About Hafid
French
Native or bilingual
English
Fluent
Arabic
Native or bilingual
Experience
- Groupe LactalisSenior Infrastructure & Security Project DirectorJune 2024 - March 2026 (1 year and 9 months)Laval, FrancePAM Architecture ERP, Jenkins, Azure DevOps• ▪ Directed a portfolio of mission-critical enterprise infrastructure resilience projects, overseeing the architectural redesign and safe migration of core SAP ERP ecosystems, transactional middleware (Tibco) and central batch scheduling (Control-M) to high-availability IBM Power10 and Cisco SAN platforms.• ▪ Spearheaded a deep-dive PAM architecture benchmark (CyberArk, BeyondTrust, Thycotic): conducted functional and technical comparative studies to define a multi-year privileged access hardening roadmap, adopted by the CISO as the firm's access security baseline.• ▪ Designed and executed multi-site Disaster Recovery Plans across the full SAP/Tibco/Control-M stack: led failover simulation campaigns, coordinated SLA sign-off with business owners and produced formal acceptance reports for executive risk committees.• ▪ Established and continuously animated the full programme governance model: weekly technical COPROJ, monthly executive COPIL, cross-functional risk and dependency registers, escalation management and multi-stream budget tracking.• ▪ Produced consolidated executive dashboards (KPI/KRI) on operational performance, capacity and incident trends; presented directly to C-level steering committees and Group CIO.• ▪ Managed CMDB data quality and technical asset lifecycle in Workfront, coordinating with production teams and third-party vendors to maintain referential integrity and ensure audit-ready posture.• ▪ Coordinated CI/CD pipeline improvements (Jenkins, Azure DevOps) to reduce infrastructure deployment lead times and align release cycles with agile sprint schedules.
- WorldLineInfrastructure Project Director – CybersecurityNovember 2022 - May 2024 (1 year and 6 months)Paris, France• ▪ Commanded the global cybersecurity transformation programme following the multi-billion Euro carve-out from Ingenico, managing complex regulatory profiles across 40+ countries simultaneously on a hybrid Azure/AWS environment.• ▪ Led full evaluation, architecture design and worldwide deployment of an integrated defensive ecosystem: replaced legacy CrowdStrike and McAfee with SentinelOne EDR, Splunk SIEM and Microsoft Authenticator MFA — coordinated with Group CSIRT, cloud architects and external integrators across multiple time zones.• ▪ Maintained zero security blind spots during active migration by routing real-time events between the incoming Splunk architecture and the legacy monitoring environment simultaneously throughout the transition.• ▪ Drove ISO 27001 compliance alignment across all post-carve-out entities: codified unified security policies, verified evidence packages, mapped technical exceptions and coordinated formal external certification loops.• ▪ Built a unified international project delivery office: tracked multi-stream programme investments, critical cross-border constraints and delivered regular status reports directly to CISO and executive steering committees in English and French.• ▪ Managed multi-vendor dependencies, contract escalations and international stakeholder communication across cloud, security, compliance and business teams in a fully matricial organisation spanning FR, DE, UK, US and APAC.
- Abeille Assurances (Aviva)Cybersecurity Programme DirectorDecember 2021 - October 2022 (10 months)Paris, France• ▪ Orchestrated the full cybersecurity transition programme following Abeille's separation from Aviva Group: designed and deployed an independent semi-outsourced hybrid SOC from scratch (SIEM, VMS, CTI, MFA, EDR, IPS/IDS) under compressed timelines.• ▪ Integrated structured Cyber Threat Intelligence (CTI) feeds into the SIEM platform: normalised threat telemetry, built custom IoC tracking workflows and provided analysis tier with contextualised indicator-of-compromise detection, directly reducing mean-time-to-detect.• ▪ Built and institutionalised a full Vulnerability Management System (Qualys): configured active discovery across all internal and cloud assets, enforced automated remediation SLA tracking and established clear executive posture reporting for the CISO.• ▪ Engineered a highly resilient emergency backup SOC architecture in direct response to heightened cyber risks from the Ukraine geopolitical crisis — instantaneous hot-site data sync, zero-downtime failover capability, delivered ahead of deadline.• ▪ Conducted a foundational EBIOS RM risk assessment across all critical IT structures and multi-tenant hosting environments; risk remediation blueprint adopted by the Executive Risk Committee as the firm's 18-month security baseline.• ▪ Supervised multi-million-Euro programme budget controls, resource planning and vendor contract negotiations; delivered high-level regulatory updates to compliance committees and board.
Recommendations
Be the first to recommend Hafid
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Enterprise Architecture FrameworkThe Open Group2019Enterprise Architecture Framework
- Certified Ethical Hacker v8 (CEH)EC-Council2013Certified Ethical Hacker v8 (CEH)