You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Reda GamouhRG

Reda Gamouh

CISSP - Cybersecurity Consultant

€700/day
Paris, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Reda

Senior Cybersecurity & IT Resilience Consultant
+6 years of experience in cybersecurity across various sectors (banking, telecom, transport, public sector).
I support your strategic projects with a pragmatic, results-oriented approach.
My expertise:

- CISO as a Service: Roadmap definition, IS Security Master Plan structuring, budget management and governance animation, etc...
- SecOps: cyber incident management, vulnerability/patching management, etc...
- SOC and Security Master Plan design: architecture, SLA/KPI, tenders, implementation management, etc...
- BCP/DRP & IT crisis management: BIA, RTO/RPO, backup plans (ransomware, data center), crisis management exercises
- IS Security Risk Analysis: EBIOS RM, ISO 27005, maturity assessments (NIST, etc...)
- Compliance: ISO 27001, RGS, GDPR, security policies, etc...
- Program Management: multi-project coordination, risk management, SPOC for strategic committees,
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • BearingPoint
    Senior Consultant - Cybersecurity
    CONSULTING AND AUDITS
    September 2021 - December 2025 (4 years and 3 months)
    Paris, France
    Over a dozen cybersecurity consulting missions for public and private entities (telecom, insurance, banking, transport/railway). Interventions covering governance, IS security strategy, SOC, SecOps, and business continuity, with a results-oriented and maturity-building approach.

    • Interim CISO – Public Sector: definition of the roadmap and IS Security Master Plan, budget management, governance animation. Vulnerability/patching management. Compliance reviews, risk analyses, and formalization of IS security policies.

    • SOC Sourcing & Master Plan – Telecom & Public Sector: scope definition, architecture, and target operating model. Definition of SLAs/KPIs and governance. Drafting specifications, contribution to the tender, bid analysis, and implementation management.

    • Program Manager – Insurance: management of a multi-project cyber program, structuring of strategic initiatives, proactive identification of risks and mitigation plans. SPOC for governance committees and group stakeholders.

    • SecOps Consultant – Transport/Railway: alert management and incident response coordination. EDR migration lead. Vulnerability management. Automation of Power BI dashboards via API integrations.

    • Business Continuity & IT Crisis Management – Public Sector: BIA, RTO/RPO definition, resilience assessment, recommendations. Formalization of DRP (data center loss, ransomware) and crisis management plan. Organization and simulation of failover/restoration tests.

    • CISO Support & EBIOS – Public Sector: maturity assessment, multi-year roadmap, operational security policies, committee animation, security integration methodology for projects. EBIOS analyses for RGS certification (5 IS).

    • Banking: maturity assessment based on NIST CSF/CMMI and 2-year roadmap.
    CISO Support BCP/DRP Cybersecurity Incident Management Cybersecurity ISO 27001
  • Crédit Agricole
    Risk Analyst
    BANKING AND INSURANCE
    August 2019 - September 2021 (2 years and 1 month)
    Grenoble, France
    - Development and management of the Business Continuity Plan and the IT Disaster Recovery Plan
    - Preparation and facilitation of cyber crisis management exercises.
    - IT risk mapping execution
    - Support to the Data Protection Officer (DPO) in managing GDPR compliance.
    Data Privacy Cybersecurity BCP/DRP Crisis Management IT Risk Management

Recommendations

Be the first to recommend Reda

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master in Information Systems Management
    Grenoble Ecole de Management

Certifications

  • ISO 27001 - Lead Implementer
    LSTI
    2024
  • ISO 22301 - Lead Implementer
    PECB
    2023

Skill set

Categories