Mikail ALBAYRAK
Systems & Cybersecurity Engineer
Open source SOC, security audits and vulnerability management, Linux infrastructure and automation. Available for full-time positions and freelance work.
Paris, France · Available for full-time & freelance work
About me
As a Systems & Cybersecurity Engineer, I design, secure and automate Linux and virtualization infrastructures (Proxmox, VMware).
My scope covers open source SOC (Wazuh, MISP, DFIR-IRIS, Cortex), security audits and vulnerability management, as well as automation with Python and Bash. I run my projects end to end: design, deployment, hardening, monitoring and documentation.
Available for a full-time position or freelance assignments — systems engineering, cybersecurity, or websites and visual identities for small businesses.
5+
Years of IT experience
7+
Certifications
15+
Projects delivered
Experience
Oct. 2025 - Present Permanent
Systems & Cybersecurity Engineer - NETCOM GROUP
Pantin, Île-de-France · Hybrid
Hired on a permanent contract following my apprenticeship within the same team.
SOC & Cybersecurity
- Designed and deployed a complete open source SOC: Wazuh (SIEM/EDR), DFIR-IRIS (incident management), MISP (threat intelligence) and Cortex (automated observable analysis).
- Built a multi-tenant Wazuh infrastructure for clients: centralized syslog collection, custom decoders and rules, automated alerting to Webex and by email.
- Performed advanced security audits (internal and external): asset mapping, vulnerability analysis, reporting and remediation follow-up.
Systems & Infrastructure
- Contributed to the design and deployment of a Proxmox virtualization infrastructure from the ground up (cluster, storage, backups, monitoring).
- Industrialized configuration deployment across 20,000+ MikroTik routers, with systematic hardening and security rules.
Automation & AI
- Set up a fully local open source RAG: self-hosted LLM and vector indexing to query internal documentation.
- Developed Python and Bash scripts to automate administration and monitoring tasks.
Oct. 2023 - Sept. 2025 Apprenticeship
Systems & Cybersecurity Engineer - NETCOM GROUP
Pantin, Île-de-France · Hybrid
Systems & Infrastructure
- Contributed to the evolution of internal services (mostly Linux-based open source solutions).
- Installed, migrated and maintained system infrastructures.
- Deployed NetBox with automatic device synchronization through several Python scripts (VMware integration, network discovery, IP assignment, etc.).
- Deployed and configured a FreeRADIUS environment (with Daloradius), MariaDB, MaxScale and Nginx.
- Rolled out Dell OpenManage Enterprise for hardware health monitoring, combined with a proactive alerting policy on critical equipment.
- Produced technical documentation and complete infrastructure modeling.
- Monitored system performance, capacity planning, and hardware fleet renewal.
Cybersecurity
- Performed an internal and external audit of the company's IT assets.
- Deployed a vulnerability scanning environment with OpenVAS in a Kali Linux VM (Greenbone Community Edition containers).
- Analyzed detected vulnerabilities, produced remediation reports and documented recommendations.
- Ran security awareness phishing campaigns with GoPhish, using custom scenarios and statistical tracking (click rate, compromise rate, etc.).
- Contributed to writing a test plan to validate the security of critical systems.
Technology Watch & Automation
- Ran continuous technology watch on open source tools and DevSecOps practices.
- Wrote Bash and Python scripts to automate administrative and monitoring tasks.
Sept. 2022 - Sept. 2023 Apprenticeship
Systems Administrator - French Karate Federation
39 Rue Barbès, 92120, Montrouge · On-site
Infrastructure & Systems
- Maintained IT hardware (desktops and laptops, printers, peripherals).
- Administered virtual servers with VMware (AD, Linux, Windows Server).
- Managed the Exchange On-Premise mail server.
- Implemented network security rules with WatchGuard (firewall, filtering).
- Monitored the whole fleet with GLPI and WithSecure (antivirus/EDR).
Support & Projects
- Provided level 1-2 technical support to users.
- Took part in a data migration project.
- Helped improve internal maintenance and ticket management procedures.
Tools & Languages
- PowerShell, Bash, Python (diagnostic and automation scripts).
- Environments: VMware ESXi, Active Directory, Exchange, GLPI, WatchGuard, WithSecure.
Sept. 2020 - Aug. 2022 Apprenticeship
Network & Telecom Technician - GRDF
95 Rue de Maubeuge, 75010 Paris
Network & Telecommunications
- Optimized the nationwide fleet of data concentrators (checked installations per municipality to guarantee proper data collection).
- Tracked collection anomalies and coordinated with local teams.
Data & Activity Tracking
- Took part in data cleansing within the GRDF database (intervention reports).
- Coordinated with several information systems to ensure cross-department data consistency and integrity.
Training & Automation
- Trained an internal supervision team and handed over skills to ensure activity continuity.
- Built an activity tracking dashboard (Excel / internal tools) to monitor key indicators.
Education
2023 - 2025
Master's degree in Cybersecurity - Sup de Vinci
2022 - 2023
Bachelor's degree in Systems, Networks & Cloud - Sup de Vinci
2020 - 2022
Two-year technical degree (BTS) in IT Services for Organizations - Lycée privé des Petits Champs
Certifications
Certified Ethical Hacker (CEH)
Recognized certification in offensive cybersecurity and penetration testing.
