À propos de Hafid
Français
Bilingue ou natif
Anglais
Capacité professionnelle complète
Arabe
Bilingue ou natif
Expériences
- Groupe LactalisSenior Infrastructure & Security Project Directorjuin 2024 - mars 2026 (1 an et 9 mois)Laval, FrancePAM Architecture ERP, Jenkins, Azure DevOps• ▪ Directed a portfolio of mission-critical enterprise infrastructure resilience projects, overseeing the architectural redesign and safe migration of core SAP ERP ecosystems, transactional middleware (Tibco) and central batch scheduling (Control-M) to high-availability IBM Power10 and Cisco SAN platforms.• ▪ Spearheaded a deep-dive PAM architecture benchmark (CyberArk, BeyondTrust, Thycotic): conducted functional and technical comparative studies to define a multi-year privileged access hardening roadmap, adopted by the CISO as the firm's access security baseline.• ▪ Designed and executed multi-site Disaster Recovery Plans across the full SAP/Tibco/Control-M stack: led failover simulation campaigns, coordinated SLA sign-off with business owners and produced formal acceptance reports for executive risk committees.• ▪ Established and continuously animated the full programme governance model: weekly technical COPROJ, monthly executive COPIL, cross-functional risk and dependency registers, escalation management and multi-stream budget tracking.• ▪ Produced consolidated executive dashboards (KPI/KRI) on operational performance, capacity and incident trends; presented directly to C-level steering committees and Group CIO.• ▪ Managed CMDB data quality and technical asset lifecycle in Workfront, coordinating with production teams and third-party vendors to maintain referential integrity and ensure audit-ready posture.• ▪ Coordinated CI/CD pipeline improvements (Jenkins, Azure DevOps) to reduce infrastructure deployment lead times and align release cycles with agile sprint schedules.
- WorldLineInfrastructure Project Director – Cybersecuritynovembre 2022 - mai 2024 (1 an et 6 mois)Paris, France• ▪ Commanded the global cybersecurity transformation programme following the multi-billion Euro carve-out from Ingenico, managing complex regulatory profiles across 40+ countries simultaneously on a hybrid Azure/AWS environment.• ▪ Led full evaluation, architecture design and worldwide deployment of an integrated defensive ecosystem: replaced legacy CrowdStrike and McAfee with SentinelOne EDR, Splunk SIEM and Microsoft Authenticator MFA — coordinated with Group CSIRT, cloud architects and external integrators across multiple time zones.• ▪ Maintained zero security blind spots during active migration by routing real-time events between the incoming Splunk architecture and the legacy monitoring environment simultaneously throughout the transition.• ▪ Drove ISO 27001 compliance alignment across all post-carve-out entities: codified unified security policies, verified evidence packages, mapped technical exceptions and coordinated formal external certification loops.• ▪ Built a unified international project delivery office: tracked multi-stream programme investments, critical cross-border constraints and delivered regular status reports directly to CISO and executive steering committees in English and French.• ▪ Managed multi-vendor dependencies, contract escalations and international stakeholder communication across cloud, security, compliance and business teams in a fully matricial organisation spanning FR, DE, UK, US and APAC.
- Abeille Assurances (Aviva)Cybersecurity Programme Directordécembre 2021 - octobre 2022 (10 mois)Paris, France• ▪ Orchestrated the full cybersecurity transition programme following Abeille's separation from Aviva Group: designed and deployed an independent semi-outsourced hybrid SOC from scratch (SIEM, VMS, CTI, MFA, EDR, IPS/IDS) under compressed timelines.• ▪ Integrated structured Cyber Threat Intelligence (CTI) feeds into the SIEM platform: normalised threat telemetry, built custom IoC tracking workflows and provided analysis tier with contextualised indicator-of-compromise detection, directly reducing mean-time-to-detect.• ▪ Built and institutionalised a full Vulnerability Management System (Qualys): configured active discovery across all internal and cloud assets, enforced automated remediation SLA tracking and established clear executive posture reporting for the CISO.• ▪ Engineered a highly resilient emergency backup SOC architecture in direct response to heightened cyber risks from the Ukraine geopolitical crisis — instantaneous hot-site data sync, zero-downtime failover capability, delivered ahead of deadline.• ▪ Conducted a foundational EBIOS RM risk assessment across all critical IT structures and multi-tenant hosting environments; risk remediation blueprint adopted by the Executive Risk Committee as the firm's 18-month security baseline.• ▪ Supervised multi-million-Euro programme budget controls, resource planning and vendor contract negotiations; delivered high-level regulatory updates to compliance committees and board.
Recommandations
Soyez le premier à recommander Hafid
Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.
Ces profils de freelance correspondent également à vos critères
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Formations
- Enterprise Architecture FrameworkThe Open Group2019Enterprise Architecture Framework
- Certified Ethical Hacker v8 (CEH)EC-Council2013Certified Ethical Hacker v8 (CEH)