Skip to content
View tsautier's full-sized avatar

Block or report tsautier

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
tsautier/README.md

SamHan Cybersecurity - Thomas Sautier

Thomas Sautier - SamHan Cybersecurity

WAAP / WAF β€’ PAM β€’ Load Balancing β€’ F5 BIG-IP β€’ Fortinet β€’ WALLIX β€’ NGINX / HAProxy
Nantes, France

Website Email LinkedIn Profile views

CVE-2024-45328 CVE-2024-45326


πŸš€ About

Cybersecurity engineer focused on application security and critical infrastructure:

  • WAAP / WAF (F5 ASM/Advanced WAF, NGINX App Protect), API Security
  • PAM (WALLIX Bastion), Bastion & SSO
  • Load Balancing / Reverse Proxy (F5 BIG-IP LTM/APM, HAProxy, NGINX)
  • Firewalls & SecOps (Fortinet), hardening, logging, observability
  • Automation & Scripting (Bash, PowerShell, Python)

πŸ”§ What I deliver

  • Architecture & rollout of WAF/WAAP (strict L7, JSON/AJAX, signatures, bot defense)
  • PAM / Bastion: access models, session recording, audits, hardening
  • F5 BIG-IP: LTM/APM, SSO, iRules, HA, upgrades & migrations
  • NGINX / HAProxy: reverse proxy, TLS, HTTP/2–3, OCSP, CSP
  • Automation: CI/CD, IaC, reusable scripts & modules
  • Advisory: vulnerabilities, EoL/EoS, security roadmaps

🧩 Expertise

  • F5 BIG-IP (LTM, APM) β€’ iRules β€’ SSO β€’ Access policies β€’ WAF β€’ HA & upgrades
  • Fortinet (FortiGate best practices, segmentation, logging)
  • WALLIX Bastion (PAM, session recording, policies, audits)
  • NGINX / HAProxy (reverse proxy, TLS, HTTP/3, CSP, OCSP stapling)
  • Observability (L7 logging, SIEM export, dashboards)
  • Hardening / Compliance (TLS, headers, CSP, cipher suites, benchmarks)

πŸ”­ Threat Research & Monitoring

I run continuous security watch (vulns, EoL/EoS, best practices) and contribute to vulnerability research including:

  • CVE-2024-45328
  • CVE-2024-45326

πŸ› οΈ Stack & Tools

F5 BIG-IP β€’ Fortinet β€’ WALLIX β€’ NGINX β€’ HAProxy β€’ Debian/Ubuntu β€’ VMware/Proxmox
Azure/M365 β€’ Docker β€’ GitHub Actions β€’ Ansible
Python β€’ Bash β€’ PowerShell β€’ Node.js
Wireshark β€’ OpenSSL β€’ OWASP β€’ MITRE ATT&CK

Linux Debian NGINX HAProxy Python PowerShell Bash Ansible Docker GitHub Actions


πŸ… Certifications (selection)

  • F5 Certified Technology Specialist (CTS) - Application Security Manager (ASM)
  • Fortinet Certified Professional (FCP) - Network Security
  • Fortinet Certified Solution Specialist (FCSS) - Network Security
  • Fortinet Certified Solution Specialist (FCSS) - OT Security
  • WALLIX Certified Expert (WCE)
  • EC-Council - CEH, CHFI v8

πŸ—“οΈ Availability

Based near Nantes (France, UTC+1/UTC+2) - remote and on-site missions.

Need a quick WAF/LB review or PAM advisory? Email me at thomas.sautier@samhan.fr to book a slot.


πŸ”’ Security Contact & Responsible Disclosure

If you believe you’ve found a security issue, please email thomas.sautier@samhan.fr (or security@samhan.fr if available) with details and, if possible, a proof of concept.
I follow a responsible disclosure approach and will coordinate timelines with researchers.


πŸ“ˆ GitHub Insights

Stats Streak

Top Langs

GitHub Trophies

Updated


🀝 Let’s work together

© SamHan - Built with ❀️ and a lot of coffee.

Popular repositories Loading

  1. github_howto_jsonrpc_api github_howto_jsonrpc_api Public

    Forked from jpforcioli/github_howto_jsonrpc_api

    Python 1

  2. assemblytutorials assemblytutorials Public

    Forked from DGivney/assemblytutorials

    This project was put together to teach myself NASM x86 assembly language on linux.

    Assembly 1

  3. web-ui web-ui Public

    Forked from browser-use/web-ui

    Run AI Agent in your browser.

    Python 1

  4. Nintendont Nintendont Public

    Forked from wiidev/Nintendont

    A Wii Homebrew Project to play GC Games on Wii and vWii on Wii U

    C 1

  5. TinyWiiBackupManager TinyWiiBackupManager Public

    Forked from mq1/TinyWiiBackupManager

    A dead simple Wii backup manager

    Slint 1

  6. nod nod Public

    Forked from encounter/nod

    Rust crate for reading GameCube and Wii disc images

    Rust 1