AccessibilitéAccessibility
Alternant en cybersécuritéCybersecurity apprentice candidate

Construire des systèmes sécurisés.
Protéger ce qui compte.
Building secure systems.
Protecting what matters.

Élève ingénieur à l’ESIEA, spécialisé en cybersécurité, je recherche une alternance de 36 mois en analyse de vulnérabilités, détection et automatisation. Je mobilise Python, Linux/Windows et Active Directory dans des projets d’analyse de journaux, de corrélation d’événements, de tuning de règles et de déploiement SIEM. Rythme : 2 semaines en entreprise / 2 semaines à l’école.

ESIEA engineering student specializing in cybersecurity, seeking a 36-month apprenticeship in vulnerability analysis, detection and automation. I use Python, Linux/Windows and Active Directory in log analysis, event correlation, rule tuning and SIEM deployment projects. Schedule: 2 weeks in the company / 2 weeks at school.

Voir mes projetsView projects Me contacterContact me Voir mon CVView my CV
01 // À proposAbout

À proposAbout me

Analyse, détection, automatisation.Analysis, detection, automation.
 ___       __   ___  ________  ________  _____ ______   ___     
|\  \     |\  \|\  \|\   __  \|\   __  \|\   _ \  _   \|\  \    
\ \  \    \ \  \ \  \ \  \|\  \ \  \|\  \ \  \\\__\ \  \ \  \   
 \ \  \  __\ \  \ \  \ \   __  \ \  \\\ \ \  \\|__| \  \ \  \  
  \ \  \|\__\_\  \ \  \ \  \ \  \ \  \\\ \ \  \    \ \  \ \  \ 
   \ \____________\ \__\ \__\ \__\ \_______\ \__\    \ \__\ \__\
    \|____________|\|__|\|__|\|__|\|_______|\|__|     \|__|\|__|
$ whoami ___       __   ___  ________  ________  _____ ______   ___     
|\  \     |\  \|\  \|\   __  \|\   __  \|\   _ \  _   \|\  \    
\ \  \    \ \  \ \  \ \  \|\  \ \  \|\  \ \  \\\__\ \  \ \  \   
 \ \  \  __\ \  \ \  \ \   __  \ \  \\\ \ \  \\|__| \  \ \  \  
  \ \  \|\__\_\  \ \  \ \  \ \  \ \  \\\ \ \  \    \ \  \ \  \ 
   \ \____________\ \__\ \__\ \__\ \_______\ \__\    \ \__\ \__\
    \|____________|\|__|\|__|\|__|\|_______|\|__|     \|__|\|__|
$ whoami

Je suis Jean Koumou, élève ingénieur à l’ESIEA spécialisé en cybersécurité. Je travaille sur l’analyse de journaux, la corrélation d’événements, le tuning de règles et le déploiement SIEM. Mon socle technique couvre Python, Linux, Windows et Active Directory. Je recherche une alternance de 36 mois orientée analyse de vulnérabilités, détection et automatisation. I am Jean Koumou, an ESIEA engineering student specializing in cybersecurity. I work on log analysis, event correlation, detection rule tuning and SIEM deployment. My technical foundation includes Python, Linux, Windows and Active Directory. I am seeking a 36-month apprenticeship focused on vulnerability analysis, detection and automation.

