You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Hussein MecharaHM

Hussein Mechara

Security Expert

€750/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Hussein

Cybersecurity consultant, I have been supporting companies for 9 years in various technical areas: audits & pentests, cloud & hardening, Bug Bounty, secdevops, cryptography, implementation & maintenance of WAFs…

I hold the OSCP certification and have also passed and validated the ANSSI PASSI certifications for the roles of audit manager, penetration testing, and configuration audit.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • Harmonie Technologie
    Team Manager, Lead Auditor, Head of the Audit Team
    July 2020 - April 2022 (1 year and 10 months)
    75008, Paris, France
    As Team Manager at Harmonie Technologie, I led strategic initiatives within the Security Audit Business Unit, with a strong focus on team performance and client satisfaction. My key responsibilities included:

    - Enhancing and implementing security strategies to address evolving cyber risks and compliance needs.
    - Managing, mentoring, and supporting a team of 5 auditors consultant (senior, junior, and trainees) to ensure high-quality audit delivery and professional development.
    - Overseeing the full presales process, including responding to RFPs and designing customized security audit solutions for clients.
    - Coordinating and supervising a variety of information security assignments, consistently meeting project deadlines and quality standards.
    - Recruiting, onboarding, and training consultants to build a skilled and cohesive team.
    - Organizing team planning, monitoring project progress, and evaluating performance to achieve departmental goals.
    - Collecting and analyzing business and operational data to inform strategic decisions and drive continuous improvement.
    Security Management Security Audits Consulting Recruitment Pre-sales
  • Louis Vuitton,
    Cyber-Security Expert, Freelance, Lead of Security for Digital
    April 2022 - Today (4 years and 2 months)
    75002 Paris, France
    As a Cybersecurity Expert within the Digital Team, I played a pivotal role in strengthening the security posture of the organization across multiple domains. Over three years, my contributions included:

    - Conducting comprehensive Web and API application penetration tests and security reviews to proactively identify and remediate vulnerabilities.
    - Enhancing the Akamai security strategy and Web Application Firewall (WAF), leveraging advanced features such as WSA, API Security, API Request Restriction, PIM, and Bot Manager for optimal protection.
    - Collaborating closely with the SOC, integrating with Splunk, and improving detection capabilities through refined alerting and playbook automation.
    - Leading security hardening efforts for Salesforce components to ensure robust protection of critical business assets.
    - Supporting the management of the organization-wide Bug Bounty program for iOS, Android, and Web applications, including triage of reports, validation of fixes, reward allocation, and coordination of private Bug Bounty initiatives.
    - Advising and assisting developers to ensure the implementation of effective security fixes and secure coding practices.
    - Participating in and supporting live security events such as Bug Bounty Live and private online Bug Bounty sessions.
    - Maintaining the Digital Vulnerability Operational Center (VOC), overseeing a suite of vulnerability management tools (Pentest, Bug Bounty & VDP, Tenable/Nessus, Acunetix, etc.).
    - Providing crisis management support and guidance to developers and administrators during security incidents.
    - Assisting teams with the integration and optimization of security solutions, including Github Advanced Security, Okta, and CyberArk.
    - Conducting OSINT investigations and phishing campaigns
    WAF Hardening Cloud Security Security Audits Bug Bounty
  • Harmonie Technologie
    Penetration Tester Consultant
    October 2017 - July 2020 (2 years and 9 months)
    75008, Paris, France
    In my role as Security Consultant at HARMONIE TECHNOLOGIE, I was specialized in various Offensive Security roles :

    - Performing Infrastructure/Network penetration testing
    - Performing application security Penetration Testing on a wide range of Web Application technologies (Salesforce, AWS, Wordpress, J2EE, PHP, GCP, Azure...)
    - Performing Physical security penetration testing on specific devices (Mainframe, AS400, iOT, HSM, network device, Firewall, Wireless Access Point, Biometric devices...)
    - Performing Intern penetration testing & Configuration audit on Active Directory infrastructure
    - Configuration audit/analysis on several OS regarding CIS Benchmark & ANSSI guidelines (OS Linux & Windows, Firewall, WAF...)
    - Performing OSINT tasks & Phishing
    - Performing dedicated Wireless Penetration Testing
    - Communicating within the business and with clients, both orally and in writing (French & English)
    - Development of security challenges for events
    - Assisting with the tooling development (recon tools, automatize configuration audit, security report...)
    - Assisting with the development and growth of the internal lab function (Pass-cracking station, WEB servers for WEB exploit...)
    - Undertaking information security assignments on hardening
    PenTest Security Audits Configuration audit Cloud Security Cybersecurity

Recommendations

Be the first to recommend Hussein

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Offensive Security Certified Professional (OSCP)
    2019
    Offensive Security Certified Professional (OSCP)
  • Akamai Web Application & API Training
    Akamai Web Application & API Training

Skill set

Categories