Mikail ALBAYRAK

Systems & Cybersecurity Engineer

Open source SOC, security audits and vulnerability management, Linux infrastructure and automation. Available for full-time positions and freelance work.

Paris, France · Available for full-time & freelance work

About me

Professional portrait of Mikail ALBAYRAK

As a Systems & Cybersecurity Engineer, I design, secure and automate Linux and virtualization infrastructures (Proxmox, VMware).

My scope covers open source SOC (Wazuh, MISP, DFIR-IRIS, Cortex), security audits and vulnerability management, as well as automation with Python and Bash. I run my projects end to end: design, deployment, hardening, monitoring and documentation.

Available for a full-time position or freelance assignments — systems engineering, cybersecurity, or websites and visual identities for small businesses.

5+

Years of IT experience

7+

Certifications

15+

Projects delivered

Experience

Oct. 2025 - Present Permanent

Systems & Cybersecurity Engineer - NETCOM GROUP

Pantin, Île-de-France · Hybrid

Hired on a permanent contract following my apprenticeship within the same team.

SOC & Cybersecurity

  • Designed and deployed a complete open source SOC: Wazuh (SIEM/EDR), DFIR-IRIS (incident management), MISP (threat intelligence) and Cortex (automated observable analysis).
  • Built a multi-tenant Wazuh infrastructure for clients: centralized syslog collection, custom decoders and rules, automated alerting to Webex and by email.
  • Performed advanced security audits (internal and external): asset mapping, vulnerability analysis, reporting and remediation follow-up.

Systems & Infrastructure

  • Contributed to the design and deployment of a Proxmox virtualization infrastructure from the ground up (cluster, storage, backups, monitoring).
  • Industrialized configuration deployment across 20,000+ MikroTik routers, with systematic hardening and security rules.

Automation & AI

  • Set up a fully local open source RAG: self-hosted LLM and vector indexing to query internal documentation.
  • Developed Python and Bash scripts to automate administration and monitoring tasks.

Oct. 2023 - Sept. 2025 Apprenticeship

Systems & Cybersecurity Engineer - NETCOM GROUP

Pantin, Île-de-France · Hybrid

Systems & Infrastructure

  • Contributed to the evolution of internal services (mostly Linux-based open source solutions).
  • Installed, migrated and maintained system infrastructures.
  • Deployed NetBox with automatic device synchronization through several Python scripts (VMware integration, network discovery, IP assignment, etc.).
  • Deployed and configured a FreeRADIUS environment (with Daloradius), MariaDB, MaxScale and Nginx.
  • Rolled out Dell OpenManage Enterprise for hardware health monitoring, combined with a proactive alerting policy on critical equipment.
  • Produced technical documentation and complete infrastructure modeling.
  • Monitored system performance, capacity planning, and hardware fleet renewal.

Cybersecurity

  • Performed an internal and external audit of the company's IT assets.
  • Deployed a vulnerability scanning environment with OpenVAS in a Kali Linux VM (Greenbone Community Edition containers).
  • Analyzed detected vulnerabilities, produced remediation reports and documented recommendations.
  • Ran security awareness phishing campaigns with GoPhish, using custom scenarios and statistical tracking (click rate, compromise rate, etc.).
  • Contributed to writing a test plan to validate the security of critical systems.

Technology Watch & Automation

  • Ran continuous technology watch on open source tools and DevSecOps practices.
  • Wrote Bash and Python scripts to automate administrative and monitoring tasks.

Sept. 2022 - Sept. 2023 Apprenticeship

Systems Administrator - French Karate Federation

39 Rue Barbès, 92120, Montrouge · On-site

Infrastructure & Systems

  • Maintained IT hardware (desktops and laptops, printers, peripherals).
  • Administered virtual servers with VMware (AD, Linux, Windows Server).
  • Managed the Exchange On-Premise mail server.
  • Implemented network security rules with WatchGuard (firewall, filtering).
  • Monitored the whole fleet with GLPI and WithSecure (antivirus/EDR).

Support & Projects

  • Provided level 1-2 technical support to users.
  • Took part in a data migration project.
  • Helped improve internal maintenance and ticket management procedures.

Tools & Languages

  • PowerShell, Bash, Python (diagnostic and automation scripts).
  • Environments: VMware ESXi, Active Directory, Exchange, GLPI, WatchGuard, WithSecure.

Sept. 2020 - Aug. 2022 Apprenticeship

Network & Telecom Technician - GRDF

95 Rue de Maubeuge, 75010 Paris

Network & Telecommunications

  • Optimized the nationwide fleet of data concentrators (checked installations per municipality to guarantee proper data collection).
  • Tracked collection anomalies and coordinated with local teams.

Data & Activity Tracking

  • Took part in data cleansing within the GRDF database (intervention reports).
  • Coordinated with several information systems to ensure cross-department data consistency and integrity.

Training & Automation

  • Trained an internal supervision team and handed over skills to ensure activity continuity.
  • Built an activity tracking dashboard (Excel / internal tools) to monitor key indicators.

Education

2023 - 2025

Master's degree in Cybersecurity - Sup de Vinci

2022 - 2023

Bachelor's degree in Systems, Networks & Cloud - Sup de Vinci

2020 - 2022

Two-year technical degree (BTS) in IT Services for Organizations - Lycée privé des Petits Champs

Certifications

Certified Ethical Hacker (CEH)

Recognized certification in offensive cybersecurity and penetration testing.

Google Cybersecurity

IT security specialization following Google standards.

CCNAv7

Switching, routing and wireless fundamentals. Core skills in Cisco network infrastructure.

ANSSI: SecNumAcadémie

Cybersecurity training by the French National Cybersecurity Agency (ANSSI).

