You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Antoine GrellierAG

Antoine Grellier

RSSI | CISSP | Expert GRC | Consultant Cyber

800 €/jour
Paris, FR
8-15 ans

Délai de réponse moyen : 1h

À propos de Antoine

RSSI, certifié CISSP et ISO 27001 Lead Implementer, j'accompagne les PME et ETI dans la structuration de leur stratégie de cybersécurité, de la feuille blanche à la certification.

Mon expertise se concentre sur des missions ponctuelles à forte valeur ajoutée, axées sur des livrables stratégiques.

Je vous aide à :
- Réaliser vos Analyses de Risques (EBIOS RM).
- Rédiger votre PSSI et votre schéma directeur.
- Préparer et réussir vos audits (ISO 27001, HDS, PCI-DSS).
- Construire votre Plan de Continuité d'Activité (PCA / PRA).

Mon expérience de création de fonction SSI dans le secteur hospitalier public et de pilotage GRC dans le secteur bancaire me permet de comprendre et d'adresser vos enjeux de conformité les plus stricts.
  • Français

    Bilingue ou natif

  • Anglais

    Bilingue ou natif

En télétravail uniquement
Travaille majoritairement à distance

Expériences

  • HEC Paris
    Chief Information Security Officer (CISO)
    EDUCATION & E-LEARNING
    mai 2023 - Aujourd'hui (3 ans et 1 mois)
    Managing and continuous improvement of the information systems security policy for HEC Paris and HEC Qatar. Cyber risk analysis Implementation of an outsourced Security Operations Center (SOC) and deployment of an advanced antimalware solution (XDR) Security incident response lead with the SOC (threat hunting) Patch management and monitoring (Cyberwatch) Managing security audits (penetration testing, configuration audits) Implementation and monitoring of remediation plans (following audits / incidents). Managing user training and awareness through live sessions, online courses and phishing tests Creation and implementation of a medium/long-term cybersecurity roadmap. Security lead for client audits
    Cybersécurité Analyse de risques
  • GHT NOVO (PUBLIC HOSPITAL GROUP ~6000 EMPLOYEES),
    Chief Information Security Officer (CISO)
    SANTÉ & BIEN-ÊTRE
    octobre 2021 - mai 2023 (1 an et 7 mois)
    France
    Creation and implementation of an Healthcare specific Information Systems Security Policy Implementation of the public sector specific 'France Relance' program launched and supported by the French cybersecurity agency (ANSSI), consisting of multiple organizational and technical audits leading to a formalized 3-year security plan. Ensuring and enforcing compliance with the European NIS directive Monitoring and implementation of remediation following internal/external audits and penetration tests. Responsible for SOC relations and threat hunting. Deployment of a Bastion-type Privileged Access Management (PAM) solution securing all internal and external privileged access. Integration of security risk management into the implementation steps of any new IT project Implementation of a new unified password policy across the entire group.
  • BANQUE POPULAIRE CAISSE D'EPARGNE (BPCE),
    Governance, Risks and Compliance Consultant
    BANQUE & ASSURANCES
    juillet 2020 - octobre 2021 (1 an et 3 mois)
    Paris, France
    In charge of permanent controls for compliance with the information systems security policy, consisting of a series of operational security controls performed on a recurring basis, in accordance with PCI-DSS requirements In charge of developing and monitoring remediation plans for vulnerabilities identified by permanent controls, NESSUS vulnerability scans, and penetration tests Responsible for organizing and supervising key ceremonies for the Hardware Security Modules (HSM) based PKI infrastructures of the banks IT risk mapping and drafting of business risk scenarios. Training and support for local CISOs at banks in IT risk management according to the group's risk management framework

Recommandations

Soyez le premier à recommander Antoine

Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.

Ces profils de freelance correspondent également à vos critères

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Formations

  • Master's Degree in IT Engineering Management specialized in Cybersecurity
    ITESCIA (ESIEE-IT)
    2020
    Master's Degree in IT Engineering Management specialized in Cybersecurity
  • General Engineering Diploma
    ECAM-EPMI
    2018
    General Engineering School

Certifications

Compétences

Catégories