You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Sid Ahmed YousfiSA

Sid Ahmed Yousfi

CTO / Developer / Solution Integrator

€500/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Sid Ahmed

🚀 Profile

I am a passionate professional, at the crossroads of technology, strategy, and execution. With great autonomy, a sharp analytical mind, and a strong sense of responsibility, I invest myself fully to deliver solid, functional, and long-lasting products.

🧠 What sets me apart?

  • Practical intelligence: I understand quickly, I anticipate, I solve. I get to the bottom of things, without ever losing sight of the big picture.
  • A rare ability to move from strategy to execution: I define the architecture, I code, I deploy, I automate.
  • An entrepreneurial attitude: I take care of what I build as if it were my own. I don't shy away from complexity, I tame it.

💼 What I deliver:

  • Robust products, designed for real-world use.
  • Technical decisions based on experience, not trends.
  • Total autonomy: I don't wait to be told what to do, I propose, I do, I deliver.

🙌 Why me?

If you are looking for someone brilliant, resourceful, reliable, who codes with a business vision and truly delivers, I am probably the profile you need.
  • French

    Native or bilingual

  • English

    Native or bilingual

  • Arabic

    Native or bilingual

Remote only
Primarily works remotely

Experience

  • The Flex
    Chief Information Technology Officer
    HOSPITALITY
    September 2023 - Today (2 years and 9 months)
    Paris, France

    🏗️ Definition of technological strategy

    • Development and management of the overall IT strategy, aligned with the company's business and operational objectives.
    • Acceleration of digital transformation through relevant and sustainable technological choices.
    • IT budget management, technical priority arbitration, and support for strategic decision-making.

    🧠 Architecture & technical development

    • Direct contribution to the development of tailor-made solutions, particularly back-end (APIs, automation, internal systems).
    • Involvement in software and cloud architecture: design, technical stack choices, security by design.
    • Development of critical modules related to operations (booking management, API integrations, internal dashboards…).

    👥 Leadership & technical management

    • Supervision of multidisciplinary teams: development, infrastructure, data, support, and cybersecurity.
    • Implementation of agile rituals (Scrum, Kanban), product roadmap management, workflow documentation.
    • Recruitment, skill development, and retention of tech talent around a common vision.

    🚀 Innovation & continuous modernization

    • Permanent technological watch and experimentation with new approaches (applied AI, intelligent automation, microservices…).
    • Launch of POCs and deployment of new internal solutions to optimize operational efficiency.
    • Culture of documentation, IT performance measurement (KPIs), and constant feedback.
    Node.js Coding Full-stack Development FastAPI Artificial Intelligence
  • EY
    Cyber Security Consultant / Pentester
    PUBLIC SECTOR
    November 2021 - September 2023 (1 year and 10 months)
    Paris, France

    🔍 Execution of over 150 penetration tests

    • Conducting pentests on various scopes: web applications, REST/SOAP APIs, internal/external infrastructures, Active Directory, cloud environments (AWS, Azure).
    • Rigorous application of recognized methodologies: OWASP, PTES, OSSTMM.
    • Development of comprehensive and actionable reports, with concrete attack scenarios, risk assessment, and adapted technical recommendations.

    ⚠️ +2000 vulnerabilities identified and corrected

    • Detection of critical vulnerabilities: SQL injections, XSS, RCE, IDOR, CSRF, privilege escalation, misconfigurations, etc.
    • Support for technical teams in understanding, reproducing, and correcting vulnerabilities.
    • Performing re-tests to validate implemented remediations.

    🛠️ Mastery of tools and automation

    • Tools: Burp Suite Pro, Nmap, Nessus, Metasploit, SQLmap, Gobuster, Hydra, etc.
    • Development of custom scripts in Python, Bash, or PowerShell to automate certain exploitation or reconnaissance tasks.
    • Use of lab platforms (Hack The Box, TryHackMe) to strengthen and validate internal approaches.

    🎓 Awareness & continuous improvement

    • Technical and educational debriefings with development, security, or management teams.
    • Contribution to improving security practices in the software development lifecycle (DevSecOps).
    • Active monitoring of CVEs, technical publications, and participation in cybersecurity events (conferences, challenges…).
    Web Pentest Internal Pentest Security Audit Cybersecurity
  • Gfi world
    Cyber Security Consultant - DQSG
    PUBLIC SECTOR
    November 2019 - October 2021 (1 year and 11 months)
    Saint-Ouen, France

    🔧 SOAR Integration

    • Participation in the integration and configuration of a SOAR platform within the client's environment.
    • Automation of incident response scenarios (phishing, malware detection, SIEM alerts…).
    • Connection of various security tools (SIEM, EDR, ticketing, threat intelligence) to the SOAR via API.
    • Creation of playbooks (automated workflows) to standardize and accelerate threat responses.

    🧩 Incident Analysis & Management

    • Analysis of alerts from the SIEM and handling of security incidents.
    • Qualification and categorization of suspicious events.
    • Recommendation of corrective or preventive actions after analysis.

    🛠️ Development of automation scripts

    • Writing Python or Bash scripts to enrich or automate certain steps of SOAR playbooks.
    • Testing and validation of automated scenarios.

    📊 Reporting & documentation

    • Writing incident reports and activity reports.
    • Contribution to the documentation of operational security procedures (SOPs).

    🔍 Security Watch

    • Monitoring of critical vulnerabilities (via CVE, CERT-FR, etc.).
    • Analysis of IOCs (indicators of compromise) to enrich detection tools.
    Cybersecurity SOAR Risk Analysis

Recommendations

Be the first to recommend Sid Ahmed

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • The foundations of IT security and cybersecurity IT security and cybersecurity
    Les fondements de la sécurité informatique et de la cybersécurité La sécurité informatique et cybersécurité
  • Engineering degree
    ECE Paris
    2021
    Diplôme d'ingénieur

Skill set

Categories