Skip to main content

Romain BENOIT's Resume

Table of Contents

CERT Analyst, GCFA, GCIH (GIAC Advisory Board Member)

I’m a CERT analyst focused on blue team operations, incident response and digital forensics. I hold a Master’s-level cybersecurity qualification earned in 2024 through a work-study program, combining academic training with hands-on experience across several cybersecurity and IT roles.

Beyond response, my work also covers the detection side of defense, running and tuning SIEM platforms, writing detection content (SIGMA and YARA rules), and turning threat intelligence into usable signals with tools like OpenCTI. The thread running through it is a practical one: shortening the time between when something happens on a network and when it’s detected, understood, and contained.

💼 Professional Experience
#

CompanyRoleDatesLocation
Euro-InformationCERT AnalystSeptember 2024 - NowParis La Défense - France
EquansContract Cybersecurity Specialist (Freelance)July 2024 - August 2024Montigny-le-Bretonneux - France
Thales Cyber SolutionsApprentice Engineer in Automation and SecurityJanuary 2023 - July 2024Elancourt - France
Prosol - Grand FraisSecurity Administrator (Apprenticeship)September 2020 - January 2023Chaponnay - France
MédimexIT Systems and Biomedical Maintenance Technician (Apprenticeship)September 2018 - June 2020Sainte-Foy-lès-Lyon - France

📚 Education
#

DegreeSchoolYears
Expert in Data, Systems, and Network SecurityEcole 26002021 - 2024
Bachelor’s Degree in Science, Technology, and Health, Major in Computer Science with a Specialization in CybersecurityConservatoire National des Arts et Métiers2020 - 2021
Associate Degree in IT Services for Organizations, Specialization in Infrastructure, Systems, and Network SolutionsAFIP Formation2018 - 2020

🛠 Skills
#

CategorySkills
Cyber Defense / Blue TeamSIEM setup and administration, OpenCTI installation and usage, Memory and disk forensics (RAM dumps and disk images), Network capture analysis, SIGMA and YARA rule writing, DFIR report writing (timeline creation, hypothesis validation, IOC identification, recommendations)
System and Network AdministrationGitLab deployment, PFsense configuration, AV and EDR management, Virtualization solutions deployment
Scripting and ProgrammingPowerShell, Python
Technical ProficiencyTechnical English, Project management, Basic machine learning

🛡️ Certifications
#

CertificationInstitutionIssue Date - ExpirationID / Verification Link
GIAC Certified Forensic Analyst (GCFA)GIAC CertificationMay 2026 - May 2030GCFA Badge
GIAC Certified Incident Handler (GCIH)GIAC CertificationJuly 2025 - July 2029GCIH Badge
GIAC Advisory BoardGIAC CertificationJuly 2025 - July 2029Advisory Board Badge
Expert HarfangLab - Detection & Incident ResponseHarfangLabJune 2024 - June 20255876098714138309
MCSI Novice DFIR Practitioner - Level 2Mossé Cyber Security InstituteMarch 2024rANd1n2hlNg8zyjqVS9TJAo22oP2
Expert HarfangLab - AdministrationHarfangLabSeptember 2023 - September 20242310964987147014
La protection du secretDRSD - Direction du renseignement et de la sécurité de la DéfenseApril 2022N/A
SecNumacadémieANSSI - Agence nationale de la sécurité des systèmes d’informationMay 2020N/A

📬 Contact
#

Methoddétails
Emailcontact[@]cyberdefense.blue
LinkedInlinkedin.com/in/romain-benoit
GitHubgithub.com/RedBlue232