You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Raphaël D.RD

Raphaël D.

Microsoft 365 & Identity Security Expert

€850/day
Issy-les-Moulineaux, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Raphaël

Senior engineer and Microsoft 365 & identity cybersecurity expert, I leverage 12 years of IT experience to assist CISOs and CISOs who want to secure their Microsoft environment without hindering their teams.

My playground: Active Directory, Entra ID, Microsoft Defender XDR (MDI, MDO, MDE, MDA), Conditional Access, PIM, ADFS, PKI. My last role: security & identity referent for a media group of 3,500 users, with an ANSSI maturity level increase from 1 to 5 during that period.

What I can concretely help you with:
- Hardening Active Directory and implementing the tiering model (Harden AD, authentication silos, privileged accounts)
- Microsoft 365 cross-tenant migrations in M&A contexts (up to 3,500 users)
- Microsoft 365 security: Defender XDR, Conditional Access, PIM, identity governance
- Multi-forest identity convergence (trusts, synchronization)
- AD audits (PingCastle, Oradad), post-pentest remediation plans
- Secure administration architecture: Yubikey MFA, bastion, password vault

Certified Microsoft SC-100 (Cybersecurity Architect Expert) and SC-300 (Identity and Access Administrator) in 2026.

I undertake missions of 4 to 12 months, in hybrid mode between remote work and on-site in the Île-de-France region.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Issy-les-Moulineaux (up to 50km)

Experience

  • RMC BFM
    Senior Engineer - Microsoft Security & Identities
    FILM AND AV
    April 2019 - Today (7 years and 2 months)
    Paris, France
    Role of referent security & identities engineer within the IT department of a media group with 3,500 users (hybrid Active Directory + Microsoft 365 environment, multi-entity).

    Key achievements:
    - Led the ANSSI maturity level increase from 1 to 5
    - Active Directory Tiering Model (Harden AD, authentication silos, privileged machines)
    - Secure administration architecture: Yubikey MFA, Teleport bastion, LockSelf vault
    - Microsoft 365 cross-tenant migrations in M&A context (up to 3,500 users)
    - Multi-forest identity convergence: domain trusts, account and password synchronization
    - AD redesign (tree, GPO, security groups), PKI redesign, ADFS and SSO deployment

    Microsoft 365 Security / Identity:
    - Defender XDR (MDI, MDO, MDE, MDA), Conditional Access, PIM, Microsoft Secure Score
    - Email security: DMARC, DKIM, SPF
    - Entra ID exploitation, Microsoft 365 tenant governance (Teams, Exchange Online, SharePoint Online)
    - AD audits via PingCastle and Oradad + post-pentest remediation plans

    Infrastructure & RUN:
    - Maintenance of identity infrastructures (AD, ADFS, PKI), security watch, version upgrades
    - PowerShell automation (HR sync, privileged account management)
    - Writing technical documentation and knowledge transfer
  • Owentis
    Microsoft Systems Engineer
    December 2017 - April 2019 (1 year and 4 months)
    Levallois-Perret, France
    Assignment within an IT consulting firm, environments Active Directory, Exchange, and Microsoft 365.

    Key achievements:
    - Migration and merger of multi-domain Active Directory
    - Complete Active Directory redesign (tree, GPO, security groups)
    - Migration from Exchange on-premise to Office 365
    - ADFS deployment and SSO federation
    - Deployment of an HPC infrastructure on Azure
    - Deployment of a Skype for Business 2015 infrastructure

    Automation:
    - PowerShell scripting, script signing via PKI

    Writing technical documentation.
  • LOCARCHIVES
    Systems Administrator / Operations Analyst
    May 2016 - November 2017 (1 year and 6 months)
    Administration of Microsoft infrastructures (Active Directory, Exchange, Office 365) then evolved to an operations analyst role (administrator coordination, level 3 support).

    Main activities:
    - Active Directory, Exchange, Office 365 administration
    - Level 2/3 user support
    - VMware virtualization
    - Deployment of the Centreon supervision infrastructure
    - Installation, migration, and configuration of Windows servers
    - Backup management (Netvault)
    - PowerShell automation for Exchange and Office 365 administration
    - Writing technical procedures

Recommendations

Be the first to recommend Raphaël

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master of Science (MSc) - Computer Science
    SUPINFO International University
    2018
  • Professional Bachelor's Degree - Administration and Security of Corporate Networks
    UVSQ - University of Versailles Saint-Quentin-en-Yvelines
    2016

Certifications

  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
    Microsoft
    2026
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
    Microsoft
    2026

Categories