À propos de Jihane
Anglais
Bilingue ou natif
Français
Bilingue ou natif
Arabe
Bilingue ou natif
Espagnol
Notions
Expériences
- Orange Cyberdefense,XSIAM (Palo Alto Network) Expertjanvier 2026 - Aujourd'hui (5 mois)France• - Integration of new log sources (onboarding, normalization, validation)• - Design and implementation of log parsing rules• - Data modeling for advanced analysis• - Creation and customization of security reports• - Development of custom integrations (connectors, APIs, automations)• - Design and implementation of SOAR playbooks• - Troubleshooting and optimization of existing playbooks• - Continuous improvement of security incident detection use cases and automated incident response
- DavidsonSenior Consultantnovembre 2025 - janvier 2026 (2 mois)France• - Design and formalization of a procedure for handling phishing and brute-force incidents (SOC operational documentation)• - Implementation of integration with Microsoft 365 for collecting and processing events related to phishing emails• - Development of a playbook for automating the processing of phishing emails on the Logpoint platform• - Integration of Threat Intelligence tools by leveraging their REST APIs for static and dynamic analysis of artifacts automatically extracted from suspicious emails• - Integration with SentinelOne via REST API for automating detection and remediation actions (launching scans of the target machine, isolating the infected machine, deleting malicious emails)• - Centralization and orchestration of incident processing via Logpoint, reducing the need for manual intervention across multiple toolsTechnical Environment: Qradar, Windows, Linux, Network Equipment: HUAWEI, Cisco, Nokia, F5 Load Balancer Firewall, Trellix ePO, Kafka, Veeam, Visual Studio, Git, Syslog, Wincollect, Python
- SFR,Qradar SIEM Expertoctobre 2024 - octobre 2025 (1 an)France• - Functional management of over 100 SIEM integration scopes within the framework of projects led by the Cyber Defense Center (CCD)• - Coordination of multi-stakeholder meetings (engineers, operations managers, network experts, etc.) to define, validate, and implement cyberattack detection rules (brute force, illegitimate remote connection, malware detection, log deletion, unexpected restart, syslog/TACACS manipulation, illegitimate configuration manipulation, etc.)• - Drafting and communication of requirements specifications for each scope• - Supervision of technical integration:◦ • Validation of log reception on Qradar (via Wincollect, syslog, etc.)◦ • Troubleshooting sessions with the technical teams and Qradar lead (troubleshooting of filtering, connectivity, configuration, etc.)◦ • Parsing and mapping of events and creation of DSMs in the event of a new type of Logs◦ • Active tuning phase to reduce false positives before production deployment• - Drafting of technical procedures• - Streamlining the assignment of source logs to the correct groups in Qradar via an optimized Python script• - Structured skills transfer to the new employee: drafting of clear procedures, operational support, and ongoing technical assistance.• - Daily collaboration with the Qradar technical lead, recognized for my reliability, technical expertise, and ability to drive projects forward under pressure.Technical Environment: Qradar, Windows, Linux, Network equipment: HUAWEI, Cisco, Nokia, F5 Load Balancer, Firewall, Trellix ePO, Kafka, Veeam, Visual Studio, Git, Syslog, Wincollect, Python
Recommandations
Soyez le premier à recommander Jihane
Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.
Ces profils de freelance correspondent également à vos critères
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Formations
- Msc inTe le comMsc in
- Networking and Telecommunication Systems Engineering DegreeThe National School of Applied Sciences of Tetouan2017Networking and Telecommunication Systems Engineering Degree