Yassine KB
@yassinekb
Senior cybersecurity expert specializing in ISO, risk management, and third-party risk governance.
What I'm looking for
I am a senior cybersecurity expert with over 10 years of national and international experience in information system security, specializing in auditing, risk assessment, business continuity, physical security, human safety, and regulatory compliance. I hold multiple certifications including CISM, ISO 27001 Senior Lead Implementer/Auditor, ISO 22301 Lead Implementer, ISO 27005 Risk Manager, CCSK, and Azure fundamentals, and I combine hands-on operational leadership with governance and project management experience.
My recent work includes Third Party Risk Management, automated cyber monitoring, centralized TPRM dashboards, phishing program launches, and vendor assessments, as well as designing audit strategies, maturity assessments, EBIOS-based risk analyses, SOC service delivery management, and achieving ISO 27001 certification for major sites. I deliver consultant training, commercial enablement materials, and operational improvements to strengthen clients' security posture and resilience.
Experience
Work history, roles, and key accomplishments
Senior Cybersecurity Expert
Freelancer
May 2024 - Present (1 year 4 months)
Delivered third-party risk management (DORA/ICT) and compliance consulting, built a centralized TPRM dashboard and launched an enterprise phishing campaign, improving vendor risk visibility and detection capabilities.
Defined secure project integration practices and performed cybersecurity maturity and EBIOS-based risk assessments across multiple clients, producing audit strategies, maturity reports and consultant training to improve service delivery.
Led ISO 27001 and HDS implementation and audits, managed risk mapping and EBIOS Agile risk analyses, facilitated stakeholder workshops and supported certification processes to achieve compliance.
Managed physical security, access control and business continuity for a major client, led a 15+ person team, implemented ISO 27001 physical controls and achieved ISO 27001 certification in 2017.
Education
Degrees, certifications, and relevant coursework
ESIEE Paris
Advanced Master's degree, Engineering / Information Systems Security
Completed an Advanced Master's degree at ESIEE Paris in 2018.
Polytech Nancy
Engineering degree, Engineering
Obtained an engineering degree from Polytech Nancy in 2012.
Higher Institute of Maritime Studies
Master's degree, Maritime Studies
Earned a Master's degree from the Higher Institute of Maritime Studies in 2010.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Interested in hiring Yassine?
You can contact Yassine and 90k+ other talented remote workers on Himalayas.
Message YassineFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
