Hicham Aroussi

CEO

Richmond Upon Thames, England, United Kingdom18 yrs 3 mos experience
AI ML PractitionerHighly Stable

Key Highlights

  • Expert in designing secure cloud architectures.
  • Proven track record in cybersecurity risk management.
  • Strong leadership in global cybersecurity initiatives.
Stackforce AI infers this person is a Cybersecurity Architect specializing in cloud security and network infrastructure.

Contact

Skills

Core Skills

CybersecurityCloud SecuritySecurity ArchitectureIncident ResponseNetwork Security

Other Skills

Cybersecurity ArchitectureCloud TransformationStrategic AlignmentIndustrial ResilienceRisk ManagementCloud Security SolutionsGovernance FrameworkCybersecurity RiskData AnalysisCyber Threat IntelligenceNetwork ArchitectureCyber DefenseSecurity ConsultancyNetwork SegmentationCyber Operations

About

Security as a strategic enabler, a seasoned Cybersecurity Architect recognized for collaborating with business leaders, IT teams, and security professionals, creating reference architectures, design patterns, and technical standards to accomplish compliance, business resilience, and innovation. Adept at architectural oversight to implement cost-effective, secure solutions while proactively identifying risks and driving mitigation strategies, driven by cohesion with organisation’s visions, values, and Strategic objectives.

Experience

18 yrs 3 mos
Total Experience
1 yr 10 mos
Average Tenure
4 mos
Current Experience

Morgan advanced materials

Senior Cybersecurity Architect

Jan 2026Present · 4 mos · United Kingdom · Remote

  • I lead the cybersecurity architecture for Morgan Advanced Materials, focusing on the security and resilience of our global digital footprint
  • Following a significant commitment to group-wide modernization, I am architecting the next generation of our security stack, with a primary focus on:
  • Strategic Alignment: Partnering with global teams to deliver a simplified, standardized, and secure architecture that supports "Above GDP" growth.
  • Cloud Transformation: Securing the migration of legacy systems to modern, cloud-native platforms.
  • Developing Global Reference Architectures for secure cloud migrations and hybrid-cloud connectivity.
  • Leading the cybersecurity roadmap for Operational Technology (OT), ensuring high-availability and security for global production lines.
  • Collaborating with senior leadership to translate complex security risks into actionable, business-aligned architectural strategies.
  • Industrial Resilience: Designing defense-in-depth strategies for global manufacturing and SCADA environments.
Cybersecurity ArchitectureCloud TransformationStrategic AlignmentIndustrial ResilienceCybersecurityCloud Security

Https://aronetdefensecenter.com/

Owner Director/Solopreneur

Mar 2025Jan 2026 · 10 mos · On-site

  • With over 20 years of industry experience, I lead Aronetdefensecenter in delivering tailored security solutions. My expertise in risk assessment and threat modeling ensures that clients receive comprehensive protection aligned with their strategic objectives. I excel in fostering strong client relationships, which is crucial for developing effective, customized security strategies.

Https://www.aronetinternational.com

2 roles

Founder and owner

Mar 2023Nov 2024 · 1 yr 8 mos

Data AnalysisCyber Threat IntelligenceIncident ResponseCybersecurity

Founder and owner

Jan 2017Nov 2024 · 7 yrs 10 mos

  • Specialized in Network architecture, build design and maintain. Cisco Campus & DC Legacy /Fabric Path. Cyber defence / Penetration testing as qualified certified ethical hacker. Design Security Architecture and compliance
  • Next Generation Firewalls solutions and architecture of enterprise and governmental organisations infrastructure. Security Consultancy services and WAN Optimization Riverbed SD-WAN Cisco SD-WAN
  • A combination of technical expertise, strategic vision, leadership capabilities, and business acumen Networks -WIFI-DC-Cloud-On-prem Architecture and Operation Infrastructure design, services and operations Team mentoring and leading. Cyber Security Défense in-depth security Governance –Risk Management Artificial Intelligence Security WAN optimization SD-WAN Cloud Architecture Customer advocacy and trust building partnerships. Technologies: Cisco-Juniper-Nortel-HP-Aruba-Splunk-Sentinel-AWS-Azure-Checkpoint-Tanium-Palo Alto-Tenable -Nozomi-Akamai-Cloudflare -Bluecoat –
Network ArchitectureCyber DefenseSecurity ConsultancyCybersecurityNetwork Security

