À propos de Romain
Anglais
Bilingue ou natif
Français
Bilingue ou natif
Expériences
- OECDSenior advisor - information security managementSECTEUR PUBLIC & COLLECTIVITÉSseptembre 2020 - Aujourd'hui (5 ans et 9 mois)Paris, FranceWorking for the Global Forum on Transparency and Exchange of Information for Tax Purposes (the Global Forum) within the OECD’s Centre for Tax Policy and Administration (CTPA) which is the focal point for the OECD’s work on all taxation issues, both international and domestic.I aim to provide Technical Assistance and Capacity Building help to Tax administrations from 160 jurisdictions to provide Tax Administrations with:- Trainings on Information Security Management and guidance on internationally recognized standards (ISO 27000 series)- The ability to solve technical related issues, Information security design & implementation- Tools to reach required confidentiality and data safeguards by AEOI (Automated Exchange of Information) and EOIR (Exchange of Information on Request) OECD confidentiality standards- Maturity level to get assurance when going through their assessment process- ISMS evaluations based on internationally recognized standards (ISO 27001, ...)I am also part of the assessment teams in coordination with the Information Security Management experts panel that ensure the OECD requirements for exchanging tax information is properly understood, applied and ISMS follows internationally recognized standards and good practices such as ISO 27001.
- Société GénéraleDeputy global CISOBANQUE & ASSURANCESoctobre 2019 - octobre 2020 (1 an)Paris, FranceDeputy Global CISO for SGEF Holding and its 14 subsidiaries in Europe, US, Brazil and China (offices in 20 countries)Governance- Participate in the conception of global policies- Ensure implementation by subsidiaries through local CISOs- Monitor entities' security maturity levels through KPI / KRI- Review / document / elaborate SGEF perimeter standards and policies- Provide expertise and corrective actionsRegulations / Compliance- Ensure/follow compliance (GDPR,...)- Advise on risks related to applications / systems / infrastructuresSupport- Provide expertise and support to local CISOs- Manage level 2 and 3 DLP eventsRisk Management- Assess Risks and Application security- Advise on new product / technologies POC- ITRMAwareness / training- Raise awareness, provide training- Monitor PKI and relevant information- Ensure Technical and security watchDLP- Ensure data protection application- Monitor data leakageTechnologies / frameworksISO 2700x, NIST, DLP, Cloud, Classification, Web proxy
- Ministère de l'Europe et des Affaires étrangèresSecond secretarySECTEUR PUBLIC & COLLECTIVITÉSjuillet 2016 - septembre 2018 (2 ans et 3 mois)Bangkok, ThaïlandePolitical and economical analysisSafety analysis
Recommandations
Ces profils de freelance correspondent également à vos critères
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Formations
- IngénieurPolytech Grenoble2009
Certifications
- CISSPISC22021