Cybersecurity & development work
Five cybersecurity projects built as a logical progression through the security cycle — from strategic audit to infrastructure hardening — complemented by full-stack development work.
Research dissertation
Proof-of-concept security dashboard and total-cost analysis of an in-house SOC vs. an outsourced one.
VulnAI
Automated vulnerability management pipeline combining NVD, MITRE ATT&CK and a local LLM.
CVE-2023-43208 — Mirth Connect
RCE and privilege escalation via an eval() injection on a HackTheBox machine.
Internal phishing simulation
Simulated phishing campaign at Génie Flexion: OSINT, sending, measurement and debrief.
Active Directory Audit & Hardening
Security audit of a Windows Server AD environment, scored against the ANSSI framework, remediated with PowerShell scripts (FGPP, GPO hardening).
CTF AutoLab
Automated flag detection for CTF challenges, built from existing challenge sets.
Infrastructure as Code
Automated infrastructure deployment with Terraform and Ansible, logs centralized via Elasticsearch.
Personal Mini SOC
Log monitoring and incident detection environment built with Wazuh and Grafana.
SAGE X3 ERP Migration
Migrated data from 18 legacy databases at Génie Flexion into the SAGE X3 ERP.
Secure business applications
Overhaul of 4 internal tools plus a CRM for 100+ users: MFA, RBAC, audit trail.