Laurent - Consultant cybersécurité .NET
Ref : 210416M002-
Domicile
54000 NANCY
-
Profil
Consultant cybersécurité (41 ans)
-
StatutFreelance
-
Tarif Journalier MoyenVoir le tarif
-
Independent consultant and owner at Secloudia
Phnom Penh, Cambodia2021 - aujourd'huiCybersecurity, compliance, cloud, AWS, consultancy and training for startups & SMEs.
-
IT & Training Manager at Passerelles Numériques
Phnom Penh, Cambodia2019 - 2020Served for 15 months as International Solidarity Volunteer (French VSI) for an international NGO.
Responsible for the Systems & Network Administration (SNA) curriculum as well as the overall IT of the
school (35 staff and 150 students). Led a team of 4 FTEs (2 SNA Trainers and 2 IT Officers).
Developed cybersecurity and cloud computing modules
Applied for the AWS Educate institution grant and embedded it into the SNA curriculum
Moved IT labs from hardware-based to cloud-based amid COVID-19 school closure and beyond
Increased Google G Suite adoption and organized the training of all staff and students during C-19
Established and maintained relationships with various partners (businesses, NGOs, government)
Selected as part of the AWS Educate Cloud Ambassador 2020 cohort -
Selected as part of the AWS Educate Cloud Ambassador Volunteer Cybersecurity Trainer at Passerelles Numériques – Vietnam, Philippines, Cambodia2019 - 2019
Traveled for 4 months to the 3 countries where Passerelles Numériques operates in Asia and delivered
training in cyber-security as a volunteer.
Delivered training to students (2 weeks in Da Nang, Vietnam and 4 weeks in Cebu, Philippines)
Mentored and trained the local IT & training team in Phnom Penh, Cambodia -
Senior Information Security Risk Analyst
ABN AMRO Bank – Amsterdam, Netherlands2013 - 2018Information security risk assessment & advisory for the Corporate Information Security Office (CISO).
Supported senior management in making risk-based decisions to achieve business objectives
Identified and assessed risks in all aspects of information security for various projects
Provided security advisory and architecture support during projects
Performed vendor security assessments (e.g. BPO, cloud suppliers, data center inspection, etc.)
Coordinated penetration testing and vulnerability assessments
Monitored ongoing risks and followed up on remediation
Established relationships with business lines, subsidiaries and other risk functions (legal,
compliance, audit) -
IT Operations Security Lead at French National Space Agency (CNES) – Toulouse, France2012 - 2013
IT security operations and outsourcing management for the CNES ICT Department.
Assigned as a consultant for Scassi.
Reviewed and oversaw the overall incident management process
Reviewed vendors' security controls to ensure ongoing compliance with standards and policies
Monitored security systems operations, performance, availability and capacity
Reviewed and monitored security vulnerabilities and remediation activities
Developed requests for tender and supported tender evaluations
Led continuous service improvement for security -
Information Security Consultant
Scassi – Toulouse, France2012 - 2013R&D, presales, training delivery and consulting.
Co-built the eLearning platform PHOSFOREA and authored courses in information security
Delivered training in cloud computing security to IT auditors -
Senior Security Analyst
CERTAgency (ESA) – Rome, Italy2010 - 2012ESA's Computer Emergency Response Team (ESACERT).
Assigned as a consultant for Verizon Business.
Led incident response and threat hunting
Performed malware analysis and forensics activities
Performed security & vulnerability assessments and monitored findings resolution
Co-organized security awareness campaign and seminars for all ESA sites
Wrote security articles for the ESA community -
Senior Security Consultant at Verizon Business
Luxembourg / Italy2006 - 2012Verizon Business Professional Services EMEA. Worked for various SME & Enterprise customers.
Designed, tested, deployed and supported security infra and systems in complex environments
Performed security audits, reviews and assessments
Developed security policies, guidelines and standard operating procedures
Developed and optimized security assessment tools
Delivered security training, managed projects, developed solutions and performed presales activities -
Guest Lecturer at Université de Lorraine – Nancy, France2005 - 2010
Part-time teaching for the specialized Bachelor program in mobile networks and security.
Taught cryptography, cybersecurity and hacking (app. 30 hours every year)
Member of the pedagogic council -
Security Analyst
at Cybertrust – Luxembourg2004 - 2006Security Operations Center (SOC) environment in a 24x7x365 shift work schedule providing Managed
Security Services to various customers.
Analyzed logs and security trends
Investigated intrusion detection alerts and handled security incidents
Supported customer security devices administration such as firewall, IDPS, router, VPN and proxy
Supported the SOC back-end and Linux/Unix system administration
2004: Internship in system & network administration at La SNET – Metz, France
Project in end-user software releases packaging, testing & deployment.
Profile
I have been working in the realm of information security for over 17 years doing many things from
security systems design and implementation to cybersecurity operations, to advising developers, solution
architects and senior management about security risks and solutions. I gained a rich experience, having
worked across many industries in complex environments and across multiple geographic regions.
