Aloïs Beyou
Network, Telecommunications & Cybersecurity Engineer
Graduate from the University of Technology of Troyes (UTT). Specialized in Blue Teaming, vulnerability management, and defensive operations (SOC/SIEM). Currently implementing Security by Design practices to build resilient systems.
Technical Projects
AI-Driven SOC Alert Triage Tool
CodeDevelopment of an AI-integrated application to analyze, process, and contextualize raw security alerts.
Azure Honeypot Architecture & SIEM SOC
CodeCreation of a hybrid security laboratory connecting an Azure cloud Honeypot to an on-premise SIEM via a Tailscale VPN.
Linux VM Network Architecture
Design and configuration of a local network of Linux virtual machines using exclusively Bash scripts.
Professional Experience
Security by Design Consultant - InternshipCurrent
HeadMind Partners
- Risk assessment and threat modeling to define security requirements right from the design phase.
- Supporting technical teams on the implementation of Security by Design to ensure compliance.
- Integrating security milestones into the project lifecycle, with validation of deliverables prior to production deployment.
Systems and Networks Security Engineer - Internship
Goûters Magiques
- Deployment of WithSecure Vulnerability Management, ensuring compatibility with EDR for continuous detection.
- Implementation of a network monitoring stack using Prometheus and Grafana, improving infrastructure visibility.
- Coordinating patch management with the IT Infrastructure team to enforce security standards.
- Managing security projects via SuitePro-G, ensuring precise task tracking and cross-team communication.
Certifications & Credentials
Cisco CCNA
CertifiedCisco
Cisco Certified Network Associate (CCNA 200-301) covering IP networking, security fundamentals, automation, and routing & switching.
Hack The Box CDSA
In ProgressHack The Box
Certified Defensive Security Analyst (CDSA) focused on SOC operations, SIEM detection engineering, digital forensics, incident response, and threat hunting.
ISC2 CC
In ProgressISC2
Certified in Cybersecurity entry-level credential validating foundational knowledge in security principles, business continuity, access controls, and network security.
C1 Advanced (CAE)
CertifiedCambridge English
Cambridge English Advanced (C1 Level) certifying high-level operational proficiency in professional and technical English environments.
DELE C1
CertifiedInstituto Cervantes
Diploma de Español como Lengua Extranjera (C1 Level) certifying operational fluency in spoken and written Spanish.
Education
Engineering Degree in Networks & Telecommunications
University of Technology of Troyes (UTT)
Specialization: Cybersecurity and system architectures
Academic Exchange Semester
Aalto University (Helsinki, Finland)
Focused on advanced networking, malware analysis, and international collaboration
French Baccalaureate
Lycée Français de Valence (Spain)
Complete schooling in a trilingual and multicultural environment (French, Spanish, English)
Security Lab & Infrastructure
Blue Team / TelemetryHybrid Threat Hunting & Detection Lab
Blue Team / SOC Lab Environment
Virtual enterprise network running an Active Directory domain, automated attack simulation, and centralized telemetry collection through Wazuh SIEM and Elastic Stack.
Kali Linux / Caldera
Atomic Red Team TTPs
Windows Server 2022 AD
Sysmon + PowerShell Logging
Ubuntu Workstation
Wazuh Agent & Auditd
Wazuh Manager
Rule Engine & Alerting
Elasticsearch + Kibana
Dashboards & Threat Maps
Architecture Overview
- Edge Security & Routing (
pfSense): Isolates the attack generation network, corporate LAN, and management VLAN. - Identity & Directory (
Windows Server 2022 AD): Configured with audit logging (Sysmon + PowerShell Script Block logging) enabled. - Attack Emulation (
Kali / Atomic Red Team): Simulates TTPs mapped to the MITRE ATT&CK matrix (Credential Dumping, Lateral Movement, Persistence). - Telemetry & Detection (
Wazuh / Elastic SIEM): Real-time event ingestion, rule tuning, and custom Sigma rule testing.