About Yazan
French
Native or bilingual
English
Fluent
Experience
- Crédit AgricoleNDR Project ConsultantBANKING AND INSURANCESeptember 2025 - Today (11 months)Support for a strategic cybersecurity project focused on threat detection and response capabilities. Management of security topics, stakeholder coordination, security and information system (SSI) requirements monitoring, risk management, participation in project committees, and support for teams in implementing security actions.
- BNP ParibasSecurity Equipment ManagerSeptember 2022 - Today (3 years and 11 months)âą Management of security projects (NDR, SBXs, IDS/IPS) and operational monitoring.âą Supervision of 8 cybersecurity solutions (IPS/IDS, NDR, Mail and Web Sandboxes, etc.).âą Critical challenge of technical architectures proposed by IT teams and security recommendations.âą Redesign of the IPS architecture on Fortinet.âą Operational monitoring of IT/GRC projects in conjunction with business and technical teams.âą Facilitation of strategic meetings and monitoring of team objectives.âą Development and implementation of cybersecurity and risk management strategies aligned with IT governance (GRC).âą Manage the monitoring of IDS/IPS inspection coverage at the interconnection points of intra-datacenter networks.âą Put security policies into production on managed solutions.âą Implement changes with impact assessment.âą Investigate security incidents reported by the PDIS SOC.âą Provide on-call support during non-business hours.âą Write activity reports.Technical Environment: Microsoft Defender O365, PaloAlto, Fortinet, Cisco, Vectra, McAfee Trellix, gatewatcher, Entrust
- BUTDeputy CISO GRC - TechnicalFebruary 2021 - September 2022 (1 year and 7 months)âą Management of 7 security solutions:âą Implementation, supervision, and optimization of IT infrastructure protection tools, including DarkTrace, Cyberwatch, DLP, IAM, IPS/IDS, and Sandboxes.âą Risk and compliance management (GRC): Ensuring the application of security policies (PSSI, ISO 27002, GDPR, ISO 27001), monitoring security audits, ensuring system compliance, establishing SI security procedures in case of crisis, conducting penetration tests to exploit vulnerabilities, writing observation reports, and proposing relevant recommendations.âą Incident supervision and cyber attack response: Coordination of security incident management in collaboration with operational teams and the SOC.âą Development of cybersecurity strategies: Development of continuous improvement plans, managing access rights and authorizations (privileged accounts), defining an access request procedure, implementing key performance indicators (KPIs), and monitoring corrective actions.âą Awareness and training of teams: Implementation of awareness programs to improve cybersecurity culture within the company.âą Collaboration with management: Regular reporting to the CISO and coordination with IT and business teams to align cybersecurity with the company's strategic objectives.âą Supporting IT teams in remediating detected vulnerabilities.Technical Environment: Darktrace, Cyberwatch, Office 365, SentinelOne
Recommendations
Be the first to recommend Yazan
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Network and Security Engineering Degree (Master's degree)ESIEE2019DiplÎme d'Ingénieur Réseaux et Sécurité
Certifications
- Certified ISO 27005 Lead ManagerPECB2025
- ISO/IEC 27001 Lead ImplementerPECB2025