Yanis Deriche
Cybersecurity Engineer
Cybersecurity and telecommunications engineer specialized in cloud security, SOC, penetration testing, GRC, and AI security. Passionate about securing enterprise and industrial infrastructures through offensive and defensive operations.
Project Categories
Governance, risk, compliance, SOC investigations, red team assessments, network security, and AI security.
GRC & CISO
NIST 800-171, ISO 27001, ITGC, ERP access control, COBIT, risk management, and incident response planning.
SOC & Incident Response
Cobalt Strike investigation, WSH RAT analysis, and SIEM-driven incident response.
Red Teaming
Azure red team assessments, phishing operations, and adversarial simulation.
Network & Infrastructure
Enterprise Wi-Fi hardening with WPA3-Enterprise, 802.1X, and MikroTik NPS architectures.
AI Security
AI red teaming, ML security pipelines, and adversarial ML assessments.
View All Projects
Browse the complete portfolio across all security domains.
Cybersecurity & Telecommunications Engineer
Experience in SOC operations, penetration testing, red teaming, forensics, malware analysis, GRC, and SIEM investigations, with a particular interest in AI agent orchestration and offensive security automation.
Cybersecurity engineer with hands-on experience in:
Experience
Self-Employed Security Consultant
- Delivered NIST SP 800-171 readiness assessments and gap analyses for SME compliance programs.
- Conducted penetration testing and SOC advisory engagements across web, infrastructure, and cloud environments.
- Developed security architecture reviews and remediation roadmaps, reducing client risk exposure by an average of 40%.
AI Security Engineer (Internship)
- Conducted adversarial assessments against AI-driven systems, identifying prompt injection and model evasion vulnerabilities.
- Designed and trained ML models for intrusion detection (Random Forest 99.33%) and malware classification (CNN ResNet50 88.8%).
- Authored a 90-page internship report documenting ML security pipelines, threat models, and OWASP ML Top 10 mappings.
Network & Security Analyst
- Architected segmented enterprise networks using VLAN isolation and 802.1X to reduce lateral movement risks.
- Deployed hardened corporate Wi-Fi infrastructure with WPA3-Enterprise and RADIUS authentication.
- Configured and maintained SIEM systems, reducing mean detection time by 35% through optimized correlation rules.
Certifications & Achievements
AzRTS
Azure Red Team Specialist
AzureMCRTA
Multi-Cloud Red Team Analyst
CloudMCBTA
Multi-Cloud Blue Team Analyst
CloudWeb-RTA
Web Red Team Analyst
WebAPI-RTA
API Red Team Analyst
APICOPO
Certified Offensive Phishing Operator
PhishingLet's Defend
Ranked #1 — Algeria
Blue TeamCCNA
Cisco Certified Network Associate
CiscoEducation
Master Réseau & Telecom
UMBB Faculty of Technology
Bachelor Cybersecurity
ESGI France
Licence Industrial Safety & Security
UMBB Faculty of Technology
BTS-AEC Computer Networks
Cegep de Sherbrooke
How to Verify This Portfolio
Every claim, certification, and assessment in this portfolio is independently verifiable. Here is how.
Certifications
Click the ↗ icon on any certification card to verify credentials directly on CyberWarfare Labs. Let's Defend ranking and CCNA are verifiable via platform profile.
Case Study Data
All findings reference published standards: NIST SP 800-171 Rev 2, ISO 27001:2022, COBIT 2019, MITRE ATT&CK v13, PCI DSS, and others. Framework badges on each case study show the source standard.
Source Code & Evidence
Full repository and evidence artifacts available on GitHub. Includes assessment reports, audit findings registers, and red team deliverables.
Direct Verification
Contact me via LinkedIn or email for detailed evidence walkthroughs, methodology explanations, or professional reference checks.