Clarks

Cyber Security Architect

Jan 2022Mar 2025 · 3 yrs 2 mos · Remote

  • Security requirements necessary to protect the organization’s needs and business processes are adequately addressed in all aspects of enterprise architecture. Defining and establishing and maintaining security architectures, strategies and methodologies; Elaborating the Security Architecture in close collaboration with all the teams involved to ensure the development of solutions in accordance with the corporate security policies and standards. Defining and review security architectures and strategic roadmaps to ensure alignment with both business and IT strategies; Delivering methodologies, processes and a governance framework to IT Teams; Defining a roadmap and secure architecture, and implementation of necessary security controls aligned with company policies; Principal source of information on rules and procedures governing security operations Ensuring all projects comply with the company’s information security policies; Align local and global requirements from various Cyber Security frameworks /Standards.( NIST- IEC 62443-ISO27001 -etc..)
  • Security Designs
  • Designing cloud security solutions in hybrid and Multi cloud enterprise environment; Collaborating with cloud solution architects in developing complex end-to-end Enterprise solutions; Ensuring that the solution exhibits “Secure by Design” or “Well-Architected” framework, such as high-performance levels, security, scalability, maintainability, appropriate reusability, and reliability upon deployment; Supporting other Architects (application, infrastructure, DevSecOps, cloud etc.) for the security aspects within their disciplines.
Security ArchitectureCloud Security SolutionsGovernance FrameworkCybersecurity

Capgemini

3 roles

Regional Lead EMEA

Mar 2021Dec 2022 · 1 yr 9 mos

  • Shaping ,refining and reviewing solution designs Manufacturing networks, systems and digital services ITOT aligned to industry best practices/compliance through proactive consultancy. Discovery ,assessment and recording and proposal mitigation of any risks resulting from deviation, non-delivery or non-alignment.
  • Responsible for overseeing solutions Architecture ( Network and Cyberdefense ) the overall success on execution and vision of the project of Network Segmentation and remediation,
  • Implementing strategic and tactical approach to information security capabilities
  • Enabling Patient Health and Safety
  • Enabling Business Benefits
  • Reduce Security Vulnerabilities
  • Guarantee Data Integrity within Production Environments
  • Ensure Processes are Running without External, Accidental or Malicious Interference
  • Limit Data Leakage
  • Enable Desired Production Goals
  • Strengthen the complete Supply Chain
  • Managing the team of Architects and Engineers
  • Production of High and low level design documentation and Architecture papers.
  • Technologies : Cisco- Palo Alto- Splunk-Armis -Secomea -Skybox-Expedition Machine Learning
Network DesignNetwork Security ImplementationIncident ResponseCybersecurityNetwork Security

Global Security Architect -EMEA Lead

Promoted

Apr 2020Mar 2023 · 2 yrs 11 mos

Network SegmentationCyber OperationsBusiness TransformationCybersecurityNetwork Security

Network Segmentation subject matter expert ( SME ) EU Lead Consultant

Mar 2020Jul 2020 · 4 mos

  •  Core network design. Cisco greenfield & brownfield
  •  Network routing, switching and firewalls. OSPF-BGP-IS-IS .Cisco & Palo Alto NG FW
  •  Next generation firewalls Intrusion Detection/Prevention Systems (IDS/IPS) design configuration and best practice solutions
  •  Lead planning and implementation of large network segmentation project, applying latest framework architecture
  •  Maintenance of enterprise corporate office /IT & plants infrastructure optimization & availability
  •  Documentation
Network InfrastructureData AnalysisIncident ResponseCybersecurityNetwork Security

Neovia group

Senior Network and Security Consultant

Feb 2020Mar 2020 · 1 mo · France

  • Network implementation & Design Cisco SD-WAN Viptela and Cisco ACI ,VXLAN, LISP , Northbound /Southbound API
  • Cisco ISE
  • Cisco Firepower and FMC
  • Cisco DNA
  • Infrastructure & Network device configuration
  • Prepare and update Network design connectivity diagrams as per client requirement
  • Responsible for performing testing by coordinating with required parties, before and after the network cutovers
  • Network migration from old to new Infra /DC & Campus tier
  • Network migration for Cisco Wireless Access Points and WLC
  • Monitoring and analyzing the performance of upgraded system, keeping track of its performance, reliability, risks, and benefits
  • Routing Protocols, especially OSPF, IS-IS and BGP
  • Cisco Routers – 4300 .ASR series
  • Firewalls -- Cisco ASA5510 & Firepower
  • Security -- IDS, IPS
  • VPN – Site to Site VPN Cisco
  • Switches -- Nexus 7K/5K/2K,
  • Cisco Catalyst 9K /6500/4500/3800/2960
  • WLAN – Wireless LAN Controllers
  • ACI implementation
  • load balancing with F5
  • DHCP/DNS services with Infoblox equipment
Network DesignNetwork SecurityIncident ResponseCybersecurity

