About Emmanuel
French
Native or bilingual
English
Conversational
Experience
- Crédit Agricole Group Infrastructure PlatformProgram DirectorBANKING AND INSURANCEDecember 2024 - Today (1 year and 6 months)Guyancourt, FranceDirection of projects for strengthening security and certification within the infrastructure scope:PCI-DSS Certification Project:- Ensure the maintenance in security operational condition (MCS) for the certified infrastructure scope since 2023:o Hardening control, patch management, network segmentation, etc.o Monitor the scope's compliance with the PSSI.o Monitor periodic controls (Authorization Review, internal and external scans (ASV), internal and external penetration tests, firewall rule review, Wifi scans, etc.).o Monitor vulnerability management.o ...- Integrate scope extensions for certification by carrying out scoping and pre-audit phases.- Compile dossiers with audit evidence,- Support and assist CA-GIP employees during certification audits with QSA.- Lead remediation of non-conformities.- Conduct PCI-DSS self-assessments on the infrastructure of certifiable applications.- Manage the RUN and BUILD budget (2,000 man-days)- Steering Committee- Project CommitteeEPI (The European Payments Initiative) Certification Project:On the same model as my PCI-DSS project management mission, I am managing the certification project for the infrastructure supporting the EPI application.Budget: 300 man-days.LPM 2025 Re-approval Project:Within the infrastructure scope, manage teams for the triennial PASSI LPM audit:• Configuration audits (OS, databases, and middleware),• Architecture audits (Network, databases, and middleware, SIA (administrative information system), PDTA (administrative workstation),• Organizational audit (PSSI, security awareness, approval, etc.),• Penetration tests on the infrastructure scope.
- CREDIT AGRICOLE PAYMENT SERVICESProject ManagementBANKING AND INSURANCEJanuary 2022 - September 2024 (2 years and 9 months)Guyancourt, FranceManagement of security strengthening and certification projects:PCI-DSS Certification Project for the Merchants Scope:- Dossier compilation- Support for certification audits with the client and QSAs- Organization of semi-annual firewall rule reviews- Management of non-conformity remediation- Organization of Penetration Tests, configuration audits, etc.- Steering Committee- Project CommitteeProject to Identify and Implement Alternative Solutions for Direct Access to Production Servers for Business Units (Log and Database Consultation).- Identification of use cases for read and write access to production servers- Study of use case compliance- Project to build alternative solutions- Development of waivers for use cases that cannot be brought into compliance- Project Committee- Steering Committee- ReportingTriennial LPM (Military Programming Law) Approval Renewal Project:- Analysis of architectural and application evolutions in relation to regulations.- Analysis of network segmentation compliance level- Update of documentation (PSSI, Cyber Crisis, MCS, maintenance in approval condition, ....)- Collection and analysis of compliance evidence for 20 regulatory rules- Approval dossier (Update, integration of compliance evidence)- Organization of PASSI audits (Penetration Testing, Configuration, Architecture, Physical, and Organizational)- Management of security operational condition (MCS)- Management of vulnerability remediation resulting from PASSI audits- Organization of semi-annual network firewall rule reviews- Management of non-conformity remediation- Tenders- Steering Committee- Project Committee
- CREDIT AGRICOLE PAYMENT SERVICESProject ManagementBANKING AND INSURANCEMarch 2021 - December 2021 (10 months)Guyancourt, FranceWithin the framework of the Operational Excellence Program Management, leading the project in all its components.Identifying and launching projects to achieve the following 3 objectives:Reduce the number of incidents- Mapping of production risks by payment process (applications, payment & community infrastructures)- Evolution of internal processes:. Project Management. Change Management. Problem Management. Etc…Have end-to-end customer-oriented payment supervision- Inventories of existing sensors, end-to-end process coverage, within the IS, distributors, and partners- Definition of an operational model for 24/7 business supervision- Evolution of internal processes to ensure the implementation of customer-oriented business supervision- Study the possibility of implementing processes and tools for detecting and exploiting "weak signals"Resolve incidents with responsiveness and appropriate communication- Analysis of incidents and their management by payment process (instructions and procedures applied, escalation process, communication, etc.)- Incident management systems to improve responsiveness (instructions, harmonization of SLA/DICP, etc.)- Crisis management processes HO and HNO (escalation crisis sheets, entity contacts, Customer/Distributor on-call system, etc.)- Communication process (Who communicates? When and how?)
Recommendations
Be the first to recommend Emmanuel
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4