You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Laurane PicLP

Laurane Pic

GRC & Risk Management Consultant | BCP/DRP

€700/day
Toulouse, FR
3-7 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Laurane

Risk management, cybersecurity, and business continuity consultant, I support SMEs, mid-sized companies, and industrial organizations in structuring, securing, and ensuring the compliance of their critical activities.

I work across the entire risk management chain: identification, analysis, prioritization, implementation of action plans, and steering through indicators.

My approach is pragmatic, structured, and decision-oriented: I provide clear deliverables, aligned with business/regulatory stakes, and immediately actionable to enable management and operational teams to prioritize their actions.

🔎 Expertise
🔹 Strategic and operational risk mapping
🔹 Business Impact Analysis (BIA)
🔹 Business Continuity Plan (BCP) & crisis management
🔹 Action plans and risk treatment plans
🔹 Dashboards and steering indicators
🔹 Risk analysis (EBIOS RM)
🔹 Gap analysis / compliance gap analysis

📚 Known Frameworks & Standards
🔹 ISO 27001 / 27005 (ISO 27000 family)
🔹 GDPR
🔹 NIST SP 800-53 & NIST Cybersecurity Framework
🔹 HAS (healthcare sector)
🔹 DORA (concepts and regulatory framework)
  • French

    Native or bilingual

  • English

    Native or bilingual

  • Spanish

    Fluent

Can work on-site
Toulouse (up to 50km)

Experience

  • ETABLISSEMENT MEDICO-SOCIAL
    Cybersecurity & Risk Management Consultant
    CONSULTING AND AUDITS
    January 2026 - Today (5 months)
    Toulouse, France
    Support to management and operational teams on risk management and operational continuity.

    - Structuring and implementation of risk management and business continuity plans (Risk Mapping, Business Impact Analysis, BCP).

    - Identification, analysis, and prioritization of risks to ensure the security and resilience of information systems (Risk Analysis and Gap Analysis)

    - Development and monitoring of recommendations to ensurecompliance with standards and regulationsspecific to the medico-social sector (HAS, Hygiene Guides, ISO 27000).

    - Collaboration with internal teams to integrate risk management processes into the daily operations of the establishment (Awareness, Lessons Learned, Training, Best Practices...)

    - Contribution to thesecurity of the digital environmentfor staff and residents, while facilitating thecontinuity of essential activities (Cybersecurity...)
    Business Continuity (DRP / BCP) Risk Analysis and Management action plans Compliance Reviews, Gap Analysis & Remediation Planning HAS ESSMS Framework
  • AERONAUTIQUE - Airbus Helicopter
    Cybersecurity and Risk Management Consultant
    AVIATION AND AEROSPACE
    January 2024 - January 2026 (2 years)
    Paris, France
    Conducting risk analyses on critical SaaS and on-premises applications (EBIOS RM, ISO 27002).
    Using FENCE and ARM software

    Developing dashboards and KPIs for Airbus Helicopter in compliance with EASA PART-IS

    Writing audit and Gap Analysis reports, supporting compliance and security in the aeronautics sector
    Risk Analysis and Management EBIOS RM Compliance Reviews, Gap Analysis & Remediation Planning Aeronautics KPI
  • ENERGIE & NUCLEAIRE - TotalEnergies & Industrie Nucléaire
    Cybersecurity and Risk Management Consultant
    ENERGY AND UTILITIES
    January 2025 - January 2026 (1 year)
    Paris, France
    Supporting CISO to enhance the resilience of critical activities for TotalEnergie and the nuclear sector
    Deployment of a Campaign and BIAs and Audits of Business Continuity and Disaster Recovery Plans (BCP / DRP) for 7 entities of TotalEnergies Belgium
    Analysis of contracts, SLAs
    Writing crisis management plans
    Awareness and crisis exercises
    SIPOC - Cyber maturity assessment – Dashboards and KPI monitoring
    BIA Resilience Business Continuity (DRP / BCP) KPI Dashboards CISO Support

Recommendations

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master 2
    IRIS Sup'
    2023
    M2 – Défense, Sécurité et Gestion de Crise Paris Gestion des risques et Conformité : Analyse et Gouvernance Cyber (EBIOS RM, ISO 27002), Référentiels de sécurité (RGPD, LPM, ANSSI, NIST, NIS...) Business Analysis et Indicateurs (Dashboard, KPI ...) Mémoire (18/20) : Cybersécurité des satellites de communication – Analyse de vulnérabilité & plan de sécurité (EBIOS RM)
  • Master 2
    IPAG de Brest
    M2 – Sécurité et Sûreté Sécurité publique/privée – Droit international et européen – Conformité UE ANSSI / NIST – Export/Import – RGPD, NIS 2 – Gestion de crise et gestion des risques en entreprise

Skill set

Categories