About Mahmoud
French
Native or bilingual
English
Native or bilingual
Experience
- KPMGSenior SecOps EngineerCONSULTING AND AUDITSNovember 2024 - Today (1 year and 7 months)Courbevoie, FranceSecOps Engineer :
- Monitoring of IS security supervision services
- Client support in defining their operational security strategy (Organization, Technical IS Supervision)
- SOC incident analysis and response.
- Creation of detection rules on Azure Sentinel
- Security solution benchmarking
- Maintenance of detection matrix
- Implementation and architecture of Qualys
- Ensure vulnerability monitoring (via Qualys, Microsoft Defender, or pentest results): detection, qualification, action plan, patch management coordination.
- Implement and configure hardening measures on Windows and Linux systems
- Lead cross-functional security projects (hardening, security onboarding, technical evolutions)
- Implementation of Microsoft Defender: MDE, MDI, and MDC
- Participate in machine onboarding into security tools (EDR MDE, log management) and maintain asset inventory
- Identify trends, anomalies, correlations, or potential incidents
- Analyze information from internal sources (SOC, CTI, VOC)
- TF1 SACloud/SecOps EngineerPRESS AND MEDIAJuly 2023 - October 2024 (1 year and 3 months)Boulogne-Billancourt, FranceContext :Contribution to the implementation of Security best practicesMission :🔹 SecOps :
- Vulnerability detection and management using Tenable and CrowdStrike CSPM.
- Development of remediation action plans and follow-up with IT teams for vulnerability correction.
- Implementation of Zero Trust best practices and monitoring of critical access.
- Participation in security reviews to ensure effective remediation and prevent vulnerability exploitation.
- Management and Administration of Crowdstrike (Agent installation, IOC, IOA)
- Management of internal and external certificates (PKI).
- Incident and request response
- Development of the Patch Management process and reporting.
- Administration of identities and access (IAM, PIM) in Azure to ensure strict privilege control.
- AD, System Hardening
🔹 Collaboration with the SOC team and risk assessment- Monitoring of security alerts and incidents in collaboration with the SOC.
- Threat analysis and updating SIEM correlation rules for proactive detection.
- Participation in audits and risk assessments to identify areas for improvement in cybersecurity.
🔹 Hybrid infrastructure management and administration- Monitoring of VMware, Linux, and Windows environments.
- Server administration and virtualization management.
- Patch Management and update monitoring to ensure system stability and resilience.
🔹 Automation & DevSecOps- Automation of security policy deployments with Terraform.
- Securing CI/CD pipelines with Snyk to prevent vulnerability-related risks.
- Implementation of security policies integrated into the development cycle to ensure compliance from design.
Technical Environment :VMware, Windows, Linux, Acunetix, SCCM, DevOps, SecOps, Azure AD, PKI, EDR, Infrastructure, AD, Tanium, Tenable, SOC - Huawei Technologies FranceSenior Cloud EngineerTECHMarch 2022 - July 2023 (1 year and 4 months)Boulogne-Billancourt, FranceContext :Mission :Security :✓ PKI project for internal and external certificate management✓ Patch Management via SCCM✓ Vulnerability Management via Tenable✓ Contributes, in close collaboration with the CISO, to the application and evolution of cybersecurity rules for development teams✓ Regular evaluation of existing systems and proposals for improvements.Cloud Infrastructures :✓ Deploy and manage environments in the Cloud (AWS, Azure)✓ Ensure the security, performance, and evolution of infrastructures✓ Identify, analyze, and remediate vulnerabilities and issues in infrastructures and applications.DevSecOps :✓ Integrate security from the design phase via SonarQube & Acunetix✓ Automate security tests and vulnerability detection✓ Collaborate with security teams to ensure compliance✓ Support developers and monitor remediation of SAST and SCA vulnerabilitiesAdministration :✓ Windows and Linux System Administration✓ Deployment and administration of VMware environments✓ Automation of deployments via Powershell✓ Writing of Technical Design Documents, Test Plans, Low-Level DesignsTechnical Environment : VMware, Windows, Linux, Terraform, Jenkins, Acunetix, SCCM, DevOps, SecOps, Azure AD, Azure IaaS and PaaS.
Recommendations
Be the first to recommend Mahmoud
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- State Engineer in Telecoms and NetworksNational School of Applied Sciences2018Ingénieur d'état en Télécoms et Réseaux
Certifications
- Microsoft Certified: Azure Solutions Architect ExpertMicrosoft2021
- VMware Certified Professional – Data Center Virtualization 2019VMware2019