You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Karim EddrhourhiKE

Karim Eddrhourhi

Senior QA & Cybersecurity Consultant — Automation

€900/day
Genève, CH
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Karim

Senior Consultant in Test Automation, QA, and Cybersecurity, I work on high-stakes projects where quality and security are non-negotiable.

My differentiator: a rare dual expertise — software quality and cybersecurity — that allows you to secure your deliverables and accelerate your delivery without sacrificing security.

What I bring concretely:

▸ Test Automation — Design and deployment of tailor-made frameworks (Selenium, Playwright, Postman, Robot Framework), integrated into your CI/CD pipelines. Result: -40% on regression cycles, defect escape rate < 3%.

▸ QA Strategy & Test Lead — Test plans, quality gates, decision-oriented KPI reporting. 500+ test cases deployed at Richemont on a global platform.

▸ Application Security & GRC — ISO 27001 audit, NIS2/GDPR compliance, risk analysis, penetration testing, CISO support. Certified CISM, CISA, ISO 27001 LA, OSCP.

▸ QA/CI-CD Optimization — DevSecOps integration, automation of quality controls, reduction of technical debt.

Based in Geneva. Available remotely or on-site in Switzerland.
  • French

    Native or bilingual

  • English

    Native or bilingual

Can work on-site
Genève (up to 50km)

Experience

  • SWORD GROUP
    Senior Test Lead Consultant – QA Automation
    May 2022 - November 2025 (3 years and 6 months)
    Geneva, Switzerland
    Responsible for the quality strategy and test automation of the Client Care Platform (CCP) — a blockchain solution (Polygon) deployed for 7 Richemont Maisons across e-commerce and point-of-sale channels.
    Strategy
    ▸ Defined and maintained the global test strategy (functional, API, UI, performance, security) across the entire Richemont scope, reducing the critical defect escape rate to < 3% per sprint.
    ▸ Implemented quality gates (unit tests, coverage rate, static analysis via Snyk/GitGuardian) in GitLab CI/CD pipelines, systematically blocking any non-compliant delivery before production.
    ▸ Developed test plans, designed 500+ test cases, and produced campaign reports at the end of each cycle — with a summary of quality indicators for decision-makers.
  • NCC GROUP
    Information Security & Quality Assurance Consultant
    TELECOMMUNICATIONS
    November 2019 - February 2021 (1 year and 3 months)
    Cheltenham, England, United Kingdom
    GRC & Application Security Consultant – NCC Group (2019–2022)
    Consulting mission in cybersecurity and risk management for major European clients, as part of a GRC & AppSec practice.

    Key interventions:

    • Mapping of cyber risks for application, infrastructure, cloud, and third-party scopes — identification of exposure areas and prioritization of corrective actions.

    • Review of existing security controls (IAM, logging, patching, backups, SOC) and formulation of improvement recommendations aligned with ISO 27001 and NIST CSF.

    • Conducting TPRM (Third-Party Risk Management) assessments for critical suppliers — contractual analysis, security questionnaires, residual risk scoring.

    • Participation in internal and external audits — evidence collection, control testing, drafting findings and remediation plans.

    • Strategic support to the CISO: contribution to the security roadmap, reporting to management, advice on governance and overall risk posture.

    Technical & Regulatory Environment: ISO 27001 · NIST CSF · GDPR · PCI DSS · Tenable Nessus · Burp Suite · OWASP ZAP · Acunetix · AWS · IBM AppScan · HP WebInspect
  • COGNIZANT TECHNOLOGY SOLUTIONS
    Senior QA Manager
    June 2016 - April 2019 (2 years and 10 months)
    Widnes, England, United Kingdom
    Managed the entire quality assurance process for Vodafone's strategic mobile application — from requirements testing to production deployment — with a strong focus on performance, reliability, and business rule compliance.
    ▸ Designed and industrialized a Java/Selenium automation framework (Page Object Model) coupled with Katalon Studio, halving regression cycles and reducing manual testing load by 30%.
    ▸ Integrated BDD scenarios (Cucumber) and API contract tests (Rest Assured) into the Jenkins CI/CD chain — automated coverage > 90% of critical user journeys.
    ▸ Produced test plans, traceability matrices, and effort estimates for 12 simultaneous functional deliveries covering functional, API, UI, and performance aspects.
    ▸ Led bi-weekly quality review meetings with the CIO and sponsors (defect rates, coverage, execution velocity), enabling informed go/no-go decisions.
    ▸ Managed a QA team of 10 people in onshore/offshore mode across 3 time zones, with no engagement slippage over 2.5 years.
    🛠 Technologies: Selenium WebDriver (Java • Page Object Model) • Katalon Studio (Groovy • keyword-driven) • Cucumber (BDD) • Rest Assured • Jenkins • IntelliJ IDEA • Jira

Recommendations

Be the first to recommend Karim

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Computer Science Bachelor's Degree
    Université Paris 8
    2003
    Licence Informatique
  • University Diploma in Technology
    Université Paris 13
    2002
    DUT

Certifications

Categories