Security Operations Center (SOC) Implementation (Personal Project)
→
Summary
Designed and implemented a personal Security Operations Center (SOC) to centralize security monitoring and incident management.
Highly motivated Cybersecurity Engineering student pursuing a Master M2 in Information Systems Security, actively seeking a PFE (End-of-Study Project) internship starting February 2025. Possessing a strong foundation in governance, risk, compliance, defensive and offensive cybersecurity, and development, complemented by practical experience in security audits, risk management, and digital forensics.
End-of-Study Internship in Information System Security
→
Summary
Contributed to the implementation of information security management systems and conducted risk assessments for the automotive industry.
Highlights
Participated in the implementation of the ISMS to achieve TISAX label compliance (inspired by ISO27001 standard) for the automotive industry.
Conducted risk analysis and evaluation using the EBIOS Risk Manager methodology.
Performed audit and evaluation of information security policies.
Linux Forensics Application Internship
→
Summary
Contributed to digital forensic investigations on Linux systems and automated analysis processes.
Highlights
Contributed to a digital investigation on a Linux machine, including memory analysis, artifact extraction, and inspection of logs and user activities.
Developed a Bash script to automate forensic analysis processes under Linux.
Active Member
→
Summary
Actively participated in and contributed to the university's cybersecurity club activities.
Team Member
→
Summary
Actively participated as a member of the school's volleyball team.
Participant (3rd Place)
→
Summary
Achieved 3rd place in a national Capture The Flag (CTF) competition in Morocco.
→
Master M2
Information Systems Security
→
Engineering Degree
Cyber Defense
→
Baccalauréat
Physical Science
Grade: Mention très bien (Very Good Honors)
Fluent
Proficient
Issued By
(ISC)²
Issued By
Information Skillfront
Issued By
TryHackMe
Issued By
TryHackMe
Audit & Compliance (ISO27001, RGPD, NIST, NIS2), Risk Analysis & Management (ISO 27005, Ebios RM), Security Policy Development (PSSI), BCP, DRP, ROI, BIA Development (PCA, PRA, ROI, BIA).
Log Analysis & Intrusion Detection (SIEM: ELK Stack, Splunk), Network Security & Traffic Analysis (Firewall, IDS/IPS: Snort, Wireshark, Zeek, Brim), Endpoint Security (Sysmon, Wazuh), Digital Forensics (Volatility, Autopsy), Phishing Analysis, Encryption & Key Management (OpenSSL).
Penetration Testing & Vulnerability Assessment, Vulnerability Scanning (Nmap, Nessus, OpenVAS, OWASP ZAP), Vulnerability Exploitation (Metasploit, Burp Suite).
Python, C, Java, Shell Scripting.
Active Directory, Virtualization, Cloud Computing, Networking & Systems, Linux & Windows Environments.
Adaptability, Teamwork, Analytical Thinking, Enthusiastic Learner.
CTFs.
Swimming, Volleyball.
Chess.
→
Summary
Designed and implemented a personal Security Operations Center (SOC) to centralize security monitoring and incident management.
→
Summary
Conducted a comprehensive penetration test and vulnerability assessment targeting the university's infrastructure (with authorized consent) to identify and mitigate security weaknesses.
→
Summary
Implemented robust security measures directly within the codebase of a Spring Boot application using Security as Code principles.
→
Summary
Conducted a comprehensive risk analysis and security review of an information system following a ransomware attack, focusing on recovery and resilience.
→
Summary
Integrated comprehensive monitoring components into a DevSecOps pipeline for a Spring Boot application, enhancing visibility and incident response.
→
Summary
Developed a Shell script to enhance the security posture of Linux systems by hardening file systems, kernel, and authentication/identification mechanisms.
→
Summary
Developed a comprehensive business continuity and disaster recovery plan tailored for an academic institution to ensure operational resilience.