You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mehdi KhemiriMK

Mehdi Khemiri

Program & Transition Director | IT, Data & Cyber

€890/day
Paris, FR
15+ years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Mehdi

Combining academic excellence (Polytechnique, Télécom ParisTech) with entrepreneurial agility (ex-Founder & CEO), I bring a rare dual expertise: a strategic vision of business challenges and a deep technical mastery of Information Systems.

Expert in steering large-scale programs in international and complex environments (Safran, TotalEnergies, La Banque Postale, RATP Dev), I focus on aligning technology with corporate strategy to maximize value and optimize business processes. My cross-sectoral background demonstrates my ability to adapt quickly to demanding cultures and regulated contexts (Data, Finance, Cyber).

With unifying leadership, I know how to mobilize multidisciplinary teams and manage governance at the highest level. My approach is based on listening, budgetary rigor, and total commitment to results, ensuring the success of critical transformations.
  • French

    Native or bilingual

  • Arabic

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • RATP Dev
    Project Director – Strategy & Governance (Scoping Mission)
    TRANSPORTATION
    October 2025 - December 2025 (2 months)
    Paris, France
    Mission:
    Lead the strategic Cybersecurity component for the Copenhagen Metro tender, defining the target architecture, governance, and convergent operational model (IT/OT) to ensure regulatory compliance and the resilience of the future network.

    Key Achievements:

    Strategy, Compliance & Governance:
    • Steering Gap & Risk Analysis: Identifying regulatory and technical gaps in the bid through cross-analysis against major frameworks (NIS2, ISO 27001, CIS IG 3, and IEC 62443).
    • Strict Regulatory Scoping: Conducting a compliance review specifically targeting the Danish transposition of the NIS2 Directive and the CER Directive.
    • Defining Governance and ISMS: Designing the target Information Security Management System (ISMS), covering IT and OT operations in compliance with ISO/IEC 27001.

    Security Architecture & IT/OT Convergence:
    • Securing Industrial Systems (OT): Leading risk assessment for critical systems using the IEC 62443-3-2 methodology and developing segmentation architectures (zones and conduits).
    • Aligning IT Technical Security: Integrating required security controls for information systems, based on CIS Critical Security Controls (IG 3).
    • Designing the Global Solution: Structuring the technical response by defining the target cybersecurity strategy and its organization.

    Operational Model & Financial Management:
    • Budgeting & Costing (CAPEX/OPEX): Defining the complete forecast budget for the financial proposal, including remediation projects (IAM, segmentation, BCP, GRC).
    • Defining Operational Interface (SOC): Specifying the operational interface with the 24/7 C-SOC and sizing external services (annual audits, pentests, threat feed, vulnerability scans).
    Cybersecurity Risk and Vulnerability Assessment Budget Management IT Strategy Governance, Risk & Compliance (GRC)
  • Safran Landing Systems
    Program Director – Reversibility & Operational Transition
    AVIATION AND AEROSPACE
    December 2021 - August 2025 (3 years and 8 months)
    Vélizy-Villacoublay, France
    Mission: Lead the strategic IT operations reversibility program, orchestrating the complete transition of RUN from the external IT service provider to a new operational subsidiary in India, and ensuring the structuring of a high-performing, optimized service aligned with the Group's transformation objectives.

    Key Achievements:

    • Strategic Planning & Program Governance:
    • Steering gap analysis and designing the new target organization in India (defining roles, processes, governance).
    • Implementing the program framework (WBS, RACI, risk register) and structuring governance by leading project and steering committees (COPROJ, COPIL).

    • Operational Data Governance and Optimization:
    • Leading the pooling of database resources (Oracle, MS SQL, MongoDB) across multiple subsidiaries to improve performance and reduce costs.
    • Directing the project to update and validate CMDB data to ensure the quality and consistency of the infrastructure repository on ServiceNow.

    • Delivery and Transition to Operations Steering:
    • Developing and monitoring the master plan for the transition of technical components (servers, networks, virtualization…), managing dependencies with related projects (AD migration, Move to AWS).
    • Conducting knowledge and skill transfer to teams in India (shadow/reverse shadow) and implementing performance monitoring processes (Centreon) with a continuous improvement approach.

    • Vendor, Budget, and Team Management:
    • Leading tenders for the selection of new partners and managing the overall program budget, including funding requests.
    • Supporting management in strategic recruitment and integration of engineers for the local teams in India.
    ITIL Change and Transformation Management Program Management Transition Management Management of Multidisciplinary Teams
  • TotalEnergies
    Project Director – Operational Security & SAP Remediation
    ENERGY AND UTILITIES
    May 2021 - November 2021 (6 months)
    Pau, France
    Mission: Following a security audit, lead the strategic project for remediating SAP system vulnerabilities to ensure the security and integrity of the company's critical data, and structure a dedicated operational service for its sustainable management.
    Key Achievements:
    • Data Security Governance & Risk Management:
    ◦ In-depth analysis of audit results to qualify threats and prioritize remediation actions based on their criticality and business impact.
    ◦ Steering the remediation plan with a specific focus on the security of the SAP HANA database, hosting the most critical data.
    ◦ Defining service governance performance indicators (KPIs), including RTO (Recovery Time Objective) and RPO (Recovery Point Objective) to ensure data continuity.
    • Structuring Operational Service & Transition to RUN:
    ◦ Designing the new operational security unit dedicated to SAP remediation and formalizing a robust and replicable vulnerability management methodology.
    ◦ Organizing skills and process transfer to ensure the complete transition of the project to operations (BAU / RUN).
    ◦ Contributing to process optimization through automation (RPA).
    • Technical Steering and Coordination:
    ◦ Developing detailed technical specifications in collaboration with SAP BASIS teams and security experts.
    ◦ Transversely steering outsourcing teams, the SAP integrator, and security experts for effective patch implementation.
    ◦ Supervising tests and validations to ensure the effectiveness of corrective measures.
    • Reporting and Communication:
    ◦ Implementing clear reporting for stakeholders and leading follow-up committees to inform management about risk reduction on the data assets.
    Transition Management Change and Transformation Management Project Management Cybersecurity Governance, Risk & Compliance (GRC)

Recommendations

Be the first to recommend Mehdi

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Télécom ParisTech
  • Executive MBA
    Mediterranean School of Business.
    2013
    Executive MBA

Skill set

Categories