You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
George YanseGY

George Yanse

Supermalter

Cyber risk & security GRC analyst

730 €/jour
Paris, FR
3-7 ans

Délai de réponse moyen : 1h

À propos de George

Ingénieur spécialisé en cybersécurité avec des compétences technico fonctionnelles. J'ai travaillé principalement en tant qu'assistant RSSI, RSSI, Consultant GRC sur des sujets d'ISP (intégration de la sécurité dans les projets), TPRM, Conformité, Gestion des risques, Rédaction de politiques dans les secteurs suivants: Bancaire, Assurance, Luxe et Batiment.
  • Français

    Bilingue ou natif

  • Anglais

    Bilingue ou natif

  • Espagnol

    Capacité professionnelle limitée

Accepte de travailler sur site
Paris (jusqu’à 20 km)

Expériences

  • L'Oréal SA - L'Oréal FRANCE
    Assistant RSSI / Cybersecurity manager
    CONSEIL & AUDIT
    novembre 2024 - Aujourd'hui (1 an et 7 mois)
    Saint-Ouen, France
    ○ Assistant to the cybersecurity officer, enforcing GRC principles
    ○ Implementing the security by design process in the R&I perimeter
    ○ Performing risk assessments and security reviews for R&I assets (formulation AI, hvacs, etc..) using ISO 27005
    ○ Contributing to the third party risk management process build and implementation
    ○ Steering monthly security committees with the IT of the different R&I domains to present and remediate cyber security topics (Appsec, Compliance, Petests, Third Party Risk Management, Threat Vulnerability Management, Legacy Servers and OS).
    ○ Assuring the applications are compliant with the group policy through security attestation controls.
    ISO 27005 Third party risk management ISO 27001 GRC Compliance
  • AXA France
    Cybersecurity Consultant
    BANQUE & ASSURANCES
    mars 2024 - juillet 2024 (4 mois)
    Nanterre, France
    ○ Improved the existing risk library
    ○ Reviewed and corrected security policy
    ○ Mapped internal controls and sensitive risks
    ○ Worked on a benchmark solution for GRC and risk quantification needs
    ISO 27001 Risk Management ISO 27002 Redaction Politique Cyber Control management
  • Colas
    Cybersecurity third party risk manager
    BTP & CONSTRUCTION
    juillet 2024 - octobre 2024 (3 mois)
    Vélizy-Villacoublay, France
    ○ Created their end to end Third party risk management process
    ○ Provided the methodology to identify critical / sensitive third parties and their risks.
    ○ Provided a required list due diligence for certifications.
    Third party risk management ISO 27001 Risk analysis Security Exhibits Change Management

Recommandations

Soyez le premier à recommander George

Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.

Ces profils de freelance correspondent également à vos critères

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Formations

  • Engineer
    ECE Paris Engineering school
    2022
    Masters in information systems and security in information systems 2017 – 2022 Relevant Coursework: Network security, Information systems security, IAM, Active Directory, Operating Systems.
  • Image processing, Applied robotics and automation.
    Tec de Monterrey
    2020
    Image processing, Applied robotics and automation.

Certifications

  • CC - Certified in Cybersecurity
    ISC 2
    2024

Compétences

Catégories