You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Sinaï Umba Di-YabaSU

Sinaï Umba Di-Yaba

IT/Cybersecurity Audit and Risk Management

€750/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Sinaï

With over 12 years of experience in Big 4 and international companies, I wish to leverage my expertise in IT and cybersecurity audit, risk management, and project management to serve the needs of both private and public sector organizations.
  • French

    Native or bilingual

  • English

    Fluent

  • Spanish

    Conversational

  • Chinese

    Basic

Can work on-site
Paris (up to 50km)

Experience

  • Société Générale - BDDF
    IT/Cyber Risk and Vulnerability Monitoring and Governance Consultant
    BANKING AND INSURANCE
    May 2023 - Today (3 years and 1 month)
    Context: Consulting service aimed at overseeing IT/Cyber risks and IT/Cyber vulnerability governance across the entire Credit Risk IT department.

    Team: 1 consultant

    Internal Stakeholders: IT Department, Operational Risk Department

    Business Issues Addressed: IT/Cyber risks, transformation project, credit risk, simulator

    AREA OF EXPERTISE
     IT/Cyber Risk Management and Control Consultant
     Definition of a security issue oversight governance
     Integration of security into projects: qualifying projects for security certification and monitoring compliance with criteria
     Oversight of IT and Cyber vulnerability management governance
     Oversight of resilience governance (DRP)
     Risk Management
     IT and Cyber intelligence

    TECHNICAL ENVIRONMENT
     Qualys
    Qualys IT Risk Management DORA Vulnerability Management Resilience Cybersecurity Cybersecurity Awareness
  • Vauban Infrastructure Partners
    Cybersecurity Compliance Consultant
    PRIVATE EQUITY
    March 2023 - April 2023 (2 months)
    Context: Consulting service aimed at formalizing an IT/Cyber risk map, defining and deploying a Level 2 IT/Cyber control plan, and analyzing ISO 27001 / DORA compliance.

    Team: 1 consultant

    Internal Stakeholders: IT Department, Operational Risk Department

    Business Issues Addressed: IT/Cyber risks, Azure Cloud, deal management (Asset Management)

    AREA OF EXPERTISE
     IT/Cyber Risk Management and Control Consultant
     Review and deployment of the IT/Cyber internal control framework (Azure Cloud PaaS, local network)
     Establishment and presentation of results and recommendations (local teams, IT Department)
     Formalization of the IT/Cyber risk map for the IT Department (rating, risk register, and action plan)
     Formalization of IT/Cyber procedures (incident management, DRP, change management, archiving and backup management)
     Evaluation of ISO 27001 and DORA compliance

    TECHNICAL ENVIRONMENT
     Azure Cloud PaaS, Sharepoint, SaaS Applications
    ISO 27001 EBIOS RM DORA NIS2 IT Compliance Compliance Cybersecurity Risk Analysis Internal Audit
  • HERMES INTERNATIONAL
    Head of IT/Cyber Audit, Control, and Risk Management
    February 2022 - January 2023 (11 months)
    Context: Management of audit missions and internal control review within the framework of cybersecurity and IT themes, and assessment of associated risks at Hermès International. Missions were conducted internationally, supervising two to three consultants depending on the theme, and establishing a risk map.
    Team: 1 manager and a team of 2/3 consultants to supervise Internal Stakeholders: IT Department, CISO, DIGITAL
    Business Issues Addressed: e-commerce, retail, global information security
    AREA OF EXPERTISE ◼ Head of IT audit missions, IT internal control review, and risk management

Recommendations

Be the first to recommend Sinaï

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Telecom engineering diploma –
    – TELECOM SudParis, Institut Mines-TELECOM
    2011
    Telecom engineering diploma –
  • Law degree –
    Sorbonne University
    2022
    Law degree –

Certifications

Skill set (26)

Categories