You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
N. K.NK

N. K.

DPO | Audit | Cybersecurity GRC | AML/CFT Expert

€620/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About N.

I have built my career around a simple objective: to help organizations navigate smoothly in a demanding digital environment. From AML/CFT to cybersecurity, data protection, and business intelligence, I have developed cross-functional expertise that allows me to understand your challenges in their entirety.

With several years of experience in banking, insurance, and critical institutions, I have led audits, supported compliance (DORA, GDPR, ISO 27001), strengthened risk management, and structured sustainable GRC frameworks. Certified ISO 27001 and EBIOS RM, I intervene in both technical aspects and human support: awareness, training, change management.

I enjoy working in partnership with my clients, clarifying gray areas, simplifying processes, and providing a reassuring framework.

Examples of missions I undertake:
• DORA / GDPR / AML/CFT compliance
• Cyber, privacy, and organizational audits
• Critical asset qualification & third-party management
• Construction of ISMS, BC P, incident response plans
• Strategic watch & business intelligence
• Cyber, privacy, and AML/CFT training

If you are looking for reliable support for your cyber, GDPR, or AML/CFT projects, I would be happy to discuss them with you.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km)

Experience

  • LNE
    Security and Cybersecurity Audit Referent
    CONSULTING AND AUDITS
    January 2025 - April 2026 (1 year and 3 months)
    Paris, France
    •Implementation and coordination of audits and assessments conducted as part of management system certifications (ISO 27001, HDS...) and product certifications (Artificial Intelligence, cash register system...)
    •Monitoring of assessments conducted within the framework of ANSSI's guidelines.
    •Management of the certification process for an international client portfolio
    •Conducting defined assessments and audits in intervention areas (France/Europe/World)
    •Development of new services in the field of information technology and information system security
    •Complete management of the cash register system certification process, from admissibility to final decision.
    •Operational implementation of regulatory changes from BOI-TVA-DECLA, including regulatory translation and integration into internal frameworks.
    •Coordination of regulatory requirements related to e-reporting, interface between internal departments, publishers, and competent authorities.
    •Design and delivery of inter-company training on regulatory obligations and compliance best practices.
    •Conducting in-depth gap analyses, identifying discrepancies, and defining corrective action plans.
    •Preparation and participation in COFRAC audits, including evidence management, documentary compliance, and response to discrepancies.
    •Monitoring and maintaining compliance with COFRAC and institutional partners
    •Management and supervision of a team of 12 people, ensuring skills development, efficient audit planning, and quality of assessments.
    Risk Analysis ISO27001 Security Audit
  • Ecole de Guerre Economique
    Cybersecurity Management and Business Intelligence
    September 2023 - September 2024 (1 year)
    Thesis subject: impact of cryptocurrencies as a technology in ransomware
    - Cybersecurity Fundamentals
    - Cyber Governance
    - IS Audit: typology / organization / deliverables
    - Crisis Management
    - Implementation of a DR P / BCP
    - Fight against Fraud and Money Laundering
    - Digital Challenges in Europe
    - EBIOS Risk Manager
    - ISO Standards and Risk Analysis Methods
    - ISO 27001 Information Security Management System
    - Business Intelligence Project Management
    - Intercultural Risk Management
    - Taxonomy of Digital Events: incident response, threat knowledge, cyber crisis management
    - International Security Management and Risk Mapping
    - Geopolitics of Cybersecurity and Cyberwarfare
    - Strategic Challenges of Cyberspace
    - Management of a Cyber Team
    - Digital Sovereignty in Cyberspace
  • CACIB BNP NICKEL
    DPO - Governance - Management
    BANKING AND INSURANCE
    July 2016 - February 2024 (7 years and 6 months)
    Paris, France
    Mission focused on regulatory cybersecurity and operational risk management within a KYC, AML/CFT, and Cash Management scope.
    Deployment of a cyber governance framework compliant with ISO 27001, DORA, 23 NYCRR 500, GDPR standards, and management of internal and PCI DSS audits.

    Support for teams on all GDPR-related issues.
    Coordination and monitoring of compliance, updating of the documentation corpus.
    Participating in the dissemination of a responsible data culture across Europe.

    Management of AML/CFT quality controls and monitoring of TRACFIN declarations.

    Optimization of monitoring tools (Fircosoft, INQUIRO) and reduction of false positives.

    Strengthening compliance culture and digital resilience.

    Objective achieved: improvement of GRC posture, increased compliance, and alignment of cyber practices with European standards.
    PCI DSS EBIOS RM ISO 27005 ISO 27001

Recommendations

Be the first to recommend N.

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • UNIVERSITY DIPLOMA
    PARIS EST MARNE LA VALLEE
    2012
    Marchés Financiers et Déontologie
  • MBA Cybersecurity Management and Information Systems Governance
    Ecole de Guerre Economique
    2024
    Module 1 : Les fondamentaux de la cybersécurité Module 2 : RGPD Module 3 : Gouvernance, gestion du risque et conformité Module 4 : Guerre de l'information, Intelligence économique et cybersécurité Module 5 : Résilience et gestion d'incidents Cyber Module 6 : Organisation de la sécurité et approche de la sureté internationale Module 7 : Cyberguerre Management de la cybersécurité

Certifications

Skill set

Categories