Matthieu André

Matthieu André Email and Phone Number

Senior Cybersecurity consultantISO/IEC 27001, ISO/IEC 27002, ISO/IEC 27005, CEH, EBIOS, RGPD, OWASP, NIST @ EDF
france, aquitaine, france
Matthieu André's Location
Paris, Île-de-France, France, France
About Matthieu André

More than 15 years of experience in IT and IT security management – Demonstrated ability to pilot several complex projects with high technological and human impact – Acute sense of time, cost control and implementation of corrective actions – Reactivity, good relationship, rigor – Examples of successes: - Security: ISO27k1, definition and implementation of the ISMS policy, awareness, audit, risk treatment - Simultaneous management of major projects: Schneider Electric, SFR, Army, Axa, Servier - Teams management: training, animation, negotiation - Technical complex environments: international context of crisis, multi-sites

Matthieu André's Current Company Details
EDF

Edf

View
Senior Cybersecurity consultantISO/IEC 27001, ISO/IEC 27002, ISO/IEC 27005, CEH, EBIOS, RGPD, OWASP, NIST
france, aquitaine, france
Website:
edf.fr
Employees:
81266
Matthieu André Work Experience Details
  • Edf
    Deputy Ciso
    Edf Dec 2022 - Present
    Nanterre, Île-De-France, France
    - Project risk Management;- Monitoring of project risks – ISO/IEC 27005 & EBIOS RM; - Define and set in place the project risk dashboard; - Define and set in place the project risk reporting; - Monitoring of security measures resulting of project risk analyses; - Advice on the choice and implementation of security measures;
  • Smartone
    Cybersecurity And It Auditor
    Smartone Jul 2022 - Nov 2022
    Madagascar
    Audit for transformation and industrialization of IT Department: - Processes audit; - IT processes industrialization (compliance ISO/CEI 27001, SOC2 Type 1&2 and ITIL); - ISO/IEC 27001 and SOC2 Type 1&2 certification - Contract and budget management;Management of the IT team – 20 people: - Define and set in place the IT roadmap; - Define service catalog; - SLA / SLR: implementation and follow up.
  • Exide Group
    Ciso - Chief Information Security Officer
    Exide Group Sep 2021 - Jul 2022
    Gennevilliers, Île-De-France, France
    Preparation for ISO/IEC 27001 certification: - Compliance off the group with IT security rules; - Writing of ISMS documentations (English: policies and procedures); - Definition, implementation, and monitoring of risk analysis, roadmap and security action plan; - Contribution of new technology: Virtual patching, Bastion, EDR, XDR, Pentests, phishing campaign, …; - Security project management; - User training; - Reporting and creation of security dashboard;SWIFT and TISAX certification management;Crisis taskforce: security incidents, Ukrainien;Customer requests management.
  • M.A. Corp.
    Free-Lance, Independent Teacher / Trainer
    M.A. Corp. Jun 2019 - Jul 2022
    Région De Paris, France
    IT Security management;ISO/IEC 27001 standard;risk management;IT Security KPI.
  • Sidetrade
    Ciso - Chief Information Security Officer
    Sidetrade Apr 2020 - Sep 2021
    Boulogne-Billancourt, Île-De-France, France
    ISO/IEC 27001 - Management of certification renewal, audits and Pentests: - Writing of ISMS documentations (English); - Risk management - ISO/IEC 27005; - Definition, implementation and monitoring of audits and pentests; - Definition, implementation of the action plan for certification and remediation of open points; - Employee training and awareness (English); - Reporting to COMEX, presentation of indicators and action plan (English)Security – Monitoring of security projects: - Definition of security needs and objectives - Security by design: Active Directory, SOC SIEM, MFA, PCA / PCIT, AV, Segregation of duties…; - Introduction and implementation of new technologies: Varonis, Efficient IP, Virtual Patching…;GDPR - Monitoring of compliance projects: - In partnership with the legal and IT team creation of processes and definition of the action plan; - Employee training and awareness.
  • Groupe Arcade-Vyv
    Ciso & It Architect
    Groupe Arcade-Vyv Nov 2018 - Apr 2020
    Région De Paris, France
    Follow and define the IT security standards and norms: - Define and set in place the IT Security strategies based on ISO/IEC 27001, ANSSI and GDPR; - Writing the ISMS documentations (IT charter, Policies, …) and Security roadmap creation; - Training and awareness; - Risk management and IT security dashboard creation; - Internal and external audits Management; - Creation and facilitating of IT Security meeting; - IT Security incident management;Architecture, pre-project, technological watch: - Evolution recommendation in the IT systems, architecture design; - Studies of the structuring projects (firewall, Anti-virus, proxies, data storage, …).
  • Groupe Henner
    Deputy Ciso & Pmo It System Department - Infrastructure
    Groupe Henner Feb 2018 - Oct 2018
    Neuilly-Sur-Seine
