You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mourad LeslousML

Mourad Leslous

Cybersecurity Consultant | PhD | CISSP | CISM

€840/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Mourad

Looking for an experienced consultant in cybersecurity, GRC, and project management?
Do you want to bring your IT system into compliance?

I am an expert in cybersecurity with several years of experience. I have contributed to and managed strategic cybersecurity projects to protect critical infrastructures in multicultural environments, bringing clear communication and a collaborative spirit. Holder of a PhD in cybersecurity and certified CISSP, CISM, and
ISO 27001 Lead Implementer, my expertise covers the entire security cycle, from risk assessment to the implementation of robust security policies. I have worked for companies with major strategic stakes such as EDF and Enedis.

I also place great importance on transparency with my clients. I send regular reports to my clients on all tasks performed.

I can assist you with:
- Managing your projects
- Implementing your security program
- Drafting your security policy
- Drafting your security guidelines
- Auditing your IT system
- Bringing your IT system into compliance (ISO 27001)
- Performing risk analyses (ISO 27005, EBIOS RM)
- Raising awareness among your teams and managers about cybersecurity

Shall we discuss your project?
Contact me directly on the platform.
  • French

    Native or bilingual

  • English

    Native or bilingual

Can work on-site
Paris (up to 20km)

Experience

  • BOUYGUES TELECOM
    Project Security Manager
    TELECOMMUNICATIONS
    March 2025 - Today (1 year and 3 months)
    Paris, France
    Context:
    Security mission for Bouygues Telecom's connected products and services (TV, Bbox, repeaters, application platforms, mobile applications)

    Responsibilities and achievements:

    - Integration of security from the design phase to production, including development, while ensuring the maintenance in operational condition (MCS) of deployed solutions.

    - Performing risk analyses (EBIOS RM methodology) and defining security requirements from the design phase.

    - Monitoring security audits (code, architecture, penetration, compliance) and supporting teams in implementing protection measures.

    - Monitoring vulnerabilities and coordinating remediation plans with stakeholders.

    - Participation in regulatory compliance (GDPR, RED Cyber) and preparation of certification files.

    - Drafting security deliverables: risk analyses, GDPR sheets, audit reports, security assessments.

    - Cross-functional collaboration with development teams, integrators, legal department, DPO team, business and IT project management, external partners, and managers.

    - Contribution to cybersecurity awareness, particularly by simplifying technical subjects for non-specialist audiences.
    Gestion des risques Gouvernance Audit Audit de sécurité EBIOS RM Gestion des vulnérabilités RGPD Sensibilisation à la cybersécurité
  • EDF
    Cybersecurity Expert
    ENERGY AND UTILITIES
    June 2019 - December 2024 (5 years and 7 months)
    Paris, France
    Cyber Risk Management
    • Leading risk analyses with the Ebios RM method
    • Identifying solutions to cover identified cyber risks
    • Security assessment of industrial control systems


    Governance
    • Cyber risk analysis (ISO 27001 and IEC 62443)
    • Implementation, evaluation, and updating of company security guidelines
    • Drafting cybersecurity requirements for tenders / RFPs
    • Assisting clients in selecting suppliers according to company standards


    Cybersecurity Project Management
    • Identifying and formalizing client needs
    • Designing cybersecurity deliverables with stakeholders
    • Planning and budget management
    • Preparing and presenting the cyber activity program
    • Communication and reporting to stakeholders

    Team Coordination
    • Coordinating a team of 23 European partners within a European cyber project
    • Managing deliverable validation

    Cybersecurity Awareness
    • Raising awareness among project managers, managers, and decision-makers about the importance of cybersecurity for the company
    • Presenting cyberattacks on critical infrastructures

    Supervising doctoral theses
    • Supervising a doctoral thesis on cyber threats
    • Collaboration in research work with other companies

    Setting up a testbed to evaluate the security of IoT devices
    • Setting up the testbed strategy and planning activities
    • Defining the testbed's direction and exploring use cases

    Malware analysis and benchmarking of existing solutions
    • Study of commercial solutions to meet the company's needs for malware analysis

    Technical work
    • Assembling a file for ANSSI's CSPN qualification
    • Implementing cybersecurity requirements from specifications
    Pilotage de projets Analyse de risques Sensibilisation à la cybersécurité Conformité réglementaire ISO 27001 EBIOS RM Sécurité industrielle
  • Royal Holloway, Université de Londres
    Visiting Researcher
    RESEARCH
    January 2018 - April 2018 (4 months)
    Londres, United Kingdom
    Visit as part of my doctoral thesis at Royal Holloway, University of London to work on triggering Android malware using symbolic execution
    Analyse de malware Java Python

Recommendations

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Doctorat en cybersécurité
    Université de Rennes 1
    2018
    Titre : Highlighting and Executing Suspicious Paths in Android Malware
  • Formation entrepreneuriale
    EIT Digital
    2018
    Développement de la capacité d’innovation, de l’esprit d’entreprise et d’autres compétences commerciales : • Reconnaissance d’opportunités • Développement de business model • Croissance et récolte • Mobilité de 6 mois à Munich et Londres

Certifications

Skill set

Categories