You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Lyrlia Le DevinLL

Lyrlia Le Devin

Senior Legal Counsel GDPR / External DPO

€900/day
3 projects
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Lyrlia

Legal expert specialized in public law and expert consultant in compliance and GDPR (General Data Protection Regulation for English speakers) since 2016 in the Pharmaceutical, Automotive, and Finance sectors. I have had the opportunity to hone my expertise and knowledge within international organizations, which allowed me to experience the implementation of complex legislation in a demanding environment. I managed 3 audits, which taught me a great deal about the management methods for this particular exercise.
I am now leveraging this experience by supporting the compliance of a pharmaceutical laboratory. I love what I do today because I combine the rigor of compliance with the freedom of independent status and the pleasure of the challenge represented by changing assignments and clients.
Furthermore, in parallel, I have had the opportunity to offer courses on the subject of GDPR at Paris Nanterre University, where I am now an adjunct professor.
I am a health law graduate. After my degree, I held several public health positions: supporting institutions on digital health; change management, training on tools. This valuable experience allows me today to present a versatile profile that I wish to further enrich with varied experiences and skills, although specialized in sectors that interest me and are at the forefront today (innovation and technology, health, banking and finance, etc...)
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km), Paris (up to km), Tours (up to km), Orléans (up to km)

Experience

  • AstraZeneca France
    Legal Counsel & Consultant specialized in Data Protection
    PHARMACEUTICALS INDUSTRY
    March 2023 - Today (3 years and 3 months)

    Implementation of the data protection compliance program, within the subsidiary in support of the DPO.
    Responsible for maintaining the processing register and digitalization (ROPA via TrustArc).
    Coordination of stakeholders (operational and strategic actors) to raise awareness and train on the fundamentals of GDPR/AI Act.
    Support for operational staff (sales, medical, R&D) in their roles and responsibilities regarding the application of regulations.
    Participation in compliance committee actions.
    Support on contractual negotiations between AstraZeneca and partners and suppliers (review of GDPR clauses/annex/Security Exhibit).
    Implementation of PIAs, TIAs, and LIAs and monitoring of remediation actions.
    Participation in the drafting and updating of compliance and personal data protection procedures.
    Organization of "privacy" events.
    Conduct of internal audits to assess regulatory compliance.
    PIA Change Management Dashboard Creation Facilitation of multidisciplinary meetings • Training
  • PricewaterhouseCoopers France&Maghreb
    Senior GDPR Consultant
    CONSULTING AND AUDITS
    April 2021 - July 2022 (1 year and 3 months)

    Management of impact assessments.
    Establishment of a committee process for managing and monitoring impact assessments.
    Identification of processing activities within the scope of impact assessments (CNIL & EDPB criteria).
    Risk analyses conducted in conjunction with the Cybersecurity Department.
    Identification of remediation actions.
    Coordination of a multidisciplinary team to successfully remediate risks.
    Organization and conduct of follow-up meetings with relevant stakeholders.
    GDPR Change Management Cybersecurity Project Management Risk Analysis
  • BMW
    GDPR Consultant BMW (Horizon & Bernis Trucks),
    AUTOMOBILE
    September 2020 - April 2021 (8 months)
    Planning compliance for Organizations (BMW Subsidiaries).
    Support and training for the DPO.
    Drafting of policies and procedures with the support of a law firm.
    Implementation of the processing register and support for managers in deploying the register and communicating with their teams.
    Implementation and monitoring of impact assessments.
    Support for operational staff responsible for processing operations.
    Development of action plans to optimize internal processes and improve regulatory compliance.
    Conducting training sessions for operational staff: preparation of presentation materials and practical case studies.
    Drafting detailed reports on results and recommendations for clients.
    Mastery of Compliance Tools Communication DPO Training Implementation of the Processing Register Remediation of Audit Gaps

Reviews

5.0

Out of 2 ratings

A

Anthony

Evolugo

Reviewed on 4/14/2022

K

Karine

Pfizer International Operations

Reviewed on 1/14/2021

Recommendations

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master II Public Law specializing in Health Law and Bioethics Law
    Paris XII
    2009

Certifications

  • DATA PROTECTION OFFICER
    PECB

Skill set (22)

Categories