worked for large accounts: the banking sector (BPCE / Caisse d'Épargne and Banque Populaire as well as Crédit Mutuel), my expertise is broad and precise, including numerous tools.

Vulnerability manager: I also worked at BPCE on vulnerability management topics (orchestration of vulns, criticality, team management)
Schneider Electric: vulnerability management on Prisma Cloud, remediation flow management and design of remediation steering processes, vulnerability management by criticality.

I continuously train myself through various platforms, and my very flexible approach allows me to adapt to your needs in the most adequate way for you.

It is obvious that I will also be able to offer my services to apply countermeasures to help you secure your information system.

I am also competent in the PCIDSS and PCI3DS standards. Indeed, I had the opportunity to work on recurrent controls as well as on the preparation of new 3DS controls. My expertise is similar to an AQSA.

The satisfaction of my clients has always been and will always be a priority for me.

For more details, do not hesitate to contact me.

See you soon
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Dijon (up to 50km), Paris (up to 50km), Lyon (up to 50km), Toulouse (up to 50km), Grenoble (up to 50km)

Experience

  • Schneider Electric
    Vulnerability Manager
    INTERNET OF THINGS (IOT)
    January 2024 - Today (2 years and 5 months)
    Grenoble, France
    - Vulnerability Management
    - Lead of vulnerability management on Prisma Cloud (Palo Alto)
    - Vulnerability management on AKS clusters (Azure Kubernetes)
    - Control & management of exposure of resources on the internet (external exposure management)
    - Deployment of Prisma with kubectl, terraform & helm chart
    - ACR scan
    - Manipulation of Public & Private Cloud infrastructure (Azure landing zone...)
    - Design of a SIEM with Azure Sentinel
    - Configuration of custom connectors for Sentinel
    - Investigation of Sentinel SIEM incidents
    - Deployment & configuration of SentinelOne Singularity
  • BPCE
    Cybersecurity and Pentest Consultant
    BANKING AND INSURANCE
    June 2020 - December 2020 (6 months)
    Toulouse, France
    BPCE Infogérance et Technologies [TOULOUSE - BALMA]:
    - Responsible for managing API security vulnerabilities (SECAPP), tracking the resolution of vulnerabilities with the corresponding teams
    - Report on the state of SI security, creation of dashboards & security KPIs
    - Implementation of a criticality score per vulnerability, management of corresponding responsibilities.
    - Incident response
    - Pentest of external WEBAPPs within the banking SI
    - Creation of QUALYS scan policies & automation of scan processes.
    - Implementation of QUALYS results in dashboards
    - Management of false positives
    PenTest API Cybersecurity Bank Audit
  • Crédit Mutuel
    PCI DSS Controller and Auditor
    BANKING AND INSURANCE
    March 2021 - September 2023 (2 years and 6 months)
    Lyon, France
    Crédit Mutuel: [EURO INFORMATION PARIS]
    - Preparation and execution of the various controls necessary for PCI DSS accreditation for the banking system.
    - Design of new PCI3DS controls, design of PCI compliance dashboards
    - Continuous improvement of the PCI compliance process (requests for proof from teams, review of equipment security, crypto review, AV, AD, LDAP, physical security & others.)
    - Training of new arrivals on PCI compliance processes & controls
    - Creation of PCI security review documents & control documentation
    - Creation & review of corresponding tracking sheets
    pcidss controls audits Bank Cybersecurity

Reviews

5.0

Out of 3 ratings

ClaireC

Claire

Cloud Operation Technical Leader - 3 - SE - Global functions - Schneider Digital

Reviewed on 1/6/2026

François was an essential part of our Azure Cybersecurity Operations team throughout 2025. He led the migration of our CSPM and Container scan solution to the certified tool used in our organization — a critical project for us. From day one, he showed great leadership, worked independently, and was proactive in tackling challenges. His approach made a huge difference in helping all teams adapt smoothly to this major change. Thanks to his efforts, the transition was seamless and well-coordinated. He now has strong expertise with the new CSPM tool and proved to be reliable, skilled, and easy to work with. I’d definitely recommend him for any Cyber Security project that needs technical know-how, ownership, and a collaborative mindset.
ClaireC

Claire

3 - SE - Global functions - Schneider Digital

Reviewed on 9/5/2025

Recommendations

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Specialized Cybersecurity Engineer
    CESI
    2019
  • HTB - Pro hacker
    Hack the box
    Niveau pro hacker

Certifications

  • TOEIC
    TOEIC
    2018
    TOEIC score 900
  • PSC1
    Protection Civile
    2015
    PSC1

Skill set

Categories