About Sid Ahmed
🚀 Profile
🧠 What sets me apart?
- Practical intelligence: I understand quickly, I anticipate, I solve. I get to the bottom of things, without ever losing sight of the big picture.
- A rare ability to move from strategy to execution: I define the architecture, I code, I deploy, I automate.
- An entrepreneurial attitude: I take care of what I build as if it were my own. I don't shy away from complexity, I tame it.
💼 What I deliver:
- Robust products, designed for real-world use.
- Technical decisions based on experience, not trends.
- Total autonomy: I don't wait to be told what to do, I propose, I do, I deliver.
🙌 Why me?
French
Native or bilingual
English
Native or bilingual
Arabic
Native or bilingual
Experience
- The FlexChief Information Technology OfficerHOSPITALITYSeptember 2023 - Today (2 years and 9 months)Paris, France
🏗️ Definition of technological strategy
- Development and management of the overall IT strategy, aligned with the company's business and operational objectives.
- Acceleration of digital transformation through relevant and sustainable technological choices.
- IT budget management, technical priority arbitration, and support for strategic decision-making.
🧠 Architecture & technical development
- Direct contribution to the development of tailor-made solutions, particularly back-end (APIs, automation, internal systems).
- Involvement in software and cloud architecture: design, technical stack choices, security by design.
- Development of critical modules related to operations (booking management, API integrations, internal dashboards…).
👥 Leadership & technical management
- Supervision of multidisciplinary teams: development, infrastructure, data, support, and cybersecurity.
- Implementation of agile rituals (Scrum, Kanban), product roadmap management, workflow documentation.
- Recruitment, skill development, and retention of tech talent around a common vision.
🚀 Innovation & continuous modernization
- Permanent technological watch and experimentation with new approaches (applied AI, intelligent automation, microservices…).
- Launch of POCs and deployment of new internal solutions to optimize operational efficiency.
- Culture of documentation, IT performance measurement (KPIs), and constant feedback.
- EYCyber Security Consultant / PentesterPUBLIC SECTORNovember 2021 - September 2023 (1 year and 10 months)Paris, France
🔍 Execution of over 150 penetration tests
- Conducting pentests on various scopes: web applications, REST/SOAP APIs, internal/external infrastructures, Active Directory, cloud environments (AWS, Azure).
- Rigorous application of recognized methodologies: OWASP, PTES, OSSTMM.
- Development of comprehensive and actionable reports, with concrete attack scenarios, risk assessment, and adapted technical recommendations.
⚠️ +2000 vulnerabilities identified and corrected
- Detection of critical vulnerabilities: SQL injections, XSS, RCE, IDOR, CSRF, privilege escalation, misconfigurations, etc.
- Support for technical teams in understanding, reproducing, and correcting vulnerabilities.
- Performing re-tests to validate implemented remediations.
🛠️ Mastery of tools and automation
- Tools: Burp Suite Pro, Nmap, Nessus, Metasploit, SQLmap, Gobuster, Hydra, etc.
- Development of custom scripts in Python, Bash, or PowerShell to automate certain exploitation or reconnaissance tasks.
- Use of lab platforms (Hack The Box, TryHackMe) to strengthen and validate internal approaches.
🎓 Awareness & continuous improvement
- Technical and educational debriefings with development, security, or management teams.
- Contribution to improving security practices in the software development lifecycle (DevSecOps).
- Active monitoring of CVEs, technical publications, and participation in cybersecurity events (conferences, challenges…).
- Gfi worldCyber Security Consultant - DQSGPUBLIC SECTORNovember 2019 - October 2021 (1 year and 11 months)Saint-Ouen, France
🔧 SOAR Integration
- Participation in the integration and configuration of a SOAR platform within the client's environment.
- Automation of incident response scenarios (phishing, malware detection, SIEM alerts…).
- Connection of various security tools (SIEM, EDR, ticketing, threat intelligence) to the SOAR via API.
- Creation of playbooks (automated workflows) to standardize and accelerate threat responses.
🧩 Incident Analysis & Management
- Analysis of alerts from the SIEM and handling of security incidents.
- Qualification and categorization of suspicious events.
- Recommendation of corrective or preventive actions after analysis.
🛠️ Development of automation scripts
- Writing Python or Bash scripts to enrich or automate certain steps of SOAR playbooks.
- Testing and validation of automated scenarios.
📊 Reporting & documentation
- Writing incident reports and activity reports.
- Contribution to the documentation of operational security procedures (SOPs).
🔍 Security Watch
- Monitoring of critical vulnerabilities (via CVE, CERT-FR, etc.).
- Analysis of IOCs (indicators of compromise) to enrich detection tools.
Recommendations
Be the first to recommend Sid Ahmed
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- The foundations of IT security and cybersecurity IT security and cybersecurityLes fondements de la sécurité informatique et de la cybersécurité La sécurité informatique et cybersécurité
- Engineering degreeECE Paris2021Diplôme d'ingénieur