You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Hamza AyatHA

Hamza Ayat

Security Network Engineer

€667/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Hamza

Network and security engineer with over 15 years of experience. I have worked on several projects for the integration and operation of network/security equipment.
Dynamic and motivated, I have acquired autonomy and versatility through my professional experiences
necessary for this type of project, while fully mastering the technical concepts at my disposal.
  • French

    Native or bilingual

  • English

    Fluent

  • Arabic

    Native or bilingual

Can work on-site
Paris (up to 50km), Rosny-sous-Bois (up to 50km)

Experience

  • Apria RSA
    Security Network Engineer
    BANKING AND INSURANCE
    June 2024 - Today (2 years)
    Montreuil, France
    • Managed the complete deployment of the Tufin SecureTrack and SecureChange solution (TOS Aurora) in a multi-site environment
    ◦ Integrated Palo, Forti, Cisco, F5, and generic devices into Tufin.
    ◦ Maintenance in operational condition (MCO) of the Tufin solution
    ◦ Audited security rules (Identify, trace, and qualify security policy violations)
    ◦ Managed incidents with the editor
    ◦ Coordinated remediation of non-compliant rules.
    ◦ Maintained a high level of compliance with internal standards (ISO 27001, etc.)
    ◦ Defined Unified Security Policies (USP)
    ◦ Implemented SecureChange workflows to automate rule management
    ◦ Refined overly permissive rules using APG (Automated Policy Generator)
    • Provided L3 escalation for network and security incident management
    • Infrastructure MCO: Palo Alto, Fortigate, Cisco, F5, Prisma Access
    • Incident tracking with manufacturers.
    • Updated architecture diagrams.
    • Wrote technical documentation: DEX, DAT.
    • Technological watch.
  • Edenred
    Security Network Engineer
    BANKING AND INSURANCE
    November 2021 - June 2024 (2 years and 6 months)
    Issy-les-Moulineaux, France
    Private cloud hybridization project. Migration to Azure
    Deployed Wireless Controller 9800 and integrated APs, modified option 43 in DHCP. Created Flex Connect profiles configuration in WLC
    Migrated and updated WLC
    Deployed Catalyst 9300 and 9200 series cores and user switches via DNA
    Deployed NAC solution (Cisco ISE) Studied and migrated from MPLS to SDWAN Defined network standards.
    Implemented network evolutions
    Migrated Fortigate firewalls Implemented FortiManager and FortiAnalyzer
    Upgraded Checkpoint and Forti firewalls
    Implemented VPN between legacy and cloud.
    Configured Syslog Provided L3 escalation for network and security incident management.
    Implemented access rules and policies. (Implemented firewall rules by script)
    Configured F5 and Netscaler VIPs
    Virtualization via VMWare ESXI
    Technological watch.
  • Société générale
    Security Network Engineer
    May 2018 - November 2021 (3 years and 6 months)
    Frontline > L2 user diagnostics > F5, Checkpoint, Forti infrastructure MCO > Patching and upgrades > Incident tracking with manufacturer, troubleshooting - Integration - Replacement of FW in production - Checkpoint
    • Coordination - Partner/ISP internet line replacement
    • Integration - Replacement of FW in production - Checkpoint
    • FW equipment supervision (Shinken/Splunk)
    • L2 Security Frontline / L2 Security On-call
    • Partner VPN configuration
    • Checkpoint/Juniper/Fortigate FW operation
    • Network analysis, logs, routing (traffic tracing)
    • Production Change Management (HNO)
    .
    Tufin Automation
    • Topology analysis
    • Integrated devices and generics into Tufin
    • Updated interface configurations
    • Updated network diagrams

    Responsibilities:
    ◦ Incident resolution and L2 Security request processing
    ◦ Configuration, integration, and MCO of security equipment
    ◦ L2 incident troubleshooting (Entire connection chain)
    ◦ Checkpoint, Fortinet, F5, Cisco)
    ◦ Coded traffic rules on Checkpoint, Netasq, Squid Firewalls
    ◦ F5 LTM Module: Coded VIPs, Implemented iRules, certificates
    ◦ Created/Moved DMZ on F5
    ◦ Created/Moved DMZ on Checkpoint
    ◦ Upgraded F5 Reinstalled / Integrated F5
    ◦ Upgraded / Reinstalled / Firewall
    ◦ Wrote technical documentation

Recommendations

Be the first to recommend Hamza

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Checkpoint security R75 expert (CCSE)
    Fortinet FCNSA
    2015
    Checkpoint security R75 expert ( CCSE)
  • Checkpoint Multi Domain Security Management (CCMSE)
    2017
    checkpiont Multi domain Security Management (CCMSE )

Skill set

Categories