docker-admxlint
A CI/CD-ready Docker image wrapping the admx-lint utility to validate Windows GPO ADMX/ADML templates against official XSD schemas.
Hi, I’m Florian Stosse, just another information security engineer !
I currently work at the European Space Agency, as a cybersecurity engineer for the Galileo programme, specifically for the Galileo Mission Segment (GMS).
I previously worked at Safran Data Systems, in the Space & Communications business unit. I focused on hardening and securing our embedded Windows 7 and 10/11 platforms (Cortex family of TT&C and high data rate receivers), among other cool things :)
I also completed a three-year apprenticeship at Bureau Veritas’ R&D center in La Défense, Paris, in the RAMS department, focusing on software security (static analysis, SDLC), connected/autonomous vehicles security (ISO 21434), and industrial systems security (IEC 62443).
This was done in parallel with my M.Sc in Computer Science (major in cybersecurity, minor in embedded systems) from ESIEA Paris (a top French engineering school, part of the “Grandes écoles”), from which I graduated in August 2018.
Do not hesitate to get in touch if you want to chat about these topics (or anything else, really) !
Master of Science - Computer Science
2015-09-01
2018-06-30
ESIEA, Paris, France
Associate's degree - Computer Science
2012-09-01
2014-06-30
University of Lorraine, Metz, France
European Space Agency
Ground segment security for the Galileo programme.
Cybersecurity Subject Matter Expert for the R&T project Horizon Europe 034 (Advanced Platform-oriented Ground Infrastructure) aiming at developing the next-generation Ground Segment for Galileo, LEO-PNT (Celeste) and other sovereign European space programs.
France 2030 investment program
Safran Data Systems
Security engineering for the « Space & Communications » business unit at Safran Data Systems (subsidiary of Safran Electronics & Defense).
➤ Hardening of embedded Windows platforms (7 & 10/11)
➤ Integration of advanced security functions & architectures
➤ Technical leadership & expert support
ANSSI - National Cybersecurity Agency of France
Study of software countermeasures for microarchitectural hardware vulnerabilities (Spectre, Meltdown, …)
Bureau Veritas
Security activities in the RAMS department of the European Technical Center (R&D center) at Bureau Veritas.
➤ Connected and autonomous vehicles security
➤ Embedded (IoT) and industrial systems (SCADA/ICS) security
➤ Software security
ESIEA, Paris, France
Graduated summa cum laude, with jury honors.
Major in cybersecurity, minor in embedded systems.
Security engineering program certified by ANSSI (National Cybersecurity Agency of France).
Final thesis subject: « Autonomous vehicles security ». This thesis was done in the framework of the SESNA project, in partnership with Bureau Veritas, CEA-List, RATP Group, EasyMile, Sherpa Engineering and BMCP. The goal of the project was to deploy an autonomous shuttle at CEA Paris-Saclay, and to study its robustness from RAMS and cybersecurity perspectives.
University of Lorraine, Metz, France
Here are a selection of projects that I am currently working on (sorry for the AI-slop pictures, I’m very bad at designing cute stuff).
A CI/CD-ready Docker image wrapping the admx-lint utility to validate Windows GPO ADMX/ADML templates against official XSD schemas.
A collection of secure, minimal, and zero-CVE distroless Docker images hardened for production workloads.
A secure UDP telemetry proxy and custom firmware extension enabling encrypted data transmission for Freematics tracking devices.
A self-hosted OpenStreetMap tile server configuration optimized for offline/air-gapped environments.
A hardened, production-tested Windows Exploit Protection policy merging DISA STIG and Microsoft security baselines.
A lightweight Linux security auditing tool to analyze and verify sudoers configurations and permissions.
A comprehensive guidebook and template collection for hardening air-gapped Active Directory environments.
Custom Group Policy (ADMX/ADML) templates for advanced Windows 10 & 11 security hardening.