About Olin Burel
French
Native or bilingual
English
Fluent
Experience
- PathéCybersecurity ConsultantENTERTAINMENT AND LEISUREJune 2024 - Today (2 years and 2 months)Paris, FrancePathe is an international environment consisting of a part of desktop, server, and an OT retail part. An infrastructure that is 80% Cloud, mainly AWS, and a Microsoft 365 environment.Active Directory and Identity Security
- Active Directory Hardening: Audit + Recommendation Follow-up
- Perform internal penetration tests (Active Directory)
- Ensure Remote Access Security
- Secure Entra ID P2 cloud identities
- Implement and maintain Entra conditional access rules (Zero Trust)
- Implement PIM (Privileged Identity Management) Entra for administrators
- Implement Crowdstrike ITP prevention and response policies
Cloud Security- Ensure AWS security best practices are applied
- Lead the AWS Security Health Improvement Program (SHIP)
Project Management and Security- Lead bi-weekly infrastructure and security meetings with IT teams
- Manage security solution acquisition and deployment projects
- Draft security opinions upon request
Operational Security- Perform Active Directory red team operations
- Participate in incident response reported by the SOC service
- Manage vulnerabilities (contextualization and remediation tracking)
- Administer security tools EDR, Defender XDR, NDR
Results- Implementation of MFA and named accounts for service providers
- Improvement of Active Directory security posture
- Migration from Crowdstrike EDR to Microsoft MDE: 1300 workstations
- Deployment of the Darktrace NDR tool
- Improvement of Microsoft Security Score from 39 to 60%
- Implementation of non-phishable MFA for Entra Admins
Technical EnvironmentDarktrace, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, AWS, AWS, Crowdstrike EDR, Crowdstrike ITP, Confluence, Jira, Sentinel - Davidson ConsultingCybersecurity Engineer - Operational Security ManagerDIGITAL AND ITApril 2022 - June 2024 (2 years and 2 months)Boulogne-Billancourt, FranceKey Achievements
- Led the SOC outsourcing project: needs scoping, provider selection, transition, and MSSP relationship supervision.
- End-to-end acquisition and deployment of an EDR solution (SentinelOne): needs assessment, POC, solution choice, deployment across the park.
- Renewal of ISO27001 certification
Governance & Compliance (ISO 27001)- Ensure continuous compliance of the ISMS: documentation review, indicator tracking,
- Keep the risk map up to date
- Participate in defining and tracking the organization's security roadmap.
- Participate in security project management
SecOps & Hardening- Administer EDR, SIEM, vulnerability scanner (Outpost24), and firewall/IPS/IDS (Fortigate) solutions- Translate security policies into technical configurations on security tools- Define and apply network security filtering rules.- Formulate hardening recommendations for systems and infrastructures- Integrated into application and infrastructure projects from the design phase (Security By Design)Detection & Response (SOC/SIEM)- Define and implement SIEM detection rules and dashboards (Logpoint).
- Investigate and remediate security alerts
- Write SOAR playbooks to automate incident responses and reduce processing time.
Vulnerability Management- Lead the complete vulnerability management cycle (monitoring, scans, criticality assessment, remediation planning and tracking) with Outpost24.- Lead security meetings with infrastructure, network, developer, and business teamsAwarenessImplementation of user awareness, phishing simulation via GophishTechnical EnvironmentSentinelOne, Logpoint, Active Directory, Fortigate, Office 365, Outpost24, Redmine, Kali linux, Gophish - Afriland First BankCybersecurity EngineerBANKING AND INSURANCEOctober 2018 - September 2021 (2 years and 11 months)Yaoundé, CameroonAfriland First Bank is the leading Cameroonian Bank and is present in 13 African countries. I joined the security team as a cybersecurity engineer to focus on cybersecurity in its digital service transformation process.Vulnerability/Incident Management:
- Plan and execute vulnerability scans (PCI-DSS ASV Scan) Contextualize, prioritize vulnerabilities and assign for remediation
- Monitor remediations (Patching, version upgrades, reconfiguration...) Propose remediation solutions to business units
- Monitor vulnerabilities
Pentest / Security Testing:- Manage penetration tests carried out by external providers and track remediations
- Perform internal application penetration tests according to OWASP Top 10 Produce the report
- Follow up on the implementation of fixes
Project- Benchmark security solutions and perform POCs
Some results
Recommendations
Be the first to recommend Olin Burel
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4