You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Oualid Ben YahiaOB

Oualid Ben Yahia

Senior security consultant

€778/day
Montreal, CA
15+ years

Average response time: 1 hour

About Oualid

Senior Cybersecurity Consultant | Cloud Security Architect | ISO 27001 Lead Auditor

14+ years of experience supporting financial institutions and large enterprises in Cyber Risk Management, Security Architecture, Cloud Security, Governance, Risk & Compliance (GRC), Vulnerability Management, and Threat Modeling. Extensive experience in banking, insurance, and regulated environments.
  • English

    Native or bilingual

  • French

    Native or bilingual

Remote only
Primarily works remotely

Experience

  • BNP Paribas,
    Senior security consultant
    April 2026 - Today (2 months)
    Montreal, QC, Canada
    •Participate in the SWIFT Customer Security Programme (CSP) assessment and compliance initiatives, ensuring alignment with SWIFT security controls and industry best practices.
    • Perform security risk assessments and vulnerability analysis using MITRE ATT&CK, CAPEC and MITRE D3FEND frameworks to identify threat scenarios and recommend mitigation strategies.
    •Contribute to the continuous improvement of the enterprise vulnerability management program by assessing security weaknesses, prioritizing remediation activities and tracking risk reduction initiatives.
    •Collaborate with cybersecurity, infrastructure and application teams to evaluate security controls and strengthen the organization's security posture.
    •Support governance, risk and compliance activities by providing security recommendations aligned with financial industry standards and regulatory requirements.
    Vulnerability Management Security Risk Assessment MITRE ATT&CK Cyber Risk Management Security Architecture
  • Morgan Stanley,
    Senior cloud security architect
    March 2022 - March 2025 (3 years)
    Montreal, QC, Canada
    • Led cloud security architecture reviews for enterprise applications, SaaS platforms and cloud integration initiatives across AWS and Azure environments.
    • Conducted security assessments of applications, systems and cloud platforms to validate security controls, identify security gaps and ensure compliance with internal security standards.
    • Performed threat and risk assessments, prioritizing security findings based on business impact, likelihood and regulatory requirements.
    • Collaborated with solution architects, engineering teams and business stakeholders to design secure cloud solutions and integrate security requirements into the project lifecycle.
    • Reviewed security blueprints, reference architectures and technical designs to ensure alignment with security best practices and enterprise security standards.
    • Identified potential security threats, attack vectors and architectural weaknesses across cloud-native and hybrid environments, recommending appropriate mitigation strategies.
    • Provided security guidance on identity and access management, data protection, network security, encryption and cloud governance controls.
    • Supported security governance and risk management initiatives by translating technical security risks into actionable business recommendations.
    Cyber Risk Management Cloud Security Cloud & IAM Threat Assessment
  • National Bank of Canada,
    Senior Cyber Security Advisor
    June 2021 - March 2022 (9 months)
    Montreal, QC, Canada
    • • Ensure that risk considerations are improved at each phase of the development and deployment life cycle of a system
    • • Evaluate the posture in terms of risk of one or more business units;
    • • Proactively propose solutions to reduce the risk of future breaches;
    • • Produce, maintain and communicate indicators (progress, performance, risk)
    Cyber Risk Management Security Governance Application Security Secure SDLC GRC

Recommendations

Be the first to recommend Oualid

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Bachelor engineering
    École de technologie supérieure (ÉTS)
    2014
    Bachelor engineering
  • College degree in network and security
    Bois de Boulogne
    2011
    College degree in network and security

Certifications

  • ITIL Foundation
    EXIN
    2015
  • ISO/IEC 27001 Lead Implementer
    PECB
    2016

Categories