30+ déploiements & configurations sécuriséessecure deployments & configurations
SIEMActive DirectoryIDSEDRroutagesegmentation réseau
15+ campagnes d’attaque identifiées & reconstruitesattack campaigns identified & reconstructed
Kerberoastingbruteforcescan réseauélévationmouvement latéral
4 projets techniques majeurs menésmajor technical projects led
1 outil métier open source développé : Active Directory Forensic Toolkit (ADFT)open-source security tool built: Active Directory Forensic Toolkit (ADFT) Architecture : ingestion EVTX/JSON → normalisation → corrélation → timeline → mapping
MITRE ATT&CK → rapports JSON/STIX.
Architecture: EVTX/JSON ingestion → normalization → correlation → timeline → MITRE ATT&CK mapping → JSON/STIX reports.
EVTXJSONMITRE ATT&CKIoC/TTPCorrélationTimelineSTIX
02 // ParcoursTimeline
2026 – 2029 · Ivry-sur-Seine
Cycle ingénieur ESIEA (Bac +5)ESIEA Engineering Program (Master's level)
ESIEAESIEA
École supérieure d’informatique, électronique et automatique · cursus en apprentissage.Graduate school of computer science, electronics and automation · apprenticeship track.
10/2025 – 2026 · Paris
Bachelor Administrateur Infrastructures sécuriséesBachelor's in Secure Infrastructure Administration
StudiStudi Formation à distanceRemote learning
Administration systèmes et réseaux, sécurisation des infrastructures.Systems and network administration, infrastructure security.
2023 - 2025
BTS CIEL - Cybersécurité, informatique, réseaux, électroniqueBTS CIEL - Cybersecurity, IT, networks and electronics
Lycée Blaise PascalLycée Blaise Pascal, Longuenesse
Option ER : cybersécurité et informatique industrielle.ER track: cybersecurity and industrial IT.
2020 - 2023
Baccalauréat Sciences MathématiquesBaccalaureate : Mathematics & Sciences
Lycée Henri SylvozLycée Henri Sylvoz : Moanda, GabonLycée Henri Sylvoz : Moanda, Gabon
Spécialités : Mathématiques et Physique. Base solide en raisonnement, modélisation et rigueur scientifique. Specialties: Mathematics and Physics. Strong foundations in reasoning, modelling and scientific rigor.
03 // ExpériencesExperience
Analyste Cyber Threat IntelligenceCyber Threat Intelligence Analyst
CyberV (Association de cybersécurité) · À distanceCyberV (Cybersecurity association) · Remote
04/2026 – aujourd’hui04/2026 – present
Cellule : OSINT/CTI d’aide aux victimes de cyberfraudes.
Analyse : e-mails, URL, domaines et comptes suspects ; qualification d’IOC via OSINT.
Résultat : rapports exploitables pour évaluer la menace et orienter les mesures de protection.
Team: OSINT/CTI support for cyberfraud victims.
Analysis: suspicious emails, URLs, domains and accounts; IOC qualification through OSINT.
Outcome: actionable reports used to assess threats and guide protection measures.
OSINTCTIIOCE-mail / URLThreat reporting
Technicien Support Microsoft 365Microsoft 365 Support Technician
Elecinfinix (Concepteur électronique) · Freelance · ParisElecinfinix (Electronics designer) · Freelance · Paris
01/2025 – 08/202501/2025 – 08/2025
Périmètre : support IT N1/N2 de 5 utilisateurs sur postes Windows, Microsoft 365 et réseau local.
Gestion : incidents, comptes, droits et MFA ; documentation des problèmes récurrents.
Résultat : accès sécurisés, procédures fiabilisées et utilisateurs sensibilisés aux cyberrisques.
Scope: Level 1/2 IT support for 5 users across Windows workstations, Microsoft 365 and the local network.
Management: incidents, accounts, permissions and MFA; documentation of recurring issues.
Outcome: secured access, more reliable procedures and users made aware of cyber risks.
WindowsMicrosoft 365MFAAccess rightsSupport N1/N2Documentation
Technicien informatiqueIT Technician
SYSDECO (Prestataire IT) · WardrecquesSYSDECO (IT services provider) · Wardrecques
05/2024 – 07/202405/2024 – 07/2024
Périmètre : support IT terrain sur un parc d’environ 25 postes et 15 utilisateurs.
Interventions : résolution d’incidents et préparation des postes : configuration, accès, applications et réseau.
Résultat : parc opérationnel, sauvegardes suivies et procédures documentées.
Scope: on-site IT support across about 25 workstations and 15 users.
Work: incident resolution and workstation preparation: configuration, access, applications and network.
Outcome: operational IT estate, monitored backups and documented procedures.
WindowsIT supportNetworkWorkstation setupBackupsDocumentation
04 // Projets TechniquesTechnical Projects
ADFT console screenshot AD
Active Directory Forensic Toolkit (2026)
ÉPINGLÉPINNED ✓ DONE

Outil Python d’investigation forensique Active Directory : ingestion EVTX/JSON, normalisation, corrélation d’événements, reconstruction de timeline, mapping MITRE ATT&CK et génération de rapports structurés JSON/STIX. Python-based Active Directory forensic investigation tool: EVTX/JSON ingestion, normalization, event correlation, timeline reconstruction, MITRE ATT&CK mapping and structured JSON/STIX reporting.

