You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Karfala KomaKK

Karfala Koma

Permanent Control, BCP, IS Security and Crisis Management

€1,056/day
5 projects
Paris 12e Arrondissement, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Karfala

Operational Risk professional with over 15 years in the banking industry, including 12 as a senior manager for Permanent Control, Operational Resilience, Business Continuity, and Crisis Management. Autonomous, client-oriented coordinator who has worked in multi-business and multicultural environments, I possess a sharp synthesis and communication skills.
  • French

    Native or bilingual

  • English

    Native or bilingual

  • German

    Basic

Can work on-site
Paris 12e Arrondissement (up to 50km), Montreuil (up to 50km)

Experience

  • Malakoff Humanis
    Information System Resilience
    BANKING AND INSURANCE
    January 2023 - Today (3 years and 5 months)
    Paris, France
    DRP: Disaster Recovery Plan
    o Construction and maintenance of the system by leveraging BIAs
    o Organization and Implementation of exercises
    o Construction of failover plans with operational teams
    o Development of timelines
    o Coordination of resilience referent network
    o System documentation
    o Monitoring and steering indicators for the system
    ISO 22301 Information Security Change Management Business Continuity Plan Crisis Management Cross-functional Coordination Workshop Facilitation Governance Communication Microsoft Excel Microsoft Powerpoint
  • Crédit Agricole - CA GIP
    Risk Management, Business Continuity Plan and Crisis Management
    BANKING AND INSURANCE
    June 2019 - December 2022 (3 years and 7 months)
    Guyancourt, France
    BUSINESS CONTINUITY PLAN (BCP) & CRISIS MANAGEMENT

    • Implementation of the Group's Business Continuity Policy
    • Definition and update of the Business Continuity Strategy
    • BIA: Business Impact Analysis: Organization, execution, monitoring, reporting, updates (at least annually and upon any significant organizational change)
    • Evolution of the existing BIA tool
    • Maintenance of a business continuity plan covering ITEL scenarios: Unavailability of Local Work Environments, UPI: Unavailability of Personnel, UMDT: Unavailability of Massive Workstations, ULOIS: Unavailability of Logical Information System, UPLIS: Unavailability of Physical Information System.
    • Maintenance of the Crisis Management system
    Mobilization booklet and crisis directory
    Member of crisis cells with the role of Crisis Secretary
    Activation, Mobilization, and Facilitation of crisis cells
    Logbook maintenance
    Development and maintenance of crisis management tools (operational sheets, etc.)
    Organization of Crisis Management exercises
    Participation in Bank of France place-based exercises
    • Monitoring of the BCP for Outsourced Essential Service Providers (OESP)
    • Awareness of Cybersecurity, Business Continuity, and Crisis Management at all organizational levels
    • Implementation and monitoring of the Permanent Control plan for BCP, ISP, and Crisis Management

    OPERATIONAL RISK & PERMANENT CONTROL

    • Construction and monitoring of the Risk Map
    • Risk analysis and quantification
    • Analysis of the effectiveness of risk mitigation measures and remediation plans
    • Implementation, with operational teams, of appropriate control plans
    • Development of Level 1 and Level 2 controls
    • Execution of Level 1 and Level 2 controls
    • Monthly summary of IT and NON-IT control results
    • Semi-annual reporting of the system
    • Development of the reporting tool in Excel
    • Analysis and monitoring of incidents
    • Analysis of control results with implementation and monitoring of action plans
    • Monitoring of recommendations from audit missions (ECB, Bank of France, Crédit Agricole, etc.)
    • Development of an Excel tool for risk mapping
    ISO 22301 Crisis Management Business Continuity Plan Audit Recommendation Crisis Communication ISO 27005 Cybersecurity Project Management Reporting Change Management Risk Analysis IT Security Operational Risk Permanent Control Recommendations Microsoft Excel Microsoft Powerpoint
  • BNP PARIBAS SA
    Program Manager
    BANKING AND INSURANCE
    April 2014 - June 2019 (5 years and 2 months)
    CYBERSECURITY, BCP AND CRISIS MANAGEMENT
    • Technical debt management
    • Source code security: Implementation and deployment of development rules
    • Study and deployment of source code analysis tools
    • Static and dynamic analysis of source code
    • Implementation of the BCP policy within GIPP
    • Awareness of business continuity and Crisis Management
    • Steering of BCP and Crisis Management exercises within the Department

    TEAM MANAGEMENT & LEADERSHIP
    • Management of the Group's Point of Function (PF) center (9 people) - Budget: €1500k+
    Functional volume of Projects/Applications measured with PF
    • Supervision and coordination of activities (projects, services, client/supplier relations, etc.)
    • Definition of team members' objectives
    • Budget monitoring, resource and priority management

    STEERING & STRATEGY
    • Support for BNPP entities in defining and implementing their IT transformation plan
    • Definition & implementation of a strategy for deploying function points within the BNP Paribas Group
    • Steering the project for deploying a source code analysis tool (CAST) on the BNPP IS
    • Contribution to defining performance monitoring indicators for Development & Maintenance (ADM) Activities
    • Contribution to defining the Group's IT sourcing framework agreement
    • Production of regular reports to BNP Paribas management

    SUPPLIER RELATIONS
    • Drafting and publication of calls for tender for fixed-price and technical assistance services
    • Analysis of responses with the "Purchasing" teams. A shortlist of suppliers is made at this stage
    • Interviews with shortlisted suppliers
    • Negotiations with partners

    TRANSVERSE MANAGEMENT / FACILITATION
    • Organization and facilitation of awareness sessions on PF, within BNPP entities, for operational teams and management
    • Facilitation of an intra and extra BNPP PF community (scope: global):
    4 half-day events per year
    BNPP Social Business Place
    • Facilitation of a working group to define an appropriate approach for deploying function points in an agile context. Participation of Agile experts and Group function point experts (scope: global)
    Project Management Change Management Team Management Product Management Community Management IT Security Cybersecurity ISO 22301

Reviews

4.0

Out of 1 rating

N

Nicolas

Crédit Agricole-GIP

Reviewed on 12/29/2022

Recommendations

Be the first to recommend Karfala

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Engineer in Information Technology and Management
    EFREI
    2008
    Systèmes d'information Réseaux et Télécommunications Développement logiciel Management

Skill set (43)

Categories