Summary
Overview
Work History
Education
Skills
Timeline
Generic

CAMILLE MALET

London

Summary

Driven and strategic, brings a robust background in cybersecurity and risk management coupled with leadership and analytical skills. Demonstrates proficiency in developing security protocols and managing cross-functional teams. Committed to safeguarding organisational assets and enhancing security frameworks in Cybersecurity roles.

Overview

17
17
years of professional experience

Work History

Head of Information Security

Bondsmith
London
04.2023 - Current
  • Develop a comprehensive information security strategy, ensuring company-wide data protection.
  • Champion implementing security through SDLC
  • Improve overall system resilience through regular penetration testing and vulnerability assessments.
  • Work closely with Risk and legal team to achieve compliance with UK and EU regulations.
  • Conduct routine audits of systems and software, maintaining highest security standards.
  • Facilitated successful ISO 27001 certification process through rigorous preparations.
  • Produce Information Security policies, procedures and standards
  • Coordinate Information Security incidents and data breach response
  • Manage vulnerabilities through lifecycle.
  • Lead training programmes, improving staff awareness on information security protocols.

Technical Operations Security Manager

Seldon
London
03.2022 - 04.2023
  • Responsible for the creation and management of the Security and IT functions
  • Identified potential security threats by conducting comprehensive cyber risk assessments.
  • Reduced risk of data breaches with thorough audits and checks on IT infrastructure.
  • Managed security and IT budgets and liaising with 3rd parties and vendors
  • Partnered with software engineers to implement security in the software development life cycle
  • Synchronised efforts across departments to create a unified approach towards cyber security.
  • Ensured systems and services are working reliably and securely
  • Lead and implemented ISO27001
  • Provided strategic guidance on matters of risk management to reduce vulnerabilities.
  • Assessed data security and compliance with GDPR and EU AI Act regulations.

Head of Information Security

QA Ltd
London
10.2018 - 03.2022
  • Responsible for global, enterprise-wide Information Security program, protecting PII for over 500k users
  • Created and implemented a Security Architecture Roadmap to update the board on mitigation progress
  • Architected cyber security solutions, including integrating Darktrace, Cisco Meraki and Trend technologies for reporting into a consolidated SIEM
  • Developed cyber security improvement plans for the cloud-based infrastructure and performed cyber security risk assessments using ISO 27001 standards
  • Led incident response initiatives for swift resolution of security breaches.
  • Managed RFPs and ensured client requirements were implemented in a timely fashion
  • Supervised a DR/BC Plan's creation, involving multiple teams to ensure alignment with business objectives
  • Created a security awareness training program.
  • Tracked emerging cybersecurity threats to maintain updated defensive strategies.

Consultant - Technology Manager

Certua
London
01.2018 - 10.2018
  • Responsible for enterprise-wide Information Risk Management program
  • Led a team of 5 engineers
  • Defined corporