You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Joan Kevin Nomo BellaJK

Joan Kevin Nomo Bella

Cybersecurity Consultant

€450/day
Paris, FR
0-2 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Joan Kevin

Cybersecurity consultant specialized in Governance, Risk, and Compliance (GRC), with over 4 years of experience in supporting public and private organizations.

I work on IT audit missions, risk analysis and mapping, implementation and maintenance of ISMS aligned with ISO 27001, as well as the definition of security policies, procedures, and standards.

My expertise also covers user and management awareness, monitoring of security indicators (KPIs / KRIs), provider evaluation, and CISO support in regulated environments.

Certified ISO 27001 Lead Auditor, ISO 27005 Risk Manager, CySA+, and Security+, I combine a methodological, pragmatic, and consulting-oriented approach with a good understanding of technical challenges (threat detection, incident analysis, infrastructure security).

Available for GRC consulting missions, compliance audits, CISO support, cybersecurity awareness, and information security risk management.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • Capgemini
    Cybersecurity Auditor
    CONSULTING AND AUDITS
    October 2024 - November 2025 (1 year and 1 month)
    Capgemini France, Issy-les-Moulineaux, France
    Performed technical audits (MySQL, Windows, Linux, Karaf configurations) and organizational audits (ISO 27001, ANSSI guidelines). Wrote clear and structured audit reports, including findings and corrective recommendations. Participated in debriefings with business and IT teams, explaining cyber challenges. Technical preparation for PASSI (ANSSI) audit: hardening, security procedures, compliance.
    Risk Analysis and Management Internal Audit Cybersecurity Audit Vulnerability Management Cybersecurity Governance
  • Ministère des Mines et Industries et Développement Technologique
    IT Engineer
    January 2020 - January 2024 (4 years)
    Yaoundé, CE, Cameroon
    Set up and secured infrastructures (Active Directory, DHCP, DNS). Designed and implemented an internal BCP/DRP to ensure business continuity. Provided technical supervision and supported teams in adopting security measures. Contributed to reducing information security risks and improving security maturity. Formalized a cybersecurity awareness program.
    Cybersecurity Awareness Active Directory Organizational Resilience Operational Resilience IT Security
  • FEICOM
    IT Department Engineer
    January 2019 - October 2019 (9 months)
    Yaoundé, CE, Cameroon
    Administered and monitored the Active Directory and WSUS server. Evaluated the IT internal control system. Conducted IT system compliance audits and defined corrective action plans.
    Active Directory Compliance Internal Audit IT Security IT Strategy

Recommendations

Be the first to recommend Joan Kevin

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master in Cybersecurity and Management (GRC)
    Nexa Digital School
    2025
    Master en Cyber sécurité et Management (GRC)
  • Computer Engineering Degree
    3il Limoges
    2018
    Diplôme d'Ingénierie Informatique

Certifications

  • CompTIA Security+ : Cybersecurity Fundamentals, Risk Management, Network and System Security, Incident Response.
    CompTIA
    2025
    Knowledge of Information Security Standards and Best Practices Identity and Access Management (IAM) System and Endpoint Security Threat Identification and Analysis Network Security Risk Management Principles Security Incident Response Vulnerability Management User Awareness and Best Practices Security Controls and Protective Measures
  • ISO/IEC 27001:2022 Lead Auditor: ISMS audit conduction, compliance assessment, risk analysis, reporting, and corrective action follow-up.
    certiprof
    2024
    Communication and Results Reporting Identification and Qualification of Gaps Planning and Conducting ISMS Audits Follow-up of Corrective Actions Mastery of ISO/IEC 27001 Requirements Understanding the ISMS PDCA Cycle Assessment of Information Security Compliance and Maturity Writing Clear and Actionable Audit Reports Conducting Audit Interviews

Skill set

Categories