About Nathan
French
Native or bilingual
English
Fluent
Experience
- EnedisCybersecurity Expert - Tech LeadENERGY AND UTILITIESSeptember 2025 - Today (9 months)Lyon, FranceInternalization within the same context with an expanded scope.Leading and scoping the implementation of SCA and dedicated security tools under the responsibility of project teams.Monitoring the implementation of SBOMs in the standard Cyclone DX format.Monitoring the implementation of regular dependency scans with OWASP Dependency-Track.R&D on AI usage.Integrating security from the IDE, ahead of CI chains, to offer personalized suggestions based on private and public repositories (NIST, OWASP, CIS…).Automating compliance tests and the search for bad practices through rigorously descriptive and customized instructions.Prescriptions on security topics related to communication chains (infrastructure, applications…) and all components that may interact within this context.Role of PSO for internal key management ceremonies.
- EPSIJury of DefenseEDUCATION AND E-LEARNINGJuly 2025 - July 2025Lyon, FranceJury for validating technical modules for BAC+4/5 (cloud and cybersecurity subjects) promotions.
- EnedisCybersecurity and DevSecOps Referent ConsultantENERGY AND UTILITIESNovember 2024 - September 2025 (10 months)Lyon, FranceConsultant in seconded employment.In the context of Enedis securing the communication chains of Linky meters, formerly the Linky program.Application Security / Product SecuritySecurity referent for a portfolio of 4 application and hardware projects in a secure zone for SIEs.End-to-end vulnerability and patch management: identification, prioritization, derogation management, remediation steering or risk reduction methods.Definition and dissemination of Security by Design practices (secure development, hardening, compliance with SSI policies) and prescription of needs according to requirements.Technical support for teams on security needs in BUILD, RUN, and mitigation plans.Steering of acceptance testing and security reviews to validate deliverable compliance.Participation in PI Planning and security coordination within a SAFe / Scrum framework.DevSecOpsSDLC security audits: source code, Git repositories, CI/CD pipelines, dependencies, SAST flows and results.Writing hardening guides and security requirements (e.g., Kubernetes offering in a secure zone).Developing tools and automating security controls in pipelines.Industrializing development cycle security (commit signing, SAST controls, compliance standards).Detection of exposed secrets (credential hunting / secret scanning) on repositories, servers, pipelines, and logs.Vulnerability monitoring and support for continuous improvement of security practices.
Recommendations
Be the first to recommend Nathan
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master of Engineering - MEngSUPINFOTitle: RNCP35284 - Expert in Information Systems Management Work-Study Program: DevOps Engineer at the Metropolis of Lyon, Architecture and Governance Division
- Bachelor of EngineeringSUPINFO2022Bachelor of Engineering - BE, Computer Engineering
Certifications
- HTB CPTS - Certified Penetration Testing Specialist HTBCERT-A8B59D242BHack The Box2024