    ISO/IEC 27001 – ISO/IEC 27001 certification renewal management: - Writing the ISMS documentations; - Follow up the evidence; - Follow and define the security action plan; - Awareness and training stakeholder to be prepared for the renewal audit;Security – follow up security projects: - SOC SIEM, MFA, PCA/PCIT, AV;PMO – industrialization of the IT System Department - Infrastructure: - Creation of the project roadmap; - Staff training in project management (planning, team report, risk management, …); - Industrialization of decision-making processes BUILD / RUN; - Budget management (team BUILD); - Team management;
  • Axa Technology Services
    Senior International Project Manager
    Axa Technology Services Feb 2017 - Feb 2018
    76 Rue De La Demi Lune, 92800 Puteaux
    Management of evolutions of 2 platforms (Data Mining / Data Management): - Projects portfolio (750K€) - PMMD method; - Budget follow-up, planning, team time tracking, reporting, mobilizing expert teams; - Implementation of news systems and infrastructure; Project management: - Functional coordination of international teams (ASIA, EU); - Organize and facilitate the project governance: steering committees, workshop;IT security: - Application of international IT Security standards – Axa ISMS, ISO/CEI 27001; - Security components: ESG, VIP, WAF, Firewall, IAM and DLP;
  • Servier
    Service Delivery Manager
    Servier Jan 2016 - Feb 2017
    Suresnes (92)
    Transformation and industrialization of IT System Department R&D: - Outsourcing of the RUN contract to Budapest (Cognizant); - IT administration processes industrialization (compliance ISO/CEI 27001 and ISMS); - Contract and budget management;Management of the IT support team IT System Department R&D - budget 800K€: - Define and set in place the IT roadmap; - Ensure the IT Quality compliance regarding the CNIL, FDA, EMA, ANSM, Partners; - SLA / SLR: implementation and follow up.
  • Schneider Electric
    Senior Project Manager
    Schneider Electric Jan 2015 - Nov 2015
    Antony (92)
    Redesign of IT system security procedures: - Conception of the IT Security architecture; - Writing the documentations and processes implementation - reporting; Solution deployment in KPMG/MAJUNGA/EIFFAGE towers (La Défense) – 3 teams (8 persons): - Communication and training about the secure network architecture; - IT deployment (SQL Servers, LNS, …);
  • Extia
    Senior Project Manager
    Extia Jan 2013 - Nov 2015
    Sèvres (92)
    Consultant – Engineering Consulting - Transversal Project Manager,Response to calls for tenders: overhaul of the computer network of the company Parkéon (urban mobility solutions, 1,000 employees) integrating the latest security rules.Mission pour SFR / Schneider Electric / Société Générale
  • Sfr
    Senior Project Manager
    Sfr Jan 2013 - Dec 2014
    Nanterre Rive Défense
    Creation of the new SFR building at Vélizy – budget 500K€, 8 teams (33 persons): - IT Security architecture conception and first deployment of Wi-Fi solution; - Savings made on the initial budget: 75 K€;Wi-Fi deployment on SFR Rive Défense building – budget 90K€, 5 teams (8 persons): - Communication and training about the new Wi-Fi network architecture; - Reduced document printing, roaming availability.New IT architecture apply to all SFR building (France) – budget 150K€, 5 teams (8 persons): - Negotiation and agreements on hardware, architecture and services offered to users to network / telecom providers; - Cost control (30% decrease) in operation and project management (15%).
  • Armée De Terre
    Project Manager
    Armée De Terre Jan 2004 - Jan 2013
    Région De Versailles, France
    Network project manager - Network, telecommunication, supervision and intranet infrastructure projects: management of teams and external stakeholders, meeting facilitating, users training. - Creation of Secure Network Architecture to migrate Lebanon UN and Afghanistan NATO telecom. Upgrade hardware and software.IT Project manager - Management of the development of web and system applications, design of a test platform for the information system and the Intranet site of the Command of the Forces.

Matthieu André Education Details

  • Esgi
    15,58 / 20
  • Esgi
    15,58 / 20
  • Ecole Supérieure D’Application Des Transmissions
    Ecole Supérieure D’Application Des Transmissions
    Mention : Bien
  • Ecole Supérieure Et D'Application Des Transmissions - Esat
    Ecole Supérieure Et D'Application Des Transmissions - Esat
    Mention : Bien

Frequently Asked Questions about Matthieu André

What company does Matthieu André work for?

Matthieu André works for Edf

What is Matthieu André's role at the current company?

Matthieu André's current role is Senior Cybersecurity consultantISO/IEC 27001, ISO/IEC 27002, ISO/IEC 27005, CEH, EBIOS, RGPD, OWASP, NIST.

What schools did Matthieu André attend?

Matthieu André attended Esgi, Esgi, Ecole Supérieure D’application Des Transmissions, Ecole Supérieure Et D'application Des Transmissions - Esat.

Who are Matthieu André's colleagues?

Matthieu André's colleagues are Rebecca Atigui, Melanie Fortoisau, Yassine Rimbert, Thibaut Vercueil, Junod Hervé, Fabrice Hoareau, Nicolas Clément.

Not the Matthieu André you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.