Over the past decade, I have also been growing interest in cloud computing and gradually turned from a
cloud skeptic to an evangelist. Whereas cloud and security are often in conflict in the minds of many
people, I strongly believe they are both intertwined and need to evolve together as key foundation pillars
for businesses to grow towards their digital transformation objectives. It all comes down to new
paradigms, awareness and education about security, cloud and security in the cloud. This has been my
main focus area over the past few years.
People who have worked with me describe me as driven, versatile, out-of-the-box thinker and eager to
learn and transmit knowledge.
Core skills
Information Security: I have a holistic view of InfoSec. A blend of management and technical experience
in almost all areas of InfoSec across various industries. Extensive know-how in security architecture,
cloud security, governance, risk & compliance, incident response management and security operations.
Amazon Web Services (AWS): I have been involved in AWS over the past few years, starting by reviewing
risks and assessing the security posture of various deployments. Since then I got my hands on most
services and gained a solid understanding of the AWS ecosystem and an in-depth knowledge in S3, EC2,
VPC, ECS, CI/CD, Infrastructure-as-Code (IaC), IAM, serverless and security.
Instruction and Training: Throughout my career, I have always been engaged in delivering IT training.
I taught as a Guest Lecturer for many years, trained a large number of technology professionals, co-built
an eLearning platform and worked in NGO as Volunteer Trainer and Training Manager.
Education
2009-2010: Master's Degree, Management & Business Engineering from EM Strasbourg – France
Part-time study. Project management, sales & marketing, strategy.
2002-2004: University Degree, Network & Telecom from Université de Lorraine – France
Awards & certifications
Since 2021: AWS Certified Security – Specialty
Since 2020: AWS Certified Solutions Architect – Associate
Since 2020: AWS Community Builder
Since 2020: AWS Educate Cloud Ambassador
Since 2015: ISACA CISM (Certified Information Security Manager)
Since 2013: ISC2 CISSP (Certified Information Systems Security Professional)
Since 2013: CSA CCSK (Certificate of Cloud Security Knowledge)
Since 2008: EXIN ITIL Foundation version 3
Expired: ISO 27032 Lead Cybersecurity Manager (2017), ISACA CISA (2013), ISO 27005/31000 Risk
Manager (2012), ISC2 SSCP (2007), CheckPoint CCSA & CCSE (2005), Cisco CCNA (2004)
Other information
Citizenship: French
Languages: Bilingual English/French
Personal interests: Rock climbing, photography, blogging (********)
I have been working in the realm of information security for over 17 years doing many things from
security systems design and implementation to cybersecurity operations, to advising developers, solution
architects and senior management about security risks and solutions. I gained a rich experience, having
worked across many industries in complex environments and across multiple geographic regions.
Over the past decade, I have also been growing interest in cloud computing and gradually turned from a
cloud skeptic to an evangelist. Whereas cloud and security are often in conflict in the minds of many
people, I strongly believe they are both intertwined and need to evolve together as key foundation pillars
for businesses to grow towards their digital transformation objectives. It all comes down to new
paradigms, awareness and education about security, cloud and security in the cloud. This has been my
main focus area over the past few years.
People who have worked with me describe me as driven, versatile, out-of-the-box thinker and eager to
learn and transmit knowledge.
Core skills
Information Security: I have a holistic view of InfoSec. A blend of management and technical experience
in almost all areas of InfoSec across various industries. Extensive know-how in security architecture,
cloud security, governance, risk & compliance, incident response management and security operations.
Amazon Web Services (AWS): I have been involved in AWS over the past few years, starting by reviewing
risks and assessing the security posture of various deployments. Since then I got my hands on most
services and gained a solid understanding of the AWS ecosystem and an in-depth knowledge in S3, EC2,
VPC, ECS, CI/CD, Infrastructure-as-Code (IaC), IAM, serverless and security.
Instruction and Training: Throughout my career, I have always been engaged in delivering IT training.
I taught as a Guest Lecturer for many years, trained a large number of technology professionals, co-built
an eLearning platform and worked in NGO as Volunteer Trainer and Training Manager.
Education
2009-2010: Master's Degree, Management & Business Engineering from EM Strasbourg – France
Part-time study. Project management, sales & marketing, strategy.
2002-2004: University Degree, Network & Telecom from Université de Lorraine – France
Awards & certifications
Since 2021: AWS Certified Security – Specialty
Since 2020: AWS Certified Solutions Architect – Associate
Since 2020: AWS Community Builder
Since 2020: AWS Educate Cloud Ambassador
Since 2015: ISACA CISM (Certified Information Security Manager)
Since 2013: ISC2 CISSP (Certified Information Systems Security Professional)
Since 2013: CSA CCSK (Certificate of Cloud Security Knowledge)
Since 2008: EXIN ITIL Foundation version 3
Expired: ISO 27032 Lead Cybersecurity Manager (2017), ISACA CISA (2013), ISO 27005/31000 Risk
Manager (2012), ISC2 SSCP (2007), CheckPoint CCSA & CCSE (2005), Cisco CCNA (2004)
Other information
Citizenship: French
Languages: Bilingual English/French
Personal interests: Rock climbing, photography, blogging (********)