You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Sohan B.SB

Sohan B.

Operational Security Consultant

€750/day
Paris, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Sohan

With over ten years of experience in cybersecurity and the IT sector, encompassing both personal and professional projects, I have decided to offer my expertise in operational security as an independent consultant.

I have applied my operational security skills across numerous sectors, including banking, luxury goods, government, retail, education, and maritime industries.

I am proficient in a wide range of technologies, allowing me to offer a versatile profile capable of working on technical and functional aspects within various cybersecurity domains:

- System and network configuration audits (Firewalls, NIDS/HIDS, VPN, Windows/Linux (CIS / ANSSI Benchmarks, etc.)) and remediation through automation or documentation.

- Vulnerability Management
- SOC - SIEM implementation and security rule/alert configuration.
- Penetration Testing
- Incident Response.
- Identification and creation of vulnerability bulletins.
- Bastion hosts
- Zero Trust practices and SSO implementation with MFA and/or WebAuthn
  • French

    Native or bilingual

  • English

    Native or bilingual

Can work on-site
Paris (up to 10km)

Experience

  • Grande distribution
    Retail
    RETAIL (LARGE RETAILERS)
    June 2023 - Today (3 years)
    Villeneuve-d'Ascq, France
    Responsible for the build, run, and ongoing maintenance (MCO) of the international public and private PKI, providing service vision across different business units.
    - Automation of certificate deployment, renewal, and revocation (SCEP / EST) / Agent deployment (Ansible / Terraform) / Script development (Bash & Powershell)
    - Implementation of an international "self-service" certificate management platform (WebRA)
    - Integration with MDM for certificate delivery
    - Secrets management / Keyvault
    - Migration of internal PKI from one vendor to another
    - Consolidation of PKIs from different business units into a centralized PKI
    - Consolidation of the corporate private and public PKI into a single interface (Improved self-service)
    - Fine-grained RBAC management at the project level for certificate management
    - DRP (Disaster Recovery Plan)
    - Malware analysis
    - Incident management
    - Implementation of automated incident response rules based on SOC alerts
    - Implementation of automated doubt resolution processes
    - Enrichment of alerts to improve log correlation
    - Automated retrieval of CMDB data to enable PKI RBAC
    - Retrieval and filtering of CSPM alerts for ingestion into SIEM
    - Chatbot for consolidating data from various log sources to simplify alert analysis for SecOps
  • SYNETIS
    Operational Security Consultant
    DIGITAL AND IT
    September 2021 - June 2023 (1 year and 9 months)
    Paris, France
    Client types: Luxury - Government - Retail - Energy - Finance

    Mission types: PKI - RFI - SI and Security Supervision Solutions - Network Segmentation - System Hardening - Incident Response - Network Architecture - Firewall Optimization - DevSecOps - SOC - Vulnerability Management

    Scripting: Python / Bash / Powershell

    Writing Customer Requirement Documents (CRD) - High-Level Design (HLD), Low-Level Design (LLD) - Certification Policy (PC) - Certification Practice Statement (CPS) - Technical Architecture Document (TAD) - Flow Matrix - Technical Implementation Documentation
    Client relationship management during intense audit periods
    ELK Ansible Tenable.sc Wireshark EJBCA Cyberwatch Deep Security Opensearch LACP VLAN CIS Hardening Debian Jenkins Artifactory iptables Tufin Checkpoint Fortigate CentOS Centreon Nagvis ESXI SNMP ID-PKI ADCS AEP Palo Alto ADDS Splunk
  • Groupe SII
    Cybersecurity Consultant
    DIGITAL AND IT
    February 2021 - August 2021 (6 months)
    78140 Vélizy-Villacoublay, France
    Participated in a team to develop and deploy a secure virtual infrastructure representing the environment of a pharmaceutical company (manufacturer of a COVID vaccine). This company aimed to establish an internal cybersecurity division comprising a SOC, CERT, and CSIRT to ensure the cyber-resilience of its conventional IT and industrial OT assets.

    - Risk analysis and audit of the current infrastructure.
    - Bringing the SI up to current standards and proposing a redesign.

    Development of three divisions: SOC - CERT - CSIRT:

    CERT:
    - Research of open-source tools for deploying a CERT
    - Creation of a report on existing tools.
    - Development of a Cyber Threat Intelligence platform.
    - Planning meetings and platform improvement based on feedback.
    - Research of reliable sources for threat intelligence.
    - Aggregation of feeds into a single interface.
    - Automated generation of bulletins on tools and malicious actors.
    - Deployment and configuration of OpenCTI and MISP tools.

    CSIRT:
    - Research of open-source tools for incident response.
    - Creation of a report on existing tools.
    - Deployment and configuration of TheHive and Cortex tools.

    SOC:
    - Research of tools for SI monitoring.
    - Creation of a market analysis report on monitoring tools.
    - Deployment and configuration of Wazuh, Snort, and Suricata.

    Redesign of the industrial production division for vaccines:
    - Research on various IoT protocols (Zigbee, Z-Wave, LoRA, Modbus.)
    - Development of a budget for setting up a research laboratory.
    - Research on security vulnerabilities in these protocols.
    - Planning of meetings to present research progress.
    MISP TheHive Cortex OpenCTI OpenEDR Zigbee Wazuh Suricata Snort

Recommendations

Be the first to recommend Sohan

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Engineering Degree - Cybersecurity, Computer Science
    EPITA: Computer Engineering
    2021
    Diplôme d'ingénieur - Cybersécurité
  • Computing course
    Griffith College Cork
    2018
    Computing course

Certifications

  • Network Security Specialist
    ICSI (International CyberSecurity Institute), UK
    2021
  • GDPR Workshop
    GDPR Workshop CNIL
    2020

Skill set (71)

Categories