Skip to content
View abedellah's full-sized avatar

Block or report abedellah

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
abedellah/README.md
Mohamed Abdellah Lagrini, cybersécurité, GRC, IAM, DevSecOps

mohamedabdellahlagrini@gmail.com  ·  LinkedIn  ·  Rabat, Maroc

$ whoami
mohamed-abdellah-lagrini        # élève ingénieur, cybersécurité & infrastructures réseaux

$ cat objectif.txt
stage PFE · GRC / Audit IT / Cyber Risk · à partir de février 2027 · Maroc ou France

$ ls projets/
smsi-iso27001-ebios-rm/   Clavigil/   SentinelAI/   Micro_SecureAi-/   Filahia/

English: final-year cybersecurity engineering student in Rabat, looking for a 2027 end-of-studies internship in GRC, IT audit or cyber risk.


Mon fil rouge

Je m'intéresse à la façon dont la sécurité se gouverne, se prouve et s'automatise.

Cycle de vie de la sécurité : gouvernance, risques, contrôles, preuves, amélioration continue, avec les projets associés à chaque étape

Gouvernance, risque, conformité
NIST CSF 2.0 ISO/IEC 27001 EBIOS RM SoA analyse d'écarts indicateurs

Identités et accès (IAM)
JML SoD recertification OIDC JWT Keycloak OpenLDAP

Détection
IDS RandomForest CICIDS2017 tableau de bord SOC Isolation Forest

Infrastructures et DevSecOps
Kubernetes Docker GitHub Actions Trivy Checkov FortiGate Active Directory


Projets à la une

GRC ISO 27001 EBIOS RM
SMSI ISO/IEC 27001:2022 pour CelerPay, un établissement de paiement fictif : les cinq ateliers EBIOS RM, déclaration d'applicabilité des 93 mesures (calculée), audit interne, revue de direction, feuille de route sur 18 mois.

IAM Python Keycloak OpenLDAP
Gouvernance du cycle de vie des identités : RH vers annuaire et IdP, six contrôles de réconciliation, séparation des tâches, recertification, CI complète.

Détection scikit-learn Flask
Détection d'intrusions (RandomForest sur CICIDS2017) avec tableau de bord SOC et architecture SQL + MongoDB + Redis.

DevSecOps Kubernetes
Microservices sécurisés : identité Zero-Trust, détection d'anomalies, observabilité, pipeline à quatre contrôles de sécurité. Projet d'équipe ; ma part : déploiement, supervision, pipeline.

Django scikit-learn OCR
Application web de recommandation de cultures à partir de données de sol et de climat, avec saisie par OCR, en français et en arabe.


Parcours

Période Étape
2024 à 2027 EMSI, Rabat : cycle ingénieur, Cybersécurité et Infrastructures Réseaux
2026 Stage GRC, administration publique : maturité NIST CSF 2.0 sur 106 sous-catégories, correspondance ISO 27001, indicateurs de pilotage, feuille de route
2025 Stage sécurité des infrastructures réseau : segmentation VLAN, FortiGate, Active Directory, politiques d'accès fondées sur l'identité (FSSO)
2022 à 2024 Classes préparatoires MP

Certifications

  • ISO/IEC 27001:2022 Information Security Associate (SkillFront, 2026)
  • Google Cybersecurity Professional Certificate (Coursera, 2026)
  • Microsoft SC-900, Security, Compliance and Identity Fundamentals (en préparation)

Outils

Python SQL Bash PowerShell Docker Git GitHub Actions Linux Windows Server GNS3

Langues : arabe (langue maternelle) · français (maîtrise professionnelle) · anglais (courant)


Un échange, un stage, une question sur un projet ?
Écrivez-moi ou retrouvez-moi sur LinkedIn.

Pinned Loading

  1. Clavigil Clavigil Public

    Identity lifecycle governance: JML provisioning, reconciliation, SoD checks and access recertification (OpenLDAP + Keycloak + PostgreSQL)

    Python 2

  2. Filahia Filahia Public

    Filahia: web app recommending the best crop from soil and climate data (scikit-learn), with OCR input. French and Arabic.

    HTML 2

  3. Micro_SecureAi- Micro_SecureAi- Public

    Microservices security platform on Kubernetes: Keycloak zero-trust identity, Isolation Forest anomaly detection, DevSecOps pipeline and Prometheus / Loki / Grafana observability

    Python 2

  4. SentinelAI SentinelAI Public

    Real-time intrusion detection system: RandomForest on CICIDS2017 (15 attack types), SOC dashboard, polyglot SQL + MongoDB + Redis architecture

    Python 2

  5. Riskarium Riskarium Public

    Small risk register and ISO/IEC 27001 + NIST CSF mapping generator, with a fully sourced case study of the 2024 Free Mobile / Free data breach

    Python 1