You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Bassirou K.BK

Délai de réponse moyen : 1h

À propos de Bassirou

I specialize in securing connected embedded devices across
automotive, IoT and industrial environments. My work is focused
on identifying vulnerabilities and designing security architectures
for real-world systems — not only at software level, but also at
component and system (e.g, vehicle, industrial infrastructure) level.
Over the past years, I have worked in the industrial and automotive domains on multiple types of component, Electronic Control Units (ECUs), including AUTOSAR-based / RTOS platforms and connected ECUs running Automotive Android, Linux and QNX operating systems. I have been involved in cybersecurity architecture, Threat Analysis and Risk Assessment (TARA), and vehicle/ECU penetration testing.
Beyond my professional experience, I actively develop personal
hardware projects. I am currently building a long-range LoRa
tracking device and an Unmanned Ground Vehicle (UGV) for
agricultural applications. These projects allow me to continuously
experiment with embedded security, radio communication and
system hardening in real conditions.
I am open to discussions and collaborations regarding:
• Embedded, automotive and industrial cybersecurity architecture
• Threat Analysis and Risk Assessment (TARA)
• ECU, vehicle, IoT and industrial penetration testing
• Training and technical workshops
  • Français

    Bilingue ou natif

  • Anglais

    Capacité professionnelle complète

Accepte de travailler sur site
Paris (jusqu’à 30 km)

Expériences

  • Freelance
    Cybersecurity Consultant
    AUTOMOBILE
    août 2024 - Aujourd'hui (1 an et 10 mois)
    Paris, France
    • Conduct cybersecurity risk assessments (TARA) on embedded systems and vehicle platforms, including but not limited to software update mechanisms and OTA features.
    • Design and specify security mechanisms for embedded and automotive components.
    • Perform security reviews and audits of protection mechanisms such as Secure Boot, Secure Update / OTA, key management systems, PKI infrastructures and cryptographic implementations.
    • Contribute to the implementation and integration of security mechanisms within embedded components and software architectures.
    • Provide consulting on the transition from classical cryptographic algorithms to post-quantum cryptography (PQC).
    • Perform security validation activities and penetration testing on components and system architectures.
    • Participate and support Program Increment (PI) Planning within a SAFe environment.
    • Facilitate Agile team activities: daily stand-ups, Jira ticket creation and tracking, task prioritization, etc.
    Systèmes embarqués Gestion de projet cybersécurité Cryptography Méthode agile ISO 21434
  • Stellantis
    Cybersecurity designer
    AUTOMOBILE
    janvier 2021 - août 2024 (3 ans et 7 mois)
    Poissy, France
    • Perform Threat Analysis Risk Assessment (TARA)
    • Write Cyber Security concepts and requirements
    • Clarify requirements to suppliers or internal teams and follow-up the implementation
    • Review suppliers deliverables: TARA, Design, V&V (including pentests) and Management documents
    • Contribute to cybersecurity audit and assessment
    • Analyze all cybersecurity measures of a Target of Evaluation (component or vehicle) and write pentest Rules of Engagement (ROE) and Statement of Work (SOW).
    • Analyze pentest report, create issues on JIRA and contribute / propose remediation solutions
    • Specify and contribute to the implementation of segregation mechanisms (QNX secpol, packet filter, selinux, etc.) on QNX / Linux
    • Contribute to vehicle homologation with French Authorities (UTAC)
    Test de pénétration Risk analysis secteur automobile Risk Assessment Requirements specification
  • éolane
    Embedded Cyber Security Engineer
    février 2020 - août 2020 (6 mois)
    Grenoble, France
    • Securization of STM32 platform: secure boot, secure update, Secure Firmware Install (SFI), Trusted application development in C, Resources (keys, Trusted application, peripherals) isolation, cryptography, JTAG protection, Memory secure configuration.
    • EBISO risks analysis, Design and development of an authentification embedded application in C
    • System robustness testing
    • Cyber Security best practices training to Eolane employees.
    Cryptography Animation de formation Systèmes embarqués Gestion de projet cybersécurité Analyse de risques cyber

Recommandations

Soyez le premier à recommander Bassirou

Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.

Ces profils de freelance correspondent également à vos critères

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Formations

  • Cisco Certified Network Associate Security (CCNA)
    Cisco Certified Network Associate Security (CCNA)
  • Diplôme d'ingénieur, Cyber-sécurité des systèmes embarqués
    Université Bretagne Sud
    2020
    Diplôme d'ingénieur, Cyber-sécurité des systèmes embarqués

Catégories