You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Nassim KobeissyNK

Nassim Kobeissy

IAM Architect | IGA | Cybersecurity

€800/day
Paris, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Nassim

Looking for an IAM architect?
Want to improve your system security?
You are in the right place.

I am anIAM consultant / architectwith 10 years of experience in cybersecurity.
I specialize in identity management (IAM, CIAM, IGA).
I have worked in various sectors such as telecommunications, energy, IoT, and digital services.
I have collaborated with companies like Bouygues Télécom, EDF / Édelia–Datanumia, SFR, and Orange.

I can assist you with:
1) Implementation, audit, and redesign of IAM/CIAM/IGA solutions, including:
- Scoping
- Functional architecture
- Implementation

2) Evaluation, selection, and deployment of identity and access technologies:
- ForgeRock
- Ping
- Microsoft Entra ID (Azure AD)
- SailPoint
- APIGEE

3) Other elements:
- Review of IAM processes (business, HR, and IT) and optimization of secure digital journeys.
- Training on standards and best practices.

I also have knowledge of OpenID Connect, OAuth 2.0, SAML, Identity Federation, Zero Trust.
I also have experience with tools like: Markdown, Git, PlantUML, draw.io, Jira, Confluence.

I believe in transparency with my clients. I implement daily reporting via email to my manager.
I am committed to being rigorous in project management. As such, my clients have entrusted me with redesigns and tenders worth several million euros.

Do you have a project?
Contact me, I respond in less than 1 hour.

---
IAM architect, cybersecurity architect, IAM expert, functional architect, cyber architect, cyber security, cybersecurity, IAM, CIAM, IGA, IAG, cybersecurity expert, cybersecurity consultant
  • French

    Native or bilingual

  • English

    Native or bilingual

Can work on-site
Paris (up to 50km)

Experience

  • Bouygues Telecom
    IAM | IGA | Cybersecurity Functional Architect
    TELECOMMUNICATIONS
    November 2023 - Today (2 years and 7 months)
    Meudon, France
    Bouygues Telecom is a major telecommunications operator, a subsidiary of the Bouygues group. The company has over 27 million customers and approximately 8,000 employees.

    I joined the SI Transverse Architecture team to participate in the redesign and urbanization of IAM/CIAM/IGA solutions.
    The mission's objective: regulatory compliance and optimization of customer digital journeys.
    The team consisted of 50 functional architects with diverse skills.

    My responsibilities:
    - Redesign of password security (Argon2, ANSSI, CNIL)
    - Implementation of the onboarding process for interns and contractors (Process, SAP HR, SuccessFactors, SailPoint, Azure AD)
    - Implementation of the EUDIW POC (eIDAS 2.0)
    - Redesign and urbanization of the SI around digital identity (keycloak, AD, Azure AD, OIDC, OAuth 2.0)
    - Redesign of the B2B partner journey (Salesforce TABLEAU, forgerock, SAML2)
    - Redesign of role mining and recertification processes (SailPoint)
    - Scoping and functional design.
    - Facilitation of workshops.
    - Drafting of architecture documents.
    - Cost estimation and negotiation with partners.
    - Collaboration with business units, SI/enterprise architects, and development teams.

    Technical context: Identity and Access Management (IAM), CIAM, Active Directory, Azure AD, IGA, OAuth 2.0, SAML2.0, SSO, OpenID Connect (OIDC), Microsoft Entra ID, Multi-Factor Authentication MFA, cybersecurity, GDPR, Role-Based Access Control (RBAC), Secure by Design, Zero Trust Architecture (ZTA), Authentication Systems, Identity Federation, eIDAS 2.0, EUDIW, Identity Governance, IT Audit, Argon2, ANSSI, CNIL, Encryption, keycloak, SailPoint
    Gestion des identités et des accès (IAM) Organization Skills Cybersécurité IAM OAuth2
  • Bouygues Telecom
    IAM | IGA | Cybersecurity Functional Architect
    TELECOMMUNICATIONS
    February 2022 - November 2023 (1 year and 9 months)
    Meudon, France
    Bouygues Telecom is a major telecommunications operator, a subsidiary of the Bouygues group. The company has over 27 million customers and approximately 8,000 employees.

    I joined the CIAM & API Management Development team to lead a team responsible for exposing and securing APIs related to identity and authentication.
    The objective was to modernize the CIAM platform, strengthen communication security, and implement API Management best practices.

    The team consisted of functional architects, back-end developers, and security experts, working transversally.

    My responsibilities:
    - Leadership of the CIAM API Management Development team. The Development team is responsible for exposing APIs, identity, and API security.
    - Design, transverse architecture, process and customer data modeling.
    - API, authentication, and authorization architecture.
    - CIAM and API Management redesign (APIGEE, IBM DataPower, Forgerock).
    - Study and deployment of API Management solutions.
    - Best practices for API exposure and security.
    - Project and product roadmap.
    - Vendor relations.

    Technical context: CIAM, OAuth 2.0, SSO Single Sign-On, OpenID Connect (OIDC), cybersecurity, Authentication Protocols, GDPR, Authentication Systems, Identity Governance, SAML2.0, APIGEE, IBM DataPower, Forgerock
    Cybersécurité IAM CIAM API Architecture SI
  • Bouygues Telecom
    IAM | IGA | Cybersecurity Functional Architect
    TELECOMMUNICATIONS
    July 2018 - February 2022 (3 years and 7 months)
    Meudon-la-Forêt, 92360 Meudon, France
    I joined the "Transverse Studies and Master Plan" team within the "Service Platform" directorate to manage transverse projects and lead the master plan for CIAM and API Management solutions, aiming to modernize authentication platforms and service exposure.

    The team consisted of about ten FTEs interacting with marketing, partners, enterprise architects, and development teams.

    My responsibilities:
    - Leadership of the redesign study for service exposure and authentication platforms (APIGEE, ForgeRock, PING Identity).
    - Conducting an audit with a specialized company and coordinating with development teams.
    - Drafting the specifications and managing the tender for CIAM and API Management solutions.
    - Defining the master plan for exposure components and the Identity-Authentication platform.
    - Defining the target architecture and urbanization rules for identity and API Management.
    - Active technological watch on authentication standards and solutions.
    - Contribution to the transverse architecture of several strategic business projects.
    - Defining solutions around digital identity.
    - Modeling customer identity and redesigning Bouygues Telecom's transverse identity.
    - Interaction with marketing, partners, SI architects, enterprise architects, and development teams.

    Technical context: CIAM, OAuth 2.0, SSO, OpenID Connect (OIDC), MFA, cybersecurity, Authentication Protocols, GDPR, Secure by Design, Zero Trust Architecture (ZTA), Authentication Systems, Identity Federation, Identity Governance, IT Audit, ANSSI, CNIL, Encryption, SAML2.0, APIGEE, IBM DataPower, Forgerock, token exchange, OpenAPI, swagger, SOAP, REST, plantuml, draw.io, Jira, confluence, mTLS, TLS 1.2, TLS 1.3
    Cybersécurité API Architecture SI CIAM API Management

Recommendations

RH
TM
SB
+5
Reda Hafid and 7 other people have recommended Nassim

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Doctor of Philosophy (PhD), Computer and Information Sciences and Support Services
    Télécom SudParis
    2009
    Doctor of Philosophy (PhD), Computer and Information Sciences and Support Services
  • Master of Advanced Study, System, Networking, and LAN/WAN Management/ Manager
    Université Pierre et Marie Curie (Paris VI)
    2003
    Master of Advanced Study, System, Networking, and LAN/WAN Management/ Manager

Skill set

Categories