You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Zézé Rodin SambemasyZR

Zézé Rodin Sambemasy

Senior Consultant, GRC| NIS2|ISO27001|PCARPA|

€900/day
Paris, FR
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Zézé Rodin

As a cybersecurity expert specializing in governance, risk management, and compliance (GRC), my goal is to align information security with your business objectives.
With my operational experience in highly critical environments (defense, banking, public administration), I translate technical complexity into clear strategic governance.
My ambition is to make your regulatory obligations true levers of resilience and trust for your partners.

My methodology:
1. Scoping and strategic alignment: Flash assessment of your cyber maturity, mapping of critical assets, and gap analysis against new regulatory requirements.

2. Governance and risk management: Deployment of a pragmatic ISMS, integration of risk management (EBIOS RM) into your decision-making processes, and securing new technological uses (AI / ISO 42001).

3. Operational resilience and crisis management: Development of business continuity plans (ISO 22301) and training for your management bodies (Executive/Management Committees) in decision-making during cyber crises.

My approach:
• A business-focused approach: I reject security for security's sake. Every action must protect your reputation and support your business.

• A facilitator role: I ensure smooth dialogue between your technical teams and your general management so that cybersecurity becomes a common language.

• Independent agility: Tailored diagnostics, high responsiveness, and immediately actionable recommendations.

Contact me for an initial discussion to assess your current priorities and adapt this roadmap to your context.
  • French

    Native or bilingual

  • English

    Fluent

Can work on-site
Paris (up to 50km), Lille (up to 50km), Lyon (up to 50km), Marseille (up to 50km), Toulouse (up to 50km)

Experience

  • Freelance
    Senior Consultant GRC & Cybersecurity | NIS2, DORA, ISO 27001 Expert | Transition CISO
    PUBLIC SECTOR
    September 2025 - Today (9 months)
    Paris, France
    • Strategic Governance (ISMS & PSSI): Deployment of ISO 27001 and development of PSSIs aligned with business objectives.
    • Regulatory Compliance (NIS 2): Management of global compliance to leverage maturity.
    • Risk Management: Risk analyses (EBIOS RM / ISO 27005) to protect critical assets.
    • Operational Resilience (BCMS): Design of BCPs (ISO 22301) to maintain vital activities during crises.
    • Crisis Management: Training for Executive/Management Committees in high-pressure decision-making.
    • AI Compliance: Deployment of ISO 42001 governance to secure the use of Artificial Intelligence.
    • Cyber Awareness: Facilitation of targeted programs to develop and embed security culture.
    GRC (Governance, Risks, Compliance) PCA / PRA (Business Continuity/Recovery Plan) Security Approval EBIOS RM Risk Analysis ISMS (Information Security Management System)
  • CAGIP-Groupe CréditAgricole
    Senior Consultant GRC & Resilience
    March 2025 - September 2025 (6 months)
    Mission context: Support for the Head of BCP at CA-GIP in managing risks and business continuity for critical and important services.
    Achievements
    • Ensure service providers' ability to guarantee the continuity of critical services in case of crisis
    • Monitoring of backup solution tests and ongoing controls of critical service providers' BCPs
    • Management of critical service provider contract compliance with Crédit Agricole group requirements
    • Training & Awareness for critical employees
    • Integration of supplier risks into the group's resilience framework
  • Ministère des Armées-Armée del'air etde l'espace
    Cybersecurity Expert
    January 2023 - January 2024 (1 year)
    • Approval: Management of approval files for sensitive information systems (high-security environment).
    • Risk Analysis: Application of the EBIOS-RM method on tactical scopes.
    • Resilience: Contribution to the site's business continuity strategy.
    • Distinction: Medal of merit for commitment to sovereignty projects.
    • Third-Party Risk Management: Assessment of cyber threats on the critical service provider ecosystem.
    • Olympics 2024: Participation in the specific resilience plan for financial infrastructures during the event.
    • Audit: Conducting ISO 27001 and 3402 diagnostics.

Recommendations

Be the first to recommend Zézé Rodin

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • ISO27001- LI & LA| ISO27005
    ISO27001- LI & LA| ISO27005
  • EBIOS-RM
    EBIOS-RM

Certifications

  • ISO 27001 Lead Implementer & Lead Auditor
    Bureau Veritas
    2022
  • ISO 27005
    Bureau Veritas
    2022

Skill set

Categories