You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mehdi HannaiziMH

Mehdi Hannaizi

Cybersecurity Expert | IT Architecture

€730/day
Lyon, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Mehdi

Cybersecurity Expert | IT Architecture

Is your IT system truly protected?

I intervene to secure your critical applications, design robust security architectures, and train your teams in best practices. From penetration testing to designing resilient architectures, I cover the entire security chain.

Cybersecurity expertin application security and IT architecture with +15 years of experience. My specialty: pragmatic security architectures built on the best Open Source components.Engineerfrom INSA Lyon.

Recent Projects

E-commerce platform- Protection system filtering 100% of attacks. 95% savings compared to a redesign.
Medical application- Multi-layer architecture (**WAF**, strong authentication, filtering). Attack surface reduced by 98%.
Compromised institutional website- Forensics, remediation, sustainable defense. Restored in 48 hours, zero recurrence.
Cybersecurity training- Awareness for management and technical teams onOWASPbest practices.

My Architecture-Oriented Cybersecurity Approach

Offensive Security: penetration testing, vulnerability assessment, code review, forensics
Security Architecture: **WAF**, proxy, strong authentication, Zero Trust, segmentation, hardening
IT Architecture: urbanization, resilient architectures, modernization, Open Source
Training: cybersecurity awareness, secure coding,OWASP

Services:Application Security | Penetration Testing | Security Architecture | IT System Urbanization | Cybersecurity Training | GDPR Compliance | Remediation Plan | IT Director Support

Why work with me?
✓ Dual expertise in cybersecurity + IT architecture
✓ Pragmatic approach: the effective solution, not the most expensive
✓ Measurable and quantified results
15+ years in critical environments

→ Contact me to discuss your needs.Quick response (within 1 hour).
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Lyon (up to 50km), Lille (up to 50km), Paris (up to 50km), Marseille (up to 50km), Toulouse (up to 50km)

Experience

  • M42 CONSULTING
    Cybersecurity Expert & IT Architecture
    CONSULTING AND AUDITS
    November 2019 - Today (6 years and 9 months)
    Lyon, France
    → Objective:
    Protect critical information systems by auditing their security and designing resilient architectures capable of withstanding current threats.

    → Challenges:
    - Exposed applications with undetected flaws
    - Architectures designed without security considerations
    - IT Directors facing strategic technical choices without visibility into real risks
    - Need for immediate security without interrupting business operations

    → Expertise Mobilized
    Code Audit · Penetration Testing · WAF · Reverse Proxy · Strong Authentication · Zero Trust Architecture ·IT System Urbanization· Open Source · Linux

    → My Missions
    - **Comprehensive Application Security Audit**: source code, infrastructure, architecture
    - Penetration testing and vulnerability assessment
    - Design and deployment of protection architectures (WAF, filtering proxy, security dome, segmentation)
    -Post-incident forensic analysis and remediation plan
    - Design of resilient and secure-by-design IT architectures
    - Urbanization and rationalization of information systems
    - Development of security strategies and budgeted roadmaps
    - Support forIT Directorsin their architecture and security decisions

    → Results: dozens of audited and secured systems, **50% to 95% savings on remediation**, **zero incidents post-intervention**, architectures designed to last.
    Cybersecurity Application Security Audit Pentesting WAF IT System Urbanization
  • M42 CONSULTING
    Cybersecurity Trainer
    CONSULTING AND AUDITS
    November 2019 - Today (6 years and 9 months)
    Lyon, France
    → Objective: Transform teams into the first line of defense against cyber threats, from the executive committee to developers.

    → Challenges:
    - Unaware employees representing the primary attack surface
    - Traditional training that is too theoretical and quickly forgotten
    - Need for sustainable and measurable behavioral changes

    → Approach
    Quick Awareness Sessions · Attack Simulations · Practical Workshops · Secure Coding Training ·OWASP

    → My Missions
    - Design and delivery of cybersecurity training for all levels
    - Quick awareness sessions tailored to the daily work of teams
    -Real attack simulations to instill good reflexes
    - Training in secure development (**OWASP**, best practices)
    -Impact measurement and post-training support

    → Results: **dozens of teams trained**, unanimously positive feedback, measurable reduction in risky behaviors.
    Cybersecurity Training Cybersecurity Training OWASP Cybersecurity Awareness
  • HB EMTEC
    Senior Developer / Code Security Referent
    SOFTWARE PUBLISHING
    June 2008 - November 2019 (11 years and 5 months)
    Lyon, France
    → Objective:Reduce the attack surface from the source codeand build a culture of application security within development teams.

    → Challenges:
    - Functional codebases that are exploitable
    - Vulnerabilities reaching production undetected
    - No security culture among developers

    → Technical Stack
    PHP · Java · Python · JavaScript · SQL · REST API · Linux

    → My Missions
    - Risk-oriented code audits and reviews (hundreds of codebases: web, **API**, scripts)
    - Identification and correction of critical flaws in developments compliant with standards
    -Definition of secure coding standards for the company
    - Implementation of sustainable application security practices
    - Skill development for development teams in security

    → Results: **hundreds of codebases audited and secured over 11 years**, **significant reduction in production vulnerabilities**, lasting security culture established.
    code audit Cybersecurity Web Application Security DevSecOps Risk and Vulnerability Assessment

Recommendations

Martin FerretMF
TD
PM
+1
Martin Ferret and 3 other people have recommended Mehdi

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Software Engineering and Development
    INSA de Lyon
    2011
    Ingénieur d'études et développement informatique

Skill set

Categories