You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mathieu PouliquenMP

Mathieu Pouliquen

GDPR Data Protection Consultant - DPO

€700/day
4 projects
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Mathieu

I offer expertise in personal data protection to organizations of all types, meeting regulatory expectations through fixed-price or managed services missions, as:


1️⃣ Personal Data Protection Consultant / PMO Project Manager / Project Manager
GDPR Compliance (BUILD):

— Creation of processing records:
— Creation of DPIAs after eligibility assessment, development of risk mitigation plans
— Privacy reviews of processing activities, identification of compliance gaps and protection measures
— Information of individuals: development of information notices and privacy policies
— Contract updates: review of client/subcontractor/HR contracts
— Strengthening data security:
● IT and data protection security reviews (with IT / CISO)
● Management of SSI data protection reinforcement actions (with IT / CISO)
— Development of compliance policies and procedures

2️⃣ Outsourced DPO
Compliance Maintenance (RUN):

— Periodic GDPR compliance audits and controls
— Personal data protection consulting:
● Privacy reviews of projects, identification of compliance gaps and protection measures
● Enrichment of processing records
● Compliance of relationships with new subcontractors
— Handling of GDPR rights requests
More generally: definition of directives for compliant data governance

3️⃣ Trainer on various French law topics, including data protection law:
— ADN Program (Amazon's digital training program) approximately 10h
— Training on behalf of Pôle Emploi: 40h sessions for individuals undergoing professional retraining
  • French

    Native or bilingual

  • English

    Fluent

  • Spanish

    Fluent

Can work on-site
Paris (up to 50km), Saint-Julien-en-Genevois (up to 50km), Chambéry (up to 50km), Lyon (up to 100km), Annecy (up to 50km)

Experience

  • Shine
    Data Protection Officer
    BANKING AND INSURANCE
    September 2024 - Today (1 year and 9 months)
    Paris, France
    • Drafting of a new version of the privacy policy
    • Support and facilitation of meetings on best practices regarding legal privacy requirements with sales teams
    • Management of data protection agreements with international partners and suppliers
    • Conducting DPIAs for eligible processing activities (KYC, KYB, AML, ...)
    • Implementation of compliant processes with digital teams for the collection and processing of personal data
    GDPR GDPR Compliance Personal Data Protection Data privacy DPIA Processing Records data processing agreements Data processing Contract Negotiation
  • Data Consent (Freelance)
    Founder
    CONSULTING AND AUDITS
    January 2021 - Today (5 years and 5 months)
    Paris
    Carrying out fixed-price missions for GDPR compliance and outsourced DPO services in various sectors as Project Manager: insurance, banking, healthcare, pharma, tech startups, online education, law firms, accounting firms, non-profits, VSEs/SMEs, etc.

    ⏺️ GDPR Compliance (BUILD):
    — Creation of processing records:
    ● Business / IT / legal interviews, document collection and analysis
    ● Identification of processing activities, purposes and sub-purposes, data and IS concerned
    ● Determination of legal bases, retention periods, and responsibilities
    — Creation of DPIAs after eligibility assessment, development of risk mitigation plans
    — Privacy reviews of processing activities, identification of compliance gaps and protection measures
    — Information of individuals: development of information notices and privacy policies
    — Contract updates: review of client/subcontractor/HR contracts
    — Strengthening data security:
    ● IT and data protection security reviews (with IT / CISO)
    ● Management of SSI data protection reinforcement actions (with IT / CISO)
    — Development of compliance policies and procedures frameworks:
    ● Individual rights exercise mechanisms
    ● Detection and management of personal data breaches
    ● Privacy and personal data protection policies
    ● IT charters and employee information
    — Conducting awareness sessions on data protection and cybersecurity.

    ➡️ Compliance Maintenance (RUN):
    — Periodic GDPR compliance audits and controls
    — Personal data protection consulting:
    ● Privacy reviews of projects, identification of compliance gaps and protection measures
    ● Enrichment of processing records
    ● Compliance of relationships with new subcontractors
    — Handling of GDPR rights requests
    — Support in data breach management

    ➡️ Trainer:
    — ADN Program (Amazon's digital training program) approximately 10h
    — Training on behalf of Pôle Emploi: 40h sessions for individuals undergoing professional retraining
  • Arval BNP Paribas
    Data Privacy Consultant
    BANKING AND INSURANCE
    March 2023 - November 2023 (8 months)
    Paris, France
    Arval is a French corporate vehicle leasing company founded in 1989 and subsidiary of BNP
    Paribas. It is present in France and 30 other countries, with almost 7,000 employees.

    Mission carried out on behalf of Arval France and its 30 subsidiaries, in an international
    context (exchanges in English).

    1. RoPA (Register of Processing Activities) ; management of a project to create and
    enhance RoPAs (Register of Processing Activities) on behalf of the 30 ARVAL legal
    entities, based on BNP Paribas Data Office guidelines
    2. GDPR Suppliers : correction project of the subcontractor identification system, with
    the aim of grouping and clarifying the contractual provisions. Suggestion of
    adjustments in terms of data protection measures (technical and organizational).
    3. DPIA ; identification and realization of new DPIAs, remediation actions on previously
    initiated DPIAs
    4. Data Retention ; drawing up remediation action plans for various assets
    5. Legitimate Interest Assessment (LIA) / Balancing tests : identification,
    prioritization and realization of LIAs for various processing activities

Reviews

4.4

Out of 3 ratings

NathalieN

Nathalie

IESTS

Reviewed on 7/21/2021

Mathieu managed this mission effectively. The result met our expectations, the deadline was respected, and Mathieu was available and flexible to support us in this project.
M

Mathieu

Digilaw

Reviewed on 6/17/2021

I recommend Mathieu without hesitation; he was responsive to the urgency of the situation and enabled us to achieve GDPR compliance very quickly. Thank you again for your responsiveness and professionalism.

Recommendations

Augustin CoillardAC
GB
FU
+2
Augustin Coillard and 4 other people have recommended Mathieu

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • University Degree in Law, Digital Legal Expert
    Catholic University of Lyon
    2020
  • Master 2 Business School: Digital Law & Management
    ESDES Lyon
    2020

Certifications

  • One Trust - Data Mapping Automation Expert Certification
    OneTrust
    2023

Skill set

Categories