PythonEVTXJSONSTIXMITRE ATT&CKIoC/TTPTimeline
Déploiement SIEM Wazuh sur AD SOC
Déploiement SIEM Wazuh sur AD (GOAD) (2026)
ÉPINGLÉPINNED ✓ DONE

Déploiement d’un SIEM Wazuh sur une infrastructure Active Directory de lab (GOAD) avec collecte Windows/Sysmon, règles de détection, tableaux de bord, alerting et validation par scénarios offensifs contrôlés. Deployment of a Wazuh SIEM on a lab Active Directory infrastructure (GOAD) with Windows/Sysmon log collection, detection rules, dashboards, alerting and validation through controlled offensive scenarios.

WazuhSIEMGOADActive DirectorySysmonDetection
Audio sur Ethernet AUDIO
Audio sur Ethernet temps réel (fin de cycle)
✓ DONE

Conception d’une chaîne audio temps réel sur Ethernet avec synchronisation PTP / IEEE 1588, flux RTP L24 / AES67, validation latence/jitter et intégration matérielle autour d’un contrôleur Teensy 4.1. Design of a real-time audio-over-Ethernet chain with PTP / IEEE 1588 synchronization, RTP L24 / AES67 streams, latency/jitter validation and hardware integration around a Teensy 4.1 controller.

Teensy 4.1PTP 1588AES67RTP L24DSPPCB
Robot Delta ROBOT
Robot Delta : vision & communications sécurisées (2025)
✓ DONE

Projet de robotique embarquée avec vision OpenCV, architecture client/serveur sécurisée et supervision des communications entre poste de contrôle et robot. Embedded robotics project with OpenCV vision, secured client/server architecture and communication monitoring between the control station and the robot.

OpenCVPythonClient/ServerSécurisationVision
05 // Certifications
Cisco CyberOps : SOC Operations 2026
Cisco Networking Academy
NIST CSF 2.0 : Managing Risks 2026
NIST / Coursera
MOOC Cybersécurité ANSSI OBTENU
SecNumacadémie
PIX : Compétences numériquesDigital skills OBTENU
PIX.fr
06 // CompétencesSkills
DéveloppementDevelopment
Python · PowerShell · Bash · GitPython · PowerShell · Bash · Git
PythonPowerShellBashGit
Systèmes & DevOpsSystems & DevOps
Linux · Windows · Active Directory · Docker · AnsibleLinux · Windows · Active Directory · Docker · Ansible
LinuxWindowsActive DirectoryDockerAnsible
Détection & investigationDetection & investigation
SIEM · EDR · Sysmon · SigmaSIEM · EDR · Sysmon · Sigma
SIEMEDRSysmonSigma
Réseaux & reconnaissanceNetworks & reconnaissance
TCP/IP · DNS · Wireshark · Nmap · ShodanTCP/IP · DNS · Wireshark · Nmap · Shodan
TCP/IPDNSWiresharkNmapShodan
LanguesLanguages
Français natif · Anglais B2Native French · English B2
Français / French · natifAnglais / English · B2
07 // Upskills

Ressources solides pour pratiquer, faire de la veille et enrichir l’analyse. Solid resources to practice, monitor and enrich analysis.

CyberDefenders
CyberDefenders ★
Blue Team · SOC · DFIR
Labs basés sur incidents, write-ups, investigation réseau et malware.Incident-based labs, write-ups, network and malware investigations.
Freemium→ cyberdefenders.org
MISP
MISP ★
CTI · IoC Sharing
Partage et enrichment IoC, taxonomies, feeds et workflows d’investigation.IoC sharing and enrichment with taxonomies, feeds and investigation workflows.
Open Source→ misp-project.org
Shodan
Shodan
OSINT · Exposure
Recherche d’actifs exposés et fingerprinting, utile pour OSINT responsable.Search exposed assets and fingerprints, useful for responsible OSINT.
Freemium→ shodan.io
08 Contact
Travaillons ensemble Let's work together

Un projet, un poste,
une question technique ?
A project, a role,
a technical question?

Je recherche une alternance de 36 mois en analyse de vulnérabilités, détection et automatisation. Je suis disponible pour échanger sur les missions SOC, SIEM, Active Directory, OSINT/CTI et scripting sécurité. I am seeking a 36-month apprenticeship in vulnerability analysis, detection and automation. I am available to discuss SOC, SIEM, Active Directory, OSINT/CTI and security scripting roles.

DisponibleAvailable · Alternance 36 mois · analyse, détection, automatisation36-month apprenticeship · analysis, detection, automation · 2 semaines entreprise / 2 semaines école2 weeks company / 2 weeks school · Paris, France
jean.koumou@et.esiea.fr +33 7 72 34 05 76 LinkedIn GitHub Télécharger CVDownload CV