Cisco: Introduction to IoT

Fundamentals of the Internet of Things and its implications.

Cisco: Cybersecurity Essentials

Core cybersecurity principles following Cisco standards.

Cisco: Introduction to Cybersecurity

Introduction to essential cybersecurity concepts and practices.

Projects & Achievements

Wazuh MISP DFIR-IRIS Cortex

Open Source SOC

Design and deployment of a complete SOC: Wazuh SIEM/EDR, DFIR-IRIS incident management, MISP threat intelligence and automated observable analysis with Cortex.

  • Centralized detection (SIEM/EDR)
  • Incident response workflow
  • Integrated threat intelligence
Wazuh Syslog Webex API

Multi-Client Security Monitoring

Multi-tenant Wazuh infrastructure for clients: centralized syslog collection, custom decoders and rules, automated alerting to Webex and by email.

  • Centralized syslog collection
  • Custom decoders & rules
  • Real-time Webex & email alerts
MikroTik RouterOS Automation

Secure Deployment of 20,000 Routers

Industrialized configuration deployment across 20,000+ MikroTik routers, with systematic hardening and security rules.

  • 20,000+ devices configured
  • Systematic hardening
  • Industrialized rollout
Proxmox Linux High Availability

Proxmox Virtualization Infrastructure

Contribution to the design and deployment of a Proxmox infrastructure from the ground up: cluster, storage, backups and monitoring.

  • High-availability cluster
  • Backup strategy
  • Integrated monitoring
Python Local LLM RAG

Local Open Source RAG

Fully self-hosted RAG documentation assistant: local LLM and vector indexing of internal documentation.

  • 100% local — no data leaves
  • Vector indexing
  • Natural language search
Branding Website Print

Branding & Website - Café Olympia

Full visual identity for a café in Pantin: menu with QR code, flyers, print material and a showcase website.

  • Digital menu with QR code
  • Flyers & print material
  • Responsive showcase website
Branding SEO Social media

Branding & Website - A-BAT

End-to-end support for a construction company: logo, signage, t-shirts, sales deck, SEO-optimized website and social media launch.

  • Full identity (logo, print, apparel)
  • a-bat.fr website + SEO
  • Social media creation & posts
HTML5 CSS3 JavaScript PWA

Premium Website - Azar Coiffeur

End-to-end build of a high-performance showcase website for a hair salon, with deep optimizations.

  • Lighthouse score 95+/100
  • Mobile-first & SEO optimized
  • 93% page weight reduction
Python OpenVAS Kali Linux

Vulnerability Scanning Platform

Deployment and automation of OpenVAS with automatic report generation and custom Python scripts.

  • Automated multi-target scans
  • Custom PDF reports
  • Real-time dashboard
Kali Linux Nmap Metasploit

Internal & External Audit - NETCOM GROUP

Full security audit with Kali Linux: port scans, vulnerability analysis, exploitation and remediation.

  • Port scanning with Nmap
  • Exploitation with Metasploit
  • Reporting & remediation
GoPhish Phishing Analytics

Phishing Awareness Campaigns

GoPhish deployment for internal awareness campaigns with custom scenarios and result analysis.

  • Tailor-made scenarios
  • Advanced tracking & statistics
  • Integrated training
Python NetBox VMware

NetBox Infrastructure Sync

Python scripts for automatic device synchronization between VMware and NetBox, with network discovery and IPAM management.

  • VMware ↔ NetBox sync
  • Automatic network discovery
  • Integrated IPAM
FreeRADIUS MariaDB Nginx

RADIUS Authentication Infrastructure

Full FreeRADIUS deployment with Daloradius, MariaDB and MaxScale load balancing for high availability.

  • High availability
  • Daloradius web interface
  • MariaDB load balancing
Dell OME Monitoring PowerShell

Dell OME Hardware Monitoring

Dell OpenManage Enterprise rollout with proactive alerting and custom dashboards for hardware monitoring.

  • Real-time alerts
  • Custom dashboards
  • Predictive maintenance
Python Excel API

Activity Tracking Dashboard

Automated reporting system with API integration and dashboard generation for key indicator monitoring.

  • Automatic data collection
  • Scheduled reports
  • Real-time KPIs

Skills

Administration

Management and optimization of IT infrastructures.

Linux (Debian/Ubuntu)
VMware / Proxmox
Active Directory
PowerShell / Bash

Cybersecurity

Security measures implementation and network monitoring.

Pentest / Kali
SIEM / Logs
Firewalls / VPN
Vuln. Assessment

Development

Building and optimizing applications and automations.

Python
JavaScript / Web
Docker / K8s
Git / CI/CD

Homelab

I self-host all my personal and professional services on an infrastructure I manage end to end — my permanent training ground for systems and security.

Proxmox Virtualization

The lab's foundation: virtual machines and containers, snapshots and backups, managed from the command line and through the API.

Personal Cloud & NAS

Self-hosted Nextcloud for files and synchronization, backed by a NAS for storage and backups.

Jellyfin Media Server

Streaming media server, run like a production service: access rights, updates and monitoring.

Pre-production Environment

Test environment replicating production to validate updates and configurations before deployment.

Business Applications

Invoicing/quotes application and a prospecting tool (Prospect Pilot) hosted for my freelance activity.

Secure Exposure

Services published behind the mikailalbayrak.fr domain: reverse proxy, HTTPS, hardened headers — including the portfolio you are reading.

Contact

Contact details

LinkedIn

Mikail ALBAYRAK

Location

Paris, France

Open to full-time positions as well as freelance assignments: systems engineering, cybersecurity, or web and branding projects for small businesses.

Send me a message

The data from this form is sent to Formcarry to process your request. See the data processing agreement