Airbus defence and space - intelligence

Lead Architect enterprise Network Cybersecurity & Infrastructure

Apr 2019Jan 2020 · 9 mos · Munich Area, Germany

  • Technical expertise in digital performance
  • Delivering high-performing applications, networks and infrastructure to improve business values
  • Design and achitecture in charge of delivering the project of :
  • Network flow Visibility & Analysis
  • Packet Visibility & Analysis
  • Application Visibility & Analysis
  • End-User Visibility & Analysis
  • Application Optimization
  • Data-center Optimization Architecture:SD-WAN and Cisco ACI technology
  • Production of Infrastructure design and architecture documentation,High level & Low level ( HLD & LLD)
  • Production of relevant documents and deliverables of the project
  • Partnered with key stakeholders and senior leadership to define security architecture strategies that align with business goals.
  • Led security engagements with external vendors, ensuring robust third-party risk management and compliance.
  • Delivered security advisory and strategic consulting to optimize security frameworks, ensuring compliance with industry regulations.
  • Developed strong client relationships, ensuring that security solutions provided long-term value and alignment with organizational risk appetite.
  • Conducted security workshops and executive briefings, translating complex cybersecurity concepts into actionable insights for business leaders.
Network ImplementationNetwork DesignSecurityCybersecurityNetwork Security

Danfoss power solutions

Network and cybersecurity consultant

Jan 2019Apr 2019 · 3 mos · Denmark/Remote

  • Network and security consultant ,coordination within the operation team across the infrastructure and business users, program managers and participating in large scale project of Network segmentation and platform consolidation . Handling operation of a very large install base of Palo Alto platform of approx 200 firewalls.Centrally managed by Panorama v 8.1 .Operation consists of:
  • Whitelisting
  • Partnernet segregation and remote access rulesets
  • DMZ Protection / using latest NG features -
  • VPN global protect client maintenance
  • IPS & IDS Optimzation
  • Service requests, incident and problem handling of the Infra
  • Installing new sites
  • life cycle, software and hardware
  • Standardising firewall rules across the organisation
  • Audit compliance controls
  • Operating a large Network using Layer 2 and Layer 3 Technologies, Multi Load balancing F5 /vendor specifics of HP & Cisco
  • Managing and maintaining 200 + sites of Riverbed solution ( Steel-central/APM/NPM and NetIm)
Network DesignSecurity ArchitectureIncident ResponseCybersecurityNetwork Security

European external action service

Infrastructure Management Operations- Network and security Consultant

Jan 2018Jan 2019 · 1 yr · Brussels Area, Belgium

  • Ensuring end-to-end network connection (LAN/WAN) is available, fast, reliable and secure, at all times, in HQs (all buildings), in all Delegations and between them;
  • o Configuring and installing various network devices and services (e.g., routers, switches, firewalls, load balancers, VPN);
  • o Performing network maintenance and system upgrades including service packs, patches, hot fixes and security configurations; A big part of the operational tasks consist in analyzing and implementing network flows;
  • o Monitor performance,system availability and reliability of the network infrastructure . Taking corrective action Liaising with vendors
  • Debugging and analysing of reported problems and escalated incidents;
  • Drafting operational guidelines, procedures, installation notices and scripts for the integration, installation and upgrade of aforementioned component services;
  • Assistance with roll-out of new ICT infrastructure projects in HQ and remote Delegations;
  • Operating ITIL processes and procedures;
  • Computer network assessments & audits;
  • Network related HLD and supporting LLD;
  • Using monitoring tools: Cacti, Solarwinds, Nessus, Anomaly Detective Splunk
  • Operation and management of Cisco network devices and services (Nexus 5k , 7k & 9k)
  • F5 Accelerators/ Load balancers LTM/APM/ASM
  • Juniper SRX & Palo Alto firewalls and HP user switches;
  • Operation and management of FireEye Email Security service;
  • Network Security;
  • Practical experience with Palo Alto 3k ,5k and 7k. Panorama firewall management tool and Skybox Cybersecurity Management Platform.
Network OperationsIncident ResponseSecurityCybersecurityNetwork Security

Ncr corporation

Subject Matter Expert

Oct 2015Jan 2017 · 1 yr 3 mos · Amsterdam Area, Netherlands./Remote home based

  • Senior Network infrastructure specialist-SME- location (Home based- Virtual worker)
  • Subject matter expert.
  • Hired to oversee, design, implementation and support of a major accounts for world known Global solutions provider ,currently mostly involved with Major French European car parts manufacturer’s infrastructure, roll out of WAN optimization solution, APM (Application performance monitoring platform and NPM (Network performance monitoring) in charge of producing documentation on best practice solutions
  • Configurations and troubleshooting methodology. Highest point of escalation and
  • Producing RCA (Route Cause Analysis) at times of critical executive escalations
  • Hands on various vendor equipment’s- Riverbed, Gigamon, Cisco, Juniper and Fortinet
Network ManagementSecurity OperationsIncident ResponseCybersecurityNetwork Security

