
CISO at Banque de France
Paris Area, France

CISO at Banque de France
Paris Area, France
Payment systems, information security strategy and management, risk management, internal control, business continuity management, project management
(Government Agency; Banking industry)
January 2009 — Present (7 months)
Chief Information Security Officer in charge of payment systems
(Education Management industry)
January 2007 — December 2008 (2 years)
MBA student at Haute Ecole de Gestion in Geneva (Switzerland) - Founder and manager of Almorisk Consulting, specialized in business continuity and information security management
(Public Company; 10,001 or more employees; Information Technology and Services industry)
August 2004 — December 2006 (2 years 5 months)
Manager within the Security domain, my expertise was covering business continuity and information security management. I was responsible for business continuity activities in France. I worked for several french and international clients, especially in the banking and financial sectors : Crédit Agricole, Crédit Lyonnais, Calyon, Shell (Germany & Netherlands), Alcatel.
Projects:
- Design, development and management of business continuity plans (BCP)
- Business impact analysis : business process review, criticality evaluation, financial and non-financial impact analysis
- Risk assessment
- Expertise in business continuity (DRII & BCI Best Practices), information security (ISO 17799, ISO 27001) and internal control (Sarbanes-Oxley, Basel II, CobiT, LSF)
- Management of information security projects : coordination, awareness and training, methodology assistance, risk analysis, reporting and control
- Proposal preparation and client relationship follow-up
(Financial Services industry)
June 2001 — August 2004 (3 years 3 months)
I worked for several french and international clients, especially in the banking and financial sectors : KredietBank Luxembourg (Luxembourg), Calyon, CA Cheuvreux, Cetrel (Luxembourg), Ofivalmo, Atlanta (Morocco), Sanad (Morocco), Dana Corporation.
Projects:
- Business continuity plan audit : organisation analysis, recovery solutions review, documentation analysis
- Organisation of business continuity projects
- Business impact analysis and needs analysis
- Definition of recovery strategies and solutions
- Crisis management organisation and procedures development
- « Seine’s flood » preparation
- Testing both internal and external recovery solutions
- Maintaining business continuity plans
- Business continuity awareness and training
- LDRPS application audit
- Financial audit assistance: financial process review, workflow, control and risk analysis
- Sarbanes-Oxley (SOX) and "loi de sécurité financière" (LSF) IT audit
(Public Company; 10,001 or more employees; Information Technology and Services industry)
June 1998 — June 2001 (3 years 1 month)
I joined SGRS (Sema Group Recovery Services), a business continuity planning leader, now merged with IBM BCRS (Business Continuity & Recovery Services), as a business continuity consultant. I worked for several clients in the financial sector : HSBC CCF, Crédit Lyonnais, Crédit Agricole Indosuez, Courcoux-Bouvet, Deutsche Bank, Paribas, AGF.
Projects:
- Business continuity project organisation
- Business impact analysis and needs analysis
- Definition of recovery strategies and solutions
- Crisis management organisation and procedures development
- Testing both internal and external recovery solutions
- Maintaining business continuity plans
- Business continuity awareness and training
- Assistance in writing tenders and selecting suppliers
- Risk analysis
Executive MBA , Information Security Management , 2007
PhD , Applied Mathematics , 1997
Cinema, photography, travelling, [http://photomaniac.blogspirit.com], sailing, squash