You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mudsor MasoodMM

Mudsor Masood

Cyber GRC Consultant

€750/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Mudsor

Cyber Consultant with varied skills:
- GRC - Risks (Risk Analyses, ISO 27005, EBIOS RM)
- Compliance (ISO 27001, ISO 27002; ISO 22301 ...)
- ISP - Introduction of Security in Projects
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km), Angers (up to 20km), Nantes (up to 20km), Tours (up to 20km), Le Mans (up to 20km)

Experience

  • GIE AXA
    ISP Consultant
    BANKING AND INSURANCE
    May 2023 - Today (3 years and 1 month)
    External consultant.

    Project 1: Maintain the application/systems perimeter of the GIE AXA at an adequate level in accordance with the Group's information security standards.
    Project 2: Provide security advice (technical architecture review, security risk analysis, DPIA, etc.) and assist Business Correspondents, DPOs, and IT throughout projects.
    Project 3: Ensure that the company adheres to security recommendations when entering into contracts with external suppliers and establishing service level agreements.
    Project 4: Ensure that the company's current and future applications comply with the Group's standards' risk-based approach.
    Project 5: Ensure that GIE AXA and all internal suppliers correctly implement follow-up actions to continuously improve network security.
    Project 6: Integrate security into the development and project lifecycle to improve and optimize the security policy.
    Project 7: Contribute to advancing a vision and formalizing a policy to address cloud security.
    Project 8: Ensure that project, infrastructure, application, and third-party risks are systematically and correctly tested.
    Project 9: Ensure operational security by implementing IT processes, upgrading existing processes, and documenting both.
    Project 10: Evaluate, challenge, and review the criticality of vulnerabilities to provide risk-based information usable by business stakeholders (DPO, workplace): Ensure the implementation of follow-up on post-evaluation remediation actions.
    Project 11 Support project and business stakeholders on identified deficiencies and necessary remediation actions Projects: Cloud Security, Matignon Premises.
    ISO 27001 ISO 27005
  • AXA France
    Risk Management Consultant
    BANKING AND INSURANCE
    September 2022 - April 2023 (7 months)
    External consultant for the implementation of EBIOS RM in a regulatory context.
    Risk analyses, reporting, and risk lifecycle management.

    Project 1: EBIOS RM risk analyses.
    Project 2: Provide "expertise" on the method.
    EBIOS RM ISO 27001 Cybersecurity ISO 27005
  • Veolia
    Operational Cybersecurity Engineer
    ENVIRONMENTAL
    July 2021 - January 2022 (6 months)
    93300 Aubervilliers, France
    External consultant within Veolia's group entity to assist the team in supporting CISOs in France and internationally.
    Project management, EDR deployment, cyber watch.

    Project 1: CISO Assistance
    Project 2: EDR
    Project 3: Security Lab Tests
    Project 4: Antivirus
    Project 5: CTI
    Projects 6 & 7: Vulnerability Management
    Project 8: Incident Response
    Project 9: Data Leak – GitHub
    Project 10: CTI Reports
    Cybersecurity

Recommendations

Be the first to recommend Mudsor

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Expert in Digital Security (Master's degree)
    ESD academy
    2020
  • Systems and Networks Administrator (Bachelor's degree)
    ENI Ecole
    2019

Certifications

  • ISO/IEC 27005 Risk Manager
    PECB
    2022
    Risk Assessment Risk Management Risk analysis Risk Management
  • ISO/IEC 27001 Lead Implementer
    PECB
    2022
    ISMS Cybersecurity Security Audit Security Policy Information Security

Skill set

Categories