You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Vyrhak SathVS

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Vyrhak

Passionate about cybersecurity for over ten years, I have focused my career on a clear objective: to protect information systems and support organizations in managing their digital risks.
My approach is based on three pillars: technical rigor, methodology, and pedagogy – because effective security is not limited to tools; it relies above all on the understanding and buy-in of the stakeholders involved.

Throughout my career, I have gained solid experience in companies of all sizes, notably at Saint-Gobain Distribution Bâtiment France and BNP Paribas Personal Finance.
There, I led projects for securing infrastructures, risk analysis (EBIOS), validation of technical architectures, compliance audits, and coordination of post-pentest remediation plans.
I also participated in integrating security requirements into international projects, in close collaboration with IT, business, and CISO teams.

Today, I put this expertise at the service of companies that wish to anticipate threats, strengthen their resilience, and comply with security standards (ISO 27001, Business Continuity/Disaster Recovery Plans, supplier security).

My ambition: to transform security into a lever of trust, performance, and sustainability for your organization.
  • French

    Native or bilingual

  • English

    Conversational

Remote only
Primarily works remotely

Experience

  • BNP Paribas Personal Finance
    Cyber Security Audit & Risk Consultant
    BANKING AND INSURANCE
    July 2024 - June 2025 (11 months)
    Levallois-Perret, France
    Development, update, and review of security profiles for approximately 50 assets. This mission includes analyzing the application context, assessing confidentiality, integrity, and availability (CIA) criteria, verifying compliance with current security policies and measures, and interpreting IT architecture diagrams to validate their robustness.

    Conducting in-depth security analyses on assets involved in corporate and international projects, considering the operational context, potential threats, identified vulnerabilities, and specific security requirements for each system. These analyses include a detailed review of technical architectures to detect potential security flaws or inconsistencies.

    Analysis and risk management based on asset security profiles: creation and tracking of risk records in ServiceNow (SNOW), with detailed descriptions, assessment of likelihood and impact, justification of acceptance or mitigation strategy, and monitoring of the treatment plan.

    Validation of the security framework through compliance and implementation audits, aimed at verifying the effective application of technical and organizational security measures, supported by the analysis of supporting evidence and associated deliverables.
    Risk Analysis Security Integration in Projects Cybersecurity Governance Remediation Plan Cybersecurity Audit
  • Capgemini
    Cyber Security Consultant
    DIGITAL AND IT
    December 2019 - June 2025 (5 years and 6 months)
    Île-de-France, France
    Risk Management: conducting risk analyses and managing associated treatment plans, ensuring the control and monitoring of information security risks.
    ISO27001 ISO 27005 Cybersecurity Governance Security Integration in Projects
  • Saint-Gobain Distribution Bâtiment France
    Cyber Security Consultant
    E-COMMERCE
    December 2019 - June 2024 (4 years and 6 months)
    Paris, France
    Security Project Management
    Managed a portfolio of approximately 20 security and compliance projects per month, including internal initiatives (deployment of Wallix bastion for administrators, Windows and Linux version upgrades) and external projects (secure integration of SaaS solutions, implementation of secure data exchange flows).

    Security Integration in Projects
    Reviewed and validated project security deliverables, including penetration test reports, code reviews, and vulnerability scans (infrastructure and web applications), to ensure compliance with Group policies and standards.

    Security Governance and Alignment
    Ensured consistency between Group security frameworks and project operational requirements.
    Conducted reviews and validated architecture diagrams and data flow matrices to verify their compliance and robustness.

    Penetration Test Coordination
    Planned and supervised penetration testing campaigns with the Group's testing team.
    Regularly monitored remediation actions through bi-weekly or monthly follow-up committees, until complete correction of identified vulnerabilities.

    Risk Management
    Performed risk analyses using the EBIOS 2010 method, developed and monitored information-related risk treatment plans, with regular operational follow-up until their effective closure.

    Third-Party Cybersecurity Assessment
    Analyzed and validated Security Assurance Plans (PAS) from external partners, assessing their cyber maturity level and providing recommendations for improvement.

    Documentation and ISMS Management
    Supervised and updated security documentation, including the inventory, formalization, and standardization of IT security procedures and processes within the framework of the Information Security Management System (ISMS).
    Risk Management Vulnerability Management Security Integration in Projects Information Security Policy Cybersecurity Governance

Recommendations

Be the first to recommend Vyrhak

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Digital Security Expert | Master's Degree
    ASTON L'école informatique
    2019
    Digital Security Expert | Master's Degree
  • Bachelor's Degree –
    Ecole IPSSI / Alumni
    2018
    Bachelor's Degree –

Certifications

Skill set

Categories