HK.
/
Contact↗

Identify exposure.
Assess risk.
Prioritise action.

I help organisations strengthen the security of their information systems by identifying vulnerabilities, prioritising remediation, and reducing cyber risk.

Portrait of Hamza Khiate
Independent perspective✳Clear priorities✳Practical decisions

Proven expertise
in high-stakes environments.

Senior Cybersecurity Consultant with over eight years of experience supporting multinational organisations in high-stakes, highly regulated environments, particularly in banking and financial services.

My experience includes security posture assessments, penetration testing coordination, and vulnerability management.

I combine technical analysis, risk-based prioritisation, and remediation tracking to turn security findings into practical measures that reduce cyber risk.

Discuss a security question↗

From technical signal
to sound judgement.

Tailored support for security teams navigating complex exposure and competing priorities.

01

Penetration testing

Planning and coordination of web and mobile penetration tests and Red Team exercises, including scoping, stakeholder coordination, findings, and remediation follow-up.

02

Vulnerability management

Analysis, assessment, and prioritisation of vulnerabilities based on severity and exposure, followed by remediation tracking with the relevant teams.

03

Vulnerability scanning

Planning and management of vulnerability-scanning campaigns with tools such as Qualys and Tenable, asset-coverage tracking, and results analysis.

04

Threat Intelligence

Monitoring CVEs and vulnerability advisories, analysing CERT alerts, and summarising threats relevant to the organisation.

05

Cybersecurity reporting

Cybersecurity reporting, KPIs, and dashboards to track vulnerabilities, security scans, and remediation activities.

06

Cybersecurity awareness

Awareness sessions tailored to different audiences on cyber risks and good practices, including application vulnerabilities and the OWASP Top 10 for development teams.

07

OSINT & credential exposure

Open-source intelligence (OSINT) and known-breach checks to identify accounts associated with your identity that may be exposed to compromised passwords, followed by account-security recommendations.

08

Cybersecurity strategy advisory

Advisory to define or evolve an organisation’s information security strategy: assess risks, prioritise safeguards, build a security roadmap, and embed security throughout the software development lifecycle (SSDLC/DevSecOps).

Need support with a security question? Get in touch.

Discuss a service↗

A career shaped
by practice.

Security roles spanning consulting, application security, penetration testing, and operations.

Senior Cybersecurity Consultant

Banking sector

Senior consulting and penetration-test coordination in regulated banking environments, focused on vulnerability management, security controls, and critical assets.

01

IT Application Security Officer · Pentest Coordinator

Arval · BNP Paribas Group

Coordinated application security and penetration testing across an international vehicle-leasing group, supporting vulnerability management between business units.

02

IT Security Consultant · Pentester

Edenred

Manual testing across web, mobile, architecture, and NFC payment solutions; remediation support, forensics, malware analysis, threat intelligence, and DevSecOps vulnerability management.

03

IT Security Engineer

Groupe Crédit Agricole

Security Operations Center work across vulnerability scanning, Splunk SIEM analysis, cyber monitoring, and patch management.

04
Earlier experience+

Hack The BoxCTF player · 2017–2022

SAYNOVACybersecurity software developer · Internship · 2017

Groupe ANTARESIT relocation technician · 2015–2017

RAMSASoftware developer · Internship · 2014

View the full professional profile↗

Start a
conversation.

For enquiries about cybersecurity advisory, assessments, or collaboration, reach me on LinkedIn.

Visit my LinkedIn profile↗