You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Olin Burel T.OB

Olin Burel T.

Cybersecurity Expert

€800/day
Paris, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Olin Burel

Passionate about cybersecurity with over 7 years of experience, my adaptability and teamwork skills have allowed me to carry out varied missions and acquire a diverse range of skills in cybersecurity.
I offer my clients the following services:

Identity & Active Directory Security
- AD audit and hardening support
- Deployment and operation of Defender for Identity, Crowdstrike Identity Threat Protection
- Entra ID and Zero Trust Security
- Active Directory penetration testing and remediation

Operational Security
- Security incident detection and response
- Administration of security solutions (EDR, XDR, NDR, Firewall, Bastion)
- Cloud security posture improvement
- System and infrastructure audit and hardening
- Vulnerability management: monitoring, scan contextualization, and remediation tracking
- Security awareness (Phishing campaign followed by user training)

Cyber Project Management
- Penetration test management and remediation tracking
- Needs scoping, POC, and solution deployment
- ISO27001, PCI-DSS, SWIFT-CSP certification and compliance maintenance
- Security needs analysis and solution proposal
- Cybersecurity project management
- Penetration testing

Governance Risk & Compliance
- ISO27001, PCI DSS certification acquisition and maintenance
- Risk analysis
- Audit preparation, non-compliance handling, and continuous improvement
- Supplier security (Security assurance plan analysis)

Holding certifications: ISO27001 Lead Implementor, ISO27005 Risk Manager, Comptia Cysa+, Comptia Security+, AWS Solutions Architect Associate, AWS Certified Security Specialty

I am one of those who believe that knowledge sharing is the best way to learn more.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • Pathé
    Cybersecurity Consultant
    ENTERTAINMENT AND LEISURE
    June 2024 - Today (2 years and 2 months)
    Paris, France
    Pathe is an international environment consisting of a part of desktop, server, and an OT retail part. An infrastructure that is 80% Cloud, mainly AWS, and a Microsoft 365 environment.

    Active Directory and Identity Security
    • Active Directory Hardening: Audit + Recommendation Follow-up
    • Perform internal penetration tests (Active Directory)
    • Ensure Remote Access Security
    • Secure Entra ID P2 cloud identities
    • Implement and maintain Entra conditional access rules (Zero Trust)
    • Implement PIM (Privileged Identity Management) Entra for administrators
    • Implement Crowdstrike ITP prevention and response policies
    Cloud Security
    • Ensure AWS security best practices are applied
    • Lead the AWS Security Health Improvement Program (SHIP)
    Project Management and Security
    • Lead bi-weekly infrastructure and security meetings with IT teams
    • Manage security solution acquisition and deployment projects
    • Draft security opinions upon request
    Operational Security
    • Perform Active Directory red team operations
    • Participate in incident response reported by the SOC service
    • Manage vulnerabilities (contextualization and remediation tracking)
    • Administer security tools EDR, Defender XDR, NDR
    Results
    • Implementation of MFA and named accounts for service providers
    • Improvement of Active Directory security posture
    • Migration from Crowdstrike EDR to Microsoft MDE: 1300 workstations
    • Deployment of the Darktrace NDR tool
    • Improvement of Microsoft Security Score from 39 to 60%
    • Implementation of non-phishable MFA for Entra Admins
    Technical Environment
    Darktrace, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, AWS, AWS, Crowdstrike EDR, Crowdstrike ITP, Confluence, Jira, Sentinel
    Active Directory Security EDR Microsoft Entra ID SecOps ISP
  • Davidson Consulting
    Cybersecurity Engineer - Operational Security Manager
    DIGITAL AND IT
    April 2022 - June 2024 (2 years and 2 months)
    Boulogne-Billancourt, France
    Key Achievements
    • Led the SOC outsourcing project: needs scoping, provider selection, transition, and MSSP relationship supervision.
    • End-to-end acquisition and deployment of an EDR solution (SentinelOne): needs assessment, POC, solution choice, deployment across the park.
    • Renewal of ISO27001 certification
    Governance & Compliance (ISO 27001)
    • Ensure continuous compliance of the ISMS: documentation review, indicator tracking,
    • Keep the risk map up to date
    • Participate in defining and tracking the organization's security roadmap.
    • Participate in security project management
    SecOps & Hardening

    - Administer EDR, SIEM, vulnerability scanner (Outpost24), and firewall/IPS/IDS (Fortigate) solutions
    - Translate security policies into technical configurations on security tools
    - Define and apply network security filtering rules.
    - Formulate hardening recommendations for systems and infrastructures
    - Integrated into application and infrastructure projects from the design phase (Security By Design)

    Detection & Response (SOC/SIEM)
    • Define and implement SIEM detection rules and dashboards (Logpoint).
    • Investigate and remediate security alerts
    • Write SOAR playbooks to automate incident responses and reduce processing time.

    Vulnerability Management

    - Lead the complete vulnerability management cycle (monitoring, scans, criticality assessment, remediation planning and tracking) with Outpost24.
    - Lead security meetings with infrastructure, network, developer, and business teams

    Awareness
    Implementation of user awareness, phishing simulation via Gophish

    Technical Environment
    SentinelOne, Logpoint, Active Directory, Fortigate, Office 365, Outpost24, Redmine, Kali linux, Gophish
    ISO 27001 Project Management EDR SecOps GRC
  • Afriland First Bank
    Cybersecurity Engineer
    BANKING AND INSURANCE
    October 2018 - September 2021 (2 years and 11 months)
    Yaoundé, Cameroon
    Afriland First Bank is the leading Cameroonian Bank and is present in 13 African countries. I joined the security team as a cybersecurity engineer to focus on cybersecurity in its digital service transformation process.

    Vulnerability/Incident Management:
    • Plan and execute vulnerability scans (PCI-DSS ASV Scan) Contextualize, prioritize vulnerabilities and assign for remediation
    • Monitor remediations (Patching, version upgrades, reconfiguration...) Propose remediation solutions to business units
    • Monitor vulnerabilities
    Pentest / Security Testing:
    • Manage penetration tests carried out by external providers and track remediations
    • Perform internal application penetration tests according to OWASP Top 10 Produce the report
    • Follow up on the implementation of fixes
    Project
    • Benchmark security solutions and perform POCs
    Some results
    PAM Vulnerability Management PenTest incident response Active Directory Security

Recommendations

Be the first to recommend Olin Burel

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Skill set

Categories