Google Cybersecurity
IT security specialization following Google standards.
CCNAv7
Switching, routing and wireless fundamentals. Core skills in Cisco network infrastructure.
ANSSI: SecNumAcadémie
Cybersecurity training by the French National Cybersecurity Agency (ANSSI).
Cisco: Introduction to IoT
Fundamentals of the Internet of Things and its implications.
Cisco: Cybersecurity Essentials
Core cybersecurity principles following Cisco standards.
Cisco: Introduction to Cybersecurity
Introduction to essential cybersecurity concepts and practices.
Projects & Achievements
Open Source SOC
Design and deployment of a complete SOC: Wazuh SIEM/EDR, DFIR-IRIS incident management, MISP threat intelligence and automated observable analysis with Cortex.
- Centralized detection (SIEM/EDR)
- Incident response workflow
- Integrated threat intelligence
Multi-Client Security Monitoring
Multi-tenant Wazuh infrastructure for clients: centralized syslog collection, custom decoders and rules, automated alerting to Webex and by email.
- Centralized syslog collection
- Custom decoders & rules
- Real-time Webex & email alerts
Secure Deployment of 20,000 Routers
Industrialized configuration deployment across 20,000+ MikroTik routers, with systematic hardening and security rules.
- 20,000+ devices configured
- Systematic hardening
- Industrialized rollout
Proxmox Virtualization Infrastructure
Contribution to the design and deployment of a Proxmox infrastructure from the ground up: cluster, storage, backups and monitoring.
- High-availability cluster
- Backup strategy
- Integrated monitoring
Local Open Source RAG
Fully self-hosted RAG documentation assistant: local LLM and vector indexing of internal documentation.
- 100% local — no data leaves
- Vector indexing
- Natural language search
Branding & Website - Café Olympia
Full visual identity for a café in Pantin: menu with QR code, flyers, print material and a showcase website.
- Digital menu with QR code
- Flyers & print material
- Responsive showcase website
Branding & Website - A-BAT
End-to-end support for a construction company: logo, signage, t-shirts, sales deck, SEO-optimized website and social media launch.
- Full identity (logo, print, apparel)
- a-bat.fr website + SEO
- Social media creation & posts
Premium Website - Azar Coiffeur
End-to-end build of a high-performance showcase website for a hair salon, with deep optimizations.
- Lighthouse score 95+/100
- Mobile-first & SEO optimized
- 93% page weight reduction
Vulnerability Scanning Platform
Deployment and automation of OpenVAS with automatic report generation and custom Python scripts.
- Automated multi-target scans
- Custom PDF reports
- Real-time dashboard
Internal & External Audit - NETCOM GROUP
Full security audit with Kali Linux: port scans, vulnerability analysis, exploitation and remediation.
- Port scanning with Nmap
- Exploitation with Metasploit
- Reporting & remediation
Phishing Awareness Campaigns
GoPhish deployment for internal awareness campaigns with custom scenarios and result analysis.
- Tailor-made scenarios
- Advanced tracking & statistics
- Integrated training
NetBox Infrastructure Sync
Python scripts for automatic device synchronization between VMware and NetBox, with network discovery and IPAM management.
- VMware ↔ NetBox sync
- Automatic network discovery
- Integrated IPAM
RADIUS Authentication Infrastructure
Full FreeRADIUS deployment with Daloradius, MariaDB and MaxScale load balancing for high availability.
- High availability
- Daloradius web interface
- MariaDB load balancing
Dell OME Hardware Monitoring
Dell OpenManage Enterprise rollout with proactive alerting and custom dashboards for hardware monitoring.
- Real-time alerts
- Custom dashboards
- Predictive maintenance
Activity Tracking Dashboard
Automated reporting system with API integration and dashboard generation for key indicator monitoring.
- Automatic data collection
- Scheduled reports
- Real-time KPIs
Skills
Administration
Management and optimization of IT infrastructures.
Cybersecurity
Security measures implementation and network monitoring.
Development
Building and optimizing applications and automations.
Homelab
I self-host all my personal and professional services on an infrastructure I manage end to end — my permanent training ground for systems and security.
Proxmox Virtualization
The lab's foundation: virtual machines and containers, snapshots and backups, managed from the command line and through the API.
Personal Cloud & NAS
Self-hosted Nextcloud for files and synchronization, backed by a NAS for storage and backups.
Jellyfin Media Server
Streaming media server, run like a production service: access rights, updates and monitoring.
Pre-production Environment
Test environment replicating production to validate updates and configurations before deployment.
Business Applications
Invoicing/quotes application and a prospecting tool (Prospect Pilot) hosted for my freelance activity.
Secure Exposure
Services published behind the mikailalbayrak.fr domain: reverse proxy, HTTPS, hardened headers — including the portfolio you are reading.
Contact
Contact details
Location
Paris, France
Open to full-time positions as well as freelance assignments: systems engineering, cybersecurity, or web and branding projects for small businesses.