Hamza Nakabi

Cybersecurity Consultant

Email: hamza.nakabi@gmail.com | Phone: +33 6 65 96 31 41

About Me

Cybersecurity Consultant with 10 years of experience specializing in cloud security and security operations. Skilled in designing secure cloud architectures, incident response, and DevSecOps practices. Strong background in AWS, SIEM, network analysis, and security testing, with a keen interest in automation to enhance efficiency and resilience. Fluent in English and native in French. Committed to driving security excellence and innovation within forward-thinking teams.

Education

Skills

Cybersecurity
Cloud (AWS)
Networking
Security Testing
SIEM
DevSecOps
Operating Systems
Scripting
Scanning Tools
EDR Tools
WAF Tools
IDS Tools

Languages

French
English

Work Experience

Senior Security Consultant | Axway (Jan 2022 - Present)

Environment: AWS, CrowdStrike, Python, Rapid7, Splunk, Kubernetes, Docker.

  • Manage security configurations, including AWS network and web application firewalls.
  • Integrate and configure logs across client environments using Splunk (Linux, Windows, network devices).
  • Lead security audits, penetration tests, and apply remediation measures.
  • Deploy and manage EDR and CSPM solutions across multiple environments.
  • Automate security reviews for onboarding/offboarding processes.

SOC Level 3 Analyst | Docaposte (Nov 2020 - Dec 2021)

Environment: Qradar, Umbrella, Sigma, AWS, VMware, Mitre Attack, Python, MISP.

  • Orchestrated SOC and CSIRT detection tools and procedures, streamlining operations.
  • Enhanced log monitoring across both public and private cloud environments.
  • Engineered advanced detection rules leveraging IOC/IOA to thwart sophisticated threats.
  • Automated incident detection and response processes, boosting operational efficiency.

Cybersecurity Expert | Edenred (Nov 2019 - Nov 2020)

Environment: AWS, Imperva, Radware, BurpSuite, Python, Rapid7, ISO27001.

  • Integrated security protocols within the development lifecycle (CI/CD).
  • Conducted internal penetration tests and managed vulnerability assessments.
  • Ensured compliance with group security policies and implemented corrective measures.
  • Provided cybersecurity training to project managers and developers.

Infrastructure Security Consultant | BNP BP2S (Sep 2018 - Oct 2019)

Environment: ISO27001, WAF, Risk Management, User Awareness.

  • Validated technical architectures to align with security standards, ensuring robust infrastructure.
  • Assisted in deploying Web Application Firewall (WAF) and encryption solutions to enhance data protection.
  • Conducted comprehensive training campaigns to raise user awareness about security policies.

Cybersecurity Consultant | Société Générale (Sep 2015 - Aug 2018)

Environment: Splunk, Qradar, Elasticsearch, Python.

  • Spearheaded SIEM transformations, driving enhanced security protocols.
  • Engineered advanced event correlation mechanisms and rules using Python.
  • Streamlined and managed centralized security log systems.
  • Defined security requirements for network and telecom operators, ensuring robust protection.
  • Automated network audits and implemented industry best practice standards.
  • Spearheaded the migration of network infrastructure from legacy systems to cutting-edge data centers.

Certifications