Back to portfolio

Technical Arsenal

The stack behind the security.

A practical map of the languages, systems and governance methods I use — from low-level engineering and automation to security-by-design and GRC work.

Build, ship, automate

DevSecOps & Automation

Containers

Docker

SecureFlow

Containerized services and a production-inspired secure delivery workflow.

Workflow

Git & GitHub

Collaboration

Source control, readable project history and public technical documentation.

Security

Secure CI/CD

SecureFlow

Automated security checks made visible alongside the delivery workflow.

Automation

Excel & VBA

Security reporting

KPI dashboards, data consolidation and recurring governance deliverables.

Understand the foundations

Security & Systems

OS

Linux & Bash

Daily learning

Systems exploration, network tooling and practical security experimentation.

C
Low-level

C Programming

EPITA systems

System programming, performance-aware code and kernel-oriented coursework.

Network

Network Security

Security engineering

DNS, TLS, HTTP headers and exposed-surface checks through internal tooling.

Lab work

Kernel Concepts

Isolated VM lab

Educational Linux-kernel work for defensive understanding of system behaviour.

Make useful things

Software & Web

Software

Python

Team project

Built a cooperative game with Poetry, logging, documentation and clean project structure.

Go
Security tool

Golang

CyberTool

Concurrent internal utility for DNS, TLS, HTTP response and security-header checks.

iOS

Swift & SwiftUI

Budgify

Privacy-first mobile app with local data, device authentication and on-device learning.

Product

Web Interfaces

Portfolio & projects

Responsive interfaces, accessible interaction patterns and technical storytelling.

Connect risk to reality

Governance, Risk & Compliance

Certified

EBIOS RM

Risk management

ANSSI methodology for structured risk analysis and security decision support.

ISMS

ISO 27001

GRC foundations

Security policies, risk treatment, evidence and continuous-improvement thinking.

Regulation

NIS2 & DORA

Readiness support

Contributed to compliance topics, reporting material and remediation follow-up.

Third-party

Supplier Security

Assessment support

Security questionnaires, contractual topics and practical vendor-risk follow-up.

Let’s connect

Building something at the crossroads of security and software?

I’m always happy to exchange about engineering, GRC, DevSecOps or a project worth making safer.

Book a chat