Skip to content
Loris Sefsaf

Background

I started in systems and network administration as an apprentice, then specialised in security. I have worked at IT service firms, at an MSSP, and in-house for a professional order in Quebec. That mix helps me understand both your team’s technical constraints and the questions your leadership is asking.

Experience

  1. 2025 – now

    Cybersecurity consultant

    ALPEN IT · Lyon · contract
    • Deployed and operated SIEM/XDR platforms (Sekoia.io) for SMB and MSP clients, including detection rule tuning and SOC integration.
    • Built SOC processes: incident response procedures (HarfangLab EDR, Entra ID/AD, WatchGuard), decision trees and daily security checks.
    • Ran internal and external penetration tests, followed by remediation roadmaps matched to each client's risk tolerance.
    • Led VPN-to-ZTNA migrations, redesigning network access architecture around zero trust.
    • Assessed security posture across the CISSP domains for clients of every industry and size.
  2. 2023 – 2024

    IT security analyst

    Ordre des ingénieurs du Québec · Montreal
    • Led cybersecurity operations for an estate of 250+ workstations and 80+ virtual machines.
    • Ran EDR monitoring, vulnerability scanning and vulnerability management.
    • Raised staff awareness through cybersecurity training and phishing simulations.
    • Implemented security tooling for the organisation: secrets management, PAM, security monitoring.
    • Technical lead for Quebec Law 25 compliance: risk assessments and input on procurement specifications.
    • Combined automated threat detection with human analysis of alerts to make defence more efficient.
  3. 2020 – 2022

    Cybersecurity engineer

    Prorexem · Saint-Étienne
    • Assessed vulnerabilities and secured infrastructure for multiple clients.
    • Rolled out multi-factor authentication, VLAN segmentation and Active Directory hardening.
    • Wrote incident response procedures, business continuity and disaster recovery plans.
    • Deployed and maintained hardware firewalls, WAFs and endpoint protection.
  4. 2018 – 2020

    Systems & security engineer, apprenticeship

    Soluceo DGPF · Grenoble
    • Configured network security solutions and administered web servers hosting critical client services.
    • Handled emergency interventions after cyberattacks as part of business continuity plans.
    • Restored systems quickly to keep downtime to a minimum during incidents.
  5. 2015 – 2018

    Network & systems administrator, apprenticeship

    Prorexem · Saint-Étienne
    • Installed and managed systems and networks, providing L2/L3 support.
    • Administered Windows and Linux environments with a focus on secure configuration and performance.

Education

  1. 2018 – 2020

    ENSIMAG · Grenoble INP

    Professional master's, enterprise computer networks
  2. 2017 – 2018

    IUT Lyon 1

    Professional bachelor's, network operations and security

Certifications

Tools & frameworks

SIEM / XDR
Sekoia.io, Singularity XDR
EDR
SentinelOne, HarfangLab, Trend Micro
Cloud & containers
Azure, AWS, Kubernetes, Docker, Helm, Trivy
Perimeter
Palo Alto, WatchGuard, Imperva
Identity
AD, Entra ID, MFA, PAM, ZTNA
Offensive
Kali, Metasploit, Burp Suite, Tenable
Frameworks
MITRE ATT&CK, ISO 27001, NIST CSF, NIS2, GDPR, ANSSI

Writing

Let's talk about your situation.

In thirty minutes we go over your risks and priorities, and I'll tell you whether I can help. No commitment.

Book a 30-minute call