Ziggo

Senior Network Consultant

Oct 2015Nov 2015 · 1 mo · Netherlands

  • ( Network consultant –Project Migration )
  • Hired as a Network consultant for a project of merging/migrating two service providers networks.
  • Working in this together with both teams from the two network operation Centers, and the project manager.
  • Auditing, updating the current setup of the Core backbone which consists of Core backbone switches , Core routers ,Edge routers and firewalls, internet gateways, and WIFI access points/ controllers.
  • Key points of the ongoing plan I am assigned to- Basic Design-Core Network Existing setup-IP Plan-Public Ranges-Private Ranges-DMZ network-Wireless Network-Backbone connections-Description per POP-Circuit information-
  • Data Center Equipment’s inventory and configuration. Customers specific designs.
  • Technology used at the POPS –Handovers to partner service providers.
  • Network design layer2/layer3 overview and a solution to plan the migration from Legacy MAN EPSR Ring design consisting of Redback Ericsson, Juniper Routers and AlliedTelesis switches,Fortigate firewalls to an existing MPLS Backbone.
Network InfrastructureIncident ResponseSecurityCybersecurityNetwork Security

Bluecoat systems inc

Senior Technical support Engineer/professional services consultant

Nov 2010May 2015 · 4 yrs 6 mos · Fribourg Switzerland

  • Packet shaper specialist Division EMEA
  • Advise and consultancy on Optimum allocation, acceleration and compression of TCP packets, maximizing bandwhith availability for entreprises and government institutions.Prioritising business crtitical applications and design,troubleshoot performance issues, best practice approach on Business applications,QOS.Traffic shaping, Voice and Data(Citrix,MS,VPN,http and https,etc.. and ensuring permanent corrective measures
  • Adminitering Proxy SG and Bluecoat product range.
Network DesignIncident ResponseSecurityCybersecurityNetwork Security

Riverbed technology

Escalation Engineer

Nov 2008Feb 2010 · 1 yr 3 mos · Amsterdam Area, Netherlands

  • Member of the team of Escalation Engineers Riverbed TAC support EMEA
  • complex network design/deployments
  • Troubleshooting and ensuring perfect optimization conditions, advice on best practice configurations
  • Analysing system dumps, TCP traces and network devices configurations L2 AND L3 Cisco
Network OptimizationTraffic ManagementPerformance IssuesNetwork SecurityCybersecurity

Packeteer

Account lead engineer for FT

Mar 2007Oct 2008 · 1 yr 7 mos · Zoetermeer, South Holland, Netherlands

  • I was the Account lead Engineer for the Orange business Services Project with France Telecom & Packeteer, Inc: My role here is to insure the smooth Operation and function of Packeteer’s products (Packetshaper), including advice on installation configuration of Packcetshapers (QOS & Traffic management network appliance) into various complex networks. Post sales support.
  • Liaising with network administrators, engineers and architects in 3 European languages. English, French & Spanish.
  • Troubleshooting performance issues, bandwidth allocation Critical Business applications acceleration and compression of TCP packets.
Network DesignTroubleshootingOptimizationNetwork SecurityCybersecurity

Blue coat systems

Tech account manager

Jan 2007Jan 2008 · 1 yr

Network ManagementTraffic ManagementPerformance IssuesNetwork SecurityCybersecurity

Bt global services

TAC2

Jul 2004Jul 2006 · 2 yrs · Amsterdam, North Holland, Netherlands

  • I was a key member of the Global customer Network team: I worked closely with 3rd line Engineers, Account mangers, Network mangers and international PTT’s to deploy, maintain and upgrade networks such as (BMW,Honeywell & Tetrapak), this also involved visiting customer sites worldwide &liaising with local contacts .
  • Secondary to my role as Network Engineer I developed a training programme for the new comers on a troubleshooting methodology for MPLS, QOS, Frame relay, Ethernet, ISDN etc.. which has contributed to a huge success that helped improve the productivity of my team and mastered specific services.
Network ManagementTraffic ManagementNetwork SecurityCybersecurity

Ncr corporation

NAS server Support

Jan 2003Jan 2004 · 1 yr · Amsterdam, North Holland, Netherlands

Network ManagementTraffic ManagementNetwork SecurityCybersecurity

Sita

Ip/data support engineer support 2nd line

Jan 2000Jan 2002 · 2 yrs · UK Heathrow

Education

Faculté de Droit, d’Économie et de Gestion de l'Université d'Angers

Associate's degree — Political Science and Government

Sep 1997Jul 1998

University of West London

BA — Economics & Politics

Jan 1996Jan 1999

Firebrand

Stackforce found 100+ more professionals with Cybersecurity & Cloud Security

Explore similar profiles based on matching skills and experience