Group Information Security Officer (Ciso)
CurrentTo quickly reduce the cyber risk, identified as a major one by Eramet, I joined the Group IT Department teams and took responsibility for building and implementing the cyber security defense plan.o Conducting security risk analysis on Information System; defining Digital Security Policies; following internal and partner audits; reviewing security technology architecture; organising awareness-raising actions for all staff on cyber security risks and best practices to follow. o Main achievements to date: Building the team, managing the department budget Implementation of the Cyber-security governance, strategy and tactics. Implementation and supervision of the Security Operations Centre (SOC/CSIRT): - team piloting an outsourced service; - widespread deployment of defense technology (EDR, SIEM,SOAR…), including the Industrial perimeter; - roadmap for the protection plan for non-standard and non-office automation infrastructures Deployment of Office365 solutions for classification, protection and encryption of information Remediation of the main vulnerabilities in the Active Directory; deployment of the PKI Cyber crisis management process; DRP