About Mohamed
French
Native or bilingual
English
Fluent
Arabic
Basic
Experience
- SodexoApplication Security ExpertFebruary 2024 - Today (2 years and 4 months)Issy-les-Moulineaux, FranceImplementation of application security governance:• Establishment of application security directives/policies• Implementation of application security risk audit plan• Establishment and facilitation of application security awareness and training programs• Implementation of an application security incident management plan• Ensuring compliance with security processes in projectsImplementation of operational application security management:• Implementation of a SAST & SCA code audit tool for development teams (Veracode)• Facilitate application security awareness and training sessions• Monitor the implementation of security requirements in projects• Implementation of a containerization tool (images and containers/runtime)• Implementation of an audit tool for Infrastructure as Code (IaC)• Perform project penetration tests for production release• Implement security mechanisms in "CI/CD" (Continuous Integration & Continuous Deployment)• Implementation of an API protection solution (Imperva, Akamai/Noname, Checkpoint)• Establish highly technical derivations of application security requirements
- Amundi Asset ManagementApplication Security ExpertFebruary 2021 - January 2024 (2 years and 11 months)Paris, France:• Definition and implementation of an awareness tool• Raise developer awareness on good development practices• Facilitate "CTF" (Capture The Flag) sessions with developersDesign:• Define and maintain security requirements (OWASP)• Participate in security-focused architectural discussions and choicesCode & Tests:• Implement security mechanisms in "CI/CD" (Continuous Integration & Continuous Deployment)• Integrate automatic Checkmarx scans (JenkinsJob)• Validation through a manual test plan according to project contextDeployments:• Regular scans of production sites (Acunetix, Nessus)• Manual penetration testingProject Monitoring:• Monitor the implementation of security recommendations (JIRA)Security Audit
- OPPIDACyber Security ConsultantMarch 2020 - November 2020 (8 months)Montigny-le-Bretonneux, FranceWindows and Linux configuration auditCIS Compliance Windows ServerCIS Compliance Debian LinuxComplementary manual auditAuthentication mechanism auditTwo-factor authenticationStrong authenticationSecurity audit on a Client-Server infrastructureArchitecture studyConfiguration studyAttack and traffic injectionRecovery of found informationSecurity audit on Web applicationsInformation gathering on the applicationAutomatic scan for entry point detectionComplementary manual scanPenetration and injection attemptsRecovery of found informationNumerous security audit missions for my clients
Recommendations
Be the first to recommend Mohamed
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Driver's license Bdu permis B
- CSPN (First Level Security Certification) Training.2020Formation CSPN (Certification de Sécurité de Premier Niveau).