You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Francois K.FK

Francois K.

Threat Hunting, Incident Response & Forensics

€900/day
Rennes, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Francois

Do you want to detect, analyze, and neutralize the most sophisticated cyber threats as soon as they emerge?

As a freelance CTO – Lead Threat Detection, Investigation & Response, I work with organizations concerned with:
- Strengthening their cybersecurity: from detection to response, including investigation phases, design of custom playbooks, runbooks, and dashboards
- Automating their SOC: orchestration, process implementation, knowledge sharing, industrialization for real-time triage and correlation
- Conducting forensic investigations: evidence collection, dynamic malware analysis and advanced reverse engineering, and enriching their own threat intelligence
- Leading threat hunting workshops: practical training and feedback for your teams
- Delivering reports and POCs: detailed incident reports, triage scripts, automation prototypes, and strategic recommendations

Why work with me?
- 20 years of expertise (ANSSI, Ministry of Armed Forces, Mandiant, CEO of Defants – Gartner Cool Vendor)
- Deeptech & pragmatic approach: combining state rigor with LLM innovation
- Fast results: express audit, operational POC in less than 48 hours
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Rennes (up to 50km), Paris (up to 10km), Nantes (up to 20km), Le Mans (up to 50km), Angers (up to 50km)

Experience

  • Defants
    Chief Executive Officer
    CONSULTING AND AUDITS
    January 2022 - Today (4 years and 5 months)
    Rennes, France
    As CEO of Defants, I drive the strategic vision, product innovation, and business development of a deeptech startup specializing in cyber threat investigation.

    Key Responsibilities:

    🎯 Strategy and Vision: Defining Defants' differentiating positioning in the cybersecurity market, with an exclusive focus on incident response, threat hunting, and forensics.

    🧠 Technological Innovation: Co-designing a unique semantic investigation engine based on knowledge graphs and LLM agent orchestration, recognized by Gartner as a “Cool Vendor 2023”.

    🤝 Strategic Partnerships: Establishing technological and commercial collaborations with MSSPs, cyber insurers, and key players in the modern SOC.

    🚀 Go-to-Market: Developing and executing the commercial strategy in Europe (France, Spain, Italy, Portugal, Switzerland) with a direct and indirect approach through partners.

    📈 Growth & Funding: Fundraising (€1M in seed round), investor relations, governance management, and financial runway piloting in a demanding context.

    👥 Leadership & Culture: Managing a multidisciplinary team, integrating founding profiles, and creating a culture that combines operational rigor, resilience, and innovation.
    Business Strategy cybersecurity-incident-management Consulting Cybersecurity Project Management
  • CNAM Bretagne
    Instructor
    EDUCATION AND E-LEARNING
    March 2017 - Today (9 years and 3 months)
    Brittany, France
    Cyber threats and malicious code: analysis and countermeasures. This certified course is divided into three phases:
    - A monitoring phase: understanding modes of action to anticipate effects
    - An alert phase: detecting the effects of malicious code
    - A response phase: minimizing, stopping, or reducing the impact of malicious code
    cybersecurity-incident-management Training Information Security Malware Analysis Network Administration
  • Mandiant (now part of Google Cloud)
    Incident Response & Forensics Consultant
    CONSULTING AND AUDITS
    April 2020 - January 2022 (1 year and 9 months)
    France
    As an incident response consultant at Mandiant, I was involved in the most sophisticated cyberattacks targeting major companies and critical institutions in France and internationally.

    Key Responsibilities:

    ⚔️ Advanced Incident Response: Post-compromise investigation of targeted attacks (APT, ransomware, cloud intrusion), including evidence collection, forensic analysis, and attack path reconstruction.

    🧩 Multidomain Expertise: Interventions on hybrid environments (on-premise, cloud, Microsoft 365, Active Directory) and use of cutting-edge proprietary tools.

    🕵️ Applied Threat Intelligence: Real-time cross-referencing with Mandiant Threat Intelligence data to enrich investigations and identify attacker groups.

    💡 Strategic Consulting: Advising CISOs and CIOs on crisis management, prioritized remediation, and the implementation of post-incident hardening plans.

    🌐 Reputation & Influence: Contributing to Mandiant's influence in Europe through experience sharing and contributions to improving clients' cyber maturity.
    threat-intelligence cybersecurity-incident-management Information Security Cybersecurity Malware Analysis

Recommendations

Be the first to recommend Francois

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master of Management
    École Polytechnique
    2020
    Executive Master, Innovation Management
  • Industry 4.0
    Technical University Munich
    2019
    Industry 4.0

Certifications

Skill set

Categories