You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Antoine GrellierAG

Antoine Grellier

RSSI | CISSP | Expert GRC | Consultant Cyber

€800/day
Paris, FR
8-15 years

Average response time: 1 hour

About Antoine

RSSI, certifié CISSP et ISO 27001 Lead Implementer, j'accompagne les PME et ETI dans la structuration de leur stratégie de cybersécurité, de la feuille blanche à la certification.

Mon expertise se concentre sur des missions ponctuelles à forte valeur ajoutée, axées sur des livrables stratégiques.

Je vous aide à :
- Réaliser vos Analyses de Risques (EBIOS RM).
- Rédiger votre PSSI et votre schéma directeur.
- Préparer et réussir vos audits (ISO 27001, HDS, PCI-DSS).
- Construire votre Plan de Continuité d'Activité (PCA / PRA).

Mon expérience de création de fonction SSI dans le secteur hospitalier public et de pilotage GRC dans le secteur bancaire me permet de comprendre et d'adresser vos enjeux de conformité les plus stricts.
  • French

    Native or bilingual

  • English

    Native or bilingual

Remote only
Primarily works remotely

Experience

  • HEC Paris
    Chief Information Security Officer (CISO)
    EDUCATION AND E-LEARNING
    May 2023 - Today (3 years and 1 month)
    Managing and continuous improvement of the information systems security policy for HEC Paris and HEC Qatar. Cyber risk analysis Implementation of an outsourced Security Operations Center (SOC) and deployment of an advanced antimalware solution (XDR) Security incident response lead with the SOC (threat hunting) Patch management and monitoring (Cyberwatch) Managing security audits (penetration testing, configuration audits) Implementation and monitoring of remediation plans (following audits / incidents). Managing user training and awareness through live sessions, online courses and phishing tests Creation and implementation of a medium/long-term cybersecurity roadmap. Security lead for client audits
    Cybersécurité Analyse de risques
  • GHT NOVO (PUBLIC HOSPITAL GROUP ~6000 EMPLOYEES),
    Chief Information Security Officer (CISO)
    HEALTH AND WELLNESS
    October 2021 - May 2023 (1 year and 7 months)
    France
    Creation and implementation of an Healthcare specific Information Systems Security Policy Implementation of the public sector specific 'France Relance' program launched and supported by the French cybersecurity agency (ANSSI), consisting of multiple organizational and technical audits leading to a formalized 3-year security plan. Ensuring and enforcing compliance with the European NIS directive Monitoring and implementation of remediation following internal/external audits and penetration tests. Responsible for SOC relations and threat hunting. Deployment of a Bastion-type Privileged Access Management (PAM) solution securing all internal and external privileged access. Integration of security risk management into the implementation steps of any new IT project Implementation of a new unified password policy across the entire group.
  • BANQUE POPULAIRE CAISSE D'EPARGNE (BPCE),
    Governance, Risks and Compliance Consultant
    BANKING AND INSURANCE
    July 2020 - October 2021 (1 year and 3 months)
    Paris, France
    In charge of permanent controls for compliance with the information systems security policy, consisting of a series of operational security controls performed on a recurring basis, in accordance with PCI-DSS requirements In charge of developing and monitoring remediation plans for vulnerabilities identified by permanent controls, NESSUS vulnerability scans, and penetration tests Responsible for organizing and supervising key ceremonies for the Hardware Security Modules (HSM) based PKI infrastructures of the banks IT risk mapping and drafting of business risk scenarios. Training and support for local CISOs at banks in IT risk management according to the group's risk management framework

Recommendations

Be the first to recommend Antoine

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master's Degree in IT Engineering Management specialized in Cybersecurity
    ITESCIA (ESIEE-IT)
    2020
    Master's Degree in IT Engineering Management specialized in Cybersecurity
  • General Engineering Diploma
    ECAM-EPMI
    2018
    General Engineering School

Certifications

Skill set

Categories