Speaker, Author and Innovator, participating as research associate at the Canada Research Chair in Cybersecurity, I have 20 years of proven experience in information security, risk management and governance with specialization in the European and North American financial industries (TMX Group, Kotio SA, Euroclear SA/NV), banking (Croesus), manufacturing (Bombardier) and consulting firms (KPMG, Richter, Rodeus). Excellent knowledge of the regulations, standards and challenges of risks and cybersecurity of heterogeneous organizations. I am a permanent seeker of innovation in my practice, team management, high visibility projects and executive programs for managing corporate cyber risks and cyber-resilience, I am always looking for more and more challenging contexts within executive teams or boards of directors.
● Definition of security and organizational strategies and control frameworks
(based on ISO 2700x, NIST800-xx, ITIL, SoX, 52-109, SSAE16 or Coso/CoBIT)
● Risk (Mehari, OCTAVE, ISO31000 or EBIOS methods) and cyber crisis management
● Enterprise, IT, Datacenter and Security Architecture (Togaf, Zachman Framework)
● Gap analyses, BSC, BIA production
● Risk and organizational security governance
● Creation and implementation of information security and risk management programs
● Audit and certification of information systems
● Security architecture, program and projects management
(past projects: GRC, SIEM, IAM, DLP, anti-APT & DDoS, Big Data Security, Cloud Security, CASB)
● Security budget management (over $9.5M annual)
● Management of information security and business continuity teams.