You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Ghita MammarGM

Ghita Mammar

Cybersecurity Project Manager, IT Risk & Compliance

€550/day
La Celle-Saint-Cloud, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Ghita

Cybersecurity consultant with a strong project management focus, I support organizations in managing their risks, remediating vulnerabilities, and implementing effective and pragmatic security measures.

But beyond skills, I run on energy ⚡

👉 I thrive in dynamic and collaborative environments
👉 I love bridging the gap between technical and business teams
👉 I transform complex topics into clear and actionable plans

I have notably managed:

large-scale vulnerability remediation programs (EMEA)
security projects for infrastructures and endpoints (M365, Zero Trust)
risk analyses and compliance projects (EBIOS, ISO 27001, DORA, GDPR)

🧠 My approach: structured but never rigid

🎯 My goal: move projects forward, not just produce slides

💡 My added value

Technical and functional vision
Ability to coordinate, prioritize, and engage teams
Results-oriented culture + continuous improvement
Fluent communication (FR / EN / AR)

🌍 What I'm looking for

Projects where:

there is real impact
exchanges are respectful and human
and where I can bring energy and structure

Feel free to reach out if you need to energize your security projects and drive them forward effectively.
  • French

    Native or bilingual

  • English

    Fluent

  • Arabic

    Native or bilingual

Can work on-site
La Celle-Saint-Cloud (up to 50km)

Experience

  • CAGIP - Devoteam
    IT Risk Analysis and Compliance Consultant
    BANKING AND INSURANCE
    December 2024 - February 2026 (1 year and 2 months)
    Context:

    Conducting cybersecurity risk analyses in collaboration with network and application solution architects to assess vulnerabilities affecting data availability, integrity, confidentiality, and traceability before production deployment:

    Responsibilities:

    • Assessing compliance with current standards, norms, and regulations (GDPR, DORA, PCI DSS, LPM, etc.) to meet legal and regulatory obligations.
    • Defining threat scenarios and developing an action plan for remediation to correct identified vulnerabilities and strengthen the security posture.

    Environment: M365 Cloud, AI, Mainframe, Network.

    Methods: EBIOS RM, MITRE ATT&CK, ISO 27001, ISO 27005, LPM, DORA
    Risk Management EBIOS RM DORA ISO 27001 MITRE ATT&CK
  • CNAM - Devoteam
    CISO Assistant
    PUBLIC SECTOR
    March 2023 - September 2024 (1 year and 6 months)
    Context

    Accompanying the Dijon Data Center in securing privileged access and raising client awareness of risks and best practices.

    Responsibilities:

    • Planning and monitoring the SSH access security project for Linux administration flows, including access via Wallix.
    • Organizing collaborative meetings with system and network teams to raise awareness of access security issues.
    • Responding to client integration requests on WALLIX, with L1 and L2 support.
    • Leading follow-up sessions.
    • Writing operational procedures.
    • Reporting in the steering committee.
    Environment: Wallix
    CISO Support PAM Wallix Bastion Cybersecurity Awareness Project Management
  • L'Oréal - Devoteam
    Threat Vulnerability Project Manager EMEA Zone
    LOGISTICS AND SUPPLY CHAIN
    May 2022 - March 2023 (10 months)
    Context
    Managing the remediation of critical vulnerabilities on EMEA servers, including defining the action plan, prioritizing risks, and coordinating technical and business teams.

    Responsibilities:

    • Planning vulnerability scan campaigns
    • Analyzing scan reports and prioritizing vulnerabilities
    • Defining an action plan with the various remediation stakeholders
    • Monitoring remediation efforts
    • Improving SLAs for middleware and databases
    • Continuous improvement of monitoring processes with IT owners and suppliers
    • Reporting to the Infrastructure team
    • Significant reduction in vulnerabilities in the Europe & Middle East region
    • Industrializing remediation tracking
    • Enhancing the service offering with suppliers

    Deliverables: Remediation reports, R7 report analysis, Vulnerability treatment plan per infrastructure manager.

    Technical Environment: Excel, Power BI, Rapid7
    Vulnerability Management Project Management Rapid7 Microsoft Power BI Data Analysis

Recommendations

Be the first to recommend Ghita

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Engineer in Information System Security
    ENSIAS Morocco
    2016
    Ingénieur en sécurité des systèmes d'information
  • Master 2 Management and Strategy of Information Systems
    IAE
    2018
    Master 2 management et stratégie des SI

Skill set

Categories