Profil de F Er

F Er
500.00€ /j
Cybersecurity Engineer & Independent Consultant
Disponible le : 13/08/2026
Localisation : Luxembourg
Mobilité : Mobilité régionale
5 années d'expérience
0 missions réalisées
CrowdStrikeDjangoELK (Elasticsearch, Logstash et Kibana)LinuxMicrosoft WindowsNginxPostgre SqlPythonQualysSplunk Assistance techniqueautomatisationConformité ISO 27001Cyber-risquesGestion des incidentsNetwork ManagementProject managementRisk AnalysisSecurityVulnérabilité

F Er en quelques mots

 

Luxembourg-based independent cybersecurity consultant with 5 years of experience spanning enterprise SOC/SecOps, vulnerability management, cybersecurity risk, security controls and secure platform engineering.

I worked in enterprise security operations at Thales Cybersecurity Services and EY, supporting incident triage, investigation, SIEM/SOAR workflows, endpoint and network security monitoring, escalation and security reporting. I later designed, secured and operated a production cybersecurity platform, gaining hands-on experience in vulnerability management with Qualys VMDR, Linux and application hardening, security automation, risk assessment, remediation tracking and ISO/IEC 27001-aligned security controls and evidence workflows.

Available for freelance assignments in cybersecurity risk, vulnerability management, SecOps, security engineering, hardening, security controls and automation. Based in Luxembourg and available immediately for on-site, hybrid or remote engagements.

Langues

French
bilingue
English
bilingue

Formation

  • ITIL 4

    ITIL

    janvier 2024 - janvier 2024

  • Blue Team Level 1 (BTL1)

    SBT

    juin 2023 - juillet 2023

  • Qualys Certified Specialist – VMDR

    Qualys

    août 2026 - août 2026

    Portfolio

  • logo_sct

    ESPRIT

    Encrypted-Traffic Malware Detection & Security Analytics

    décembre 2020 - octobre 2021

    Luxembourg, Luxembourg

    Researched malware detection in encrypted SSL/TLS traffic using machine learning and semi-supervised approaches. Built malicious and benign encrypted-traffic datasets, automated PCAP analysis and dataset-generation workflows, and evaluated classical machine-learning models including Random Forest, SVM and XGBoost-style approaches. Designed a TensorFlow semi-supervised GAN classifier and developed a proof-of-concept IDS workflow with ELK visualisation.

  • logo_sct

    EY

    Endpoint Security Monitoring & Incident Triage

    janvier 2022 - juin 2022

    Luxembourg, Luxembourg

    Supported SOC monitoring for financial-sector customers, with a focus on endpoint alert validation, initial investigation, severity and impact assessment, escalation and incident documentation. Used CrowdStrike Falcon and security telemetry to investigate endpoint events, support containment workflows and prepare clear investigation evidence and handover notes for follow-up.

  • logo_sct

    Thales Cybersecurity Services

    Enterprise SOC Operations, Incident Triage & Detection Support

    juin 2022 - janvier 2025

    Luxembourg, Luxembourg

    Supported enterprise customers across finance, logistics, healthcare, energy and other sectors within a multi-client SOC environment. Monitored, triaged, prioritised and escalated security alerts using IBM QRadar, Microsoft Sentinel, Splunk, ELK and IBM Resilient. Investigated endpoint, network, WAF, IDS and firewall telemetry, supported incident-response and containment workflows, documented investigation evidence and operational handovers, and contributed to detection-use-case refinement, playbook tuning and false-positive reduction.

  • logo_sct

    BlackCrypt.ai

    Cybersecurity Risk, Security Controls & ISO 27001-Aligned ISMS

    février 2025 - juillet 2026

    Luxembourg, Luxembourg

    Developed an evidence-based ISO/IEC 27001-aligned Mini-ISMS using real production and operational evidence. Structured cybersecurity risk assessment and treatment, control-effectiveness reviews, evidence registers, remediation actions, security objectives and review cadences. Integrated vulnerability-management findings into risk and control workflows, including remediation ownership, deadlines, exception and residual-risk handling, retesting and evidence updates. Produced technical and management-readable security documentation to support continuous improvement and audit readiness.

  • logo_sct

    BlackCrypt.ai

    Cybersecurity Platform Engineering, Vulnerability Management & Hardening

    février 2025 - juillet 2026

    Luxembourg, Luxembourg

    Designed, built and operated a production AI-powered cybersecurity platform for encrypted network-traffic and PCAP analysis. Delivered secure platform architecture, automated security-analysis workflows, analyst reporting, threat-intelligence enrichment and production hardening. Implemented Qualys VMDR-based vulnerability management covering external and host assessment, finding validation, risk-based prioritisation, remediation tracking and verified closure through rescanning. Hardened Linux/Nginx/TLS infrastructure, administrative access, SSH posture, logging, backup/recovery and operational controls.

    Historiques (0)

    • Il n'y a aucune activité.