About Ghaya
English
Native or bilingual
French
Fluent
Experience
- Blauwtrust GroepInformation Technology Security OfficerJanuary 2024 - August 2025 (1 year and 7 months)Rotterdam, Netherlands• Managing the ISO 27001 audit for the group and its subsidiaries, from initiation to implementation.• Development, revision and publication of information security policies and procedures.• Managing non-conformities to ensure ISO 27001:2022 certification.. Designing and organizing information security awareness programs, including attack simulations.• Coordinating IT security activities with internal and external stakeholders.• Supporting group entities in their regulatory compliance efforts.• Conducting compliance audits (ISO, DORA, RGPD, ISAE, SOC2).• Organizing cybersecurity crisis management exercises.• Designing training and awareness programs for clients and technical teams.• Conducting phishing simulations to test employee responsiveness.• Implementing data protection measures (classification, encryption, DLP).• Supporting RGPD compliance and conducting DPIAs.• Analyzing supplier contracts to define security requirements.• Regularly monitoring cybersecurity within subsidiaries.• Contributing to the development of policies and procedures for the DORA project.• Managing the review of user access rights on cloud platforms.• Harmonizing security practices across different subsidiaries.• Implementing action plans to correct gaps and improve security.• Revising conditional access policies to strengthen access controls.
- SAMA PARTNERS Business Solution GmbhLocal Information Security OfficerDecember 2021 - December 2023 (2 years)Mannheim, Germany• Contributing to the preparation for ISO 27001 certification in collaboration with the lead auditor.• Developing security awareness initiatives and project plans to support the company's certification.• Drafting information security indicators and ISMS policies compliant with ISO 27001.• Raising awareness among the company's various departments about security requirements and supporting their implementation.• Monitoring audit recommendations and ensuring their proper implementation.
- SAMA PARTNERS Business Solution GmbhInformation Security SpecialistMay 2020 - November 2021 (1 year and 6 months)Drafting explanatory documents on the distinction between the surface web, the deep web and the dark web.• Monitoring client information and databases on the dark web using advanced tools.• Developing a script in Python3 to automate scans and provide detailed reports on potential vulnerabilities.• Conducting research on Cyber Threat Intelligence (CTI) in the MENA regions.• Strengthening security by using vulnerability scanners and protection tools such as antivirus and EDR.
Recommendations
Be the first to recommend Ghaya
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- ISO 27001 Lead AuditorISO 27001 Lead Auditor
- ISO 27005 Risk ManagerISO 27005 Risk Manager