About Jérémy
English
Conversational
French
Native or bilingual
Experience
- Crédit Agricole-GIPSecurity Network Design/Build ConsultantBANKING AND INSURANCEJanuary 2023 - Today (3 years and 5 months)Guyancourt, France• Support of the Product Owner for network security design/build activities• Study and definition of processes for improving firewall rule review• Study of internal risk analysis methodology and proposals for improvement.• Definition of security risks for the annual risk map within the infrastructure scope• Participation in security project proposals for the annual project plan• Participation in proxy POC• Study of the need and benefits of integrating NDR (Network Detection and Response)• Project for addressing WAF obsolescence, migrations to new WAF engines (4,800 URLs)• Hardening guide (proposal of definition models, creation of guides),
- Le Galec Groupement d'achats E.LeclercDeputy CISO ConsultantAGRICULTURENovember 2022 - January 2023 (2 months)Ivry-sur-Seine, France• Assistance to the CISO of the E.LECLERC Movement• Formalization of requirements and steering of security/GDPR action plans for central entities, regional entities, and stores.• Preparation of materials and facilitation for the movement's security correspondents.• Definition of technical and organizational security requirements.• Studies and proposals for technical solutions adapted to the movement's context (password vault, passwordless, DR/BCP construction).• Formalization of security principles in contracts with third-party providers.• Steering of existing action plans on cybersecurity/GDPR topics.• Contribution to the construction of a 2023 security action plan for the movement's entities to reduce cyber risks.
- SOCOTECSecurity Project Manager ConsultantREAL ESTATEJanuary 2021 - November 2022 (1 year and 10 months)Guyancourt, FranceImplementation of an IT security plan• Technological watch and foresight• Identification and assessment of security needs• Awareness and advice in considering cybersecurity among stakeholders (project managers, functional analysts, etc.)• Recommendation of technical means• Identification and risk treatment• Weekly vulnerability audit and management• Development and writing of security standards and definition of security requirements for CCTPs (Cybersecurity Policy / hardening guides / security questionnaires /...)• Writing procedures for L1/L2/L3:o security incident handling (procedures, playbooks, workflows)• Implementation of controls and reinforcement of security policies (CIS Linux, CIS Windows, CIS CSAT Self assessment)• Implementation of processes with monitoring and control (patching)• Configuration audit on various equipment and proposals for corrections and improvements: (Architecture / Secure Email Gateway / firewall / ...)• Implementation:o of EDR SentinelOne (6,000 endpoints)o of Proofpoint TRAPo of a Proofpoint PSAT POC (Phishing campaign and Training)o of an open-source phishing campaign simulator (GoPhish)o of an SMTPS relay with server hardeningo of Linux server hardening ruleso of Windows server hardening ruleso of a Wallix administration bastion POCo of a Cisco ISE POCo of a new PKI with application of server certificates, software signingo of Postman for API usageo of PHPIPAM (IPAM)o of firewall configuration templates and profiles (IPS, Application Control, DDOS, DNS, web filter, SSL interception)o of reverse proxyo of a log sink (ELK)o of securing communications (LDAPS, HTTPS, SFTP)• Writing:o Technical data sheets on Proofpoint IMD, TRAP, TAP, PhishAlarmo L3 architecture diagramo Monthly IT Dashboard presentations (KPI / Interpretations / Analysis / Recommendations)• Security Audito Configuration / Analysis / Exploitation / Reporting of vulnerability scanners like Tenable.sco Execution of scanners (Nmap, Netsparker) and interpretation of resultso Review of external audits with partners and functional analysts for interpretation, action definition, and prioritization of corrections.• Assistance with security incident analysiso Phishingo DDOSo Malwareo review of security alerts
Recommendations
Be the first to recommend Jérémy
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master 2 (DESS) Computer Science – Reliability and Safety of IT Systems (FSSI)Aix-Marseille University2008
Certifications
- ITIL FoundationCegos
- PRINCE2 FoundationCegos