About Renaud
- Support for implementing an S-SDLC
- Security by Design
- Security tooling for your CI/CD pipeline (SAST, DAST, SCA, secret detection)
- Training developers in secure development.
- Stress-testing your system or application through **offensive testing**.
- Support for **remediation**:
- Writingsecurity patchesfor your in-house developments.
- Writing security non-regression **tests**.
French
Native or bilingual
Spanish
Native or bilingual
English
Native or bilingual
Italian
Basic
Portuguese
Basic
Experience
- DoctolibSenior Product & Application Security EngineerHEALTH AND WELLNESSSeptember 2018 - May 2022 (3 years and 8 months)Paris, FranceWith the CISO, I laid the groundwork for the "Cybersecurity" entity at Doctolib, which now has over 20 cybersecurity experts.I notably contributed to:
- Empowering our teams in the design and construction of a secure-by-design and vulnerability-free product.
- Ensuring the privacy of our users' data.
- Building an S-SDLC for the Doctolib product
- Specifying security features with the product
- Performing threat modeling on our new project and new features
- Identifying, qualifying, and correcting vulnerabilities
- Ensuring security and confidentiality from the design stage on new projects
- Training developers in secure development.
- Pair programming with developers on sensitive features
- Working hand-in-hand with the Legal, Risk and Compliance, Engineering, and Product teams.
I was a key contributor regarding:- The recruitment and growth of the security team
- The ISO27001 certification process
- Spreading risk-based culture
- Implementing a fluid and efficient vulnerability management process
- British Telecom (BT)Ethical Hacking Team LeaderDIGITAL AND ITFebruary 2016 - September 2018 (2 years and 7 months)Île-de-France, FranceBT Ethical Hacking French Team Leader
- British Telecom (BT)Ethical HackerDIGITAL AND ITMarch 2011 - September 2018 (7 years and 6 months)Paris, France- Penetration tests (100+), mostly for banks, insurances, e-commerce websites- Secure source code reviews.- Secure configuration review.- Risk Assessments- Security Standard gap analysis- Application Security- Internal tools development and enhancement.- System administration (IDS, Firewall, Proxmox VE)
Recommendations
Be the first to recommend Renaud
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Engineering DegreeEPITA2010Diplôme d'Ingénieur
Certifications
- ISO 27001 Lead ImplementerLSTI2018
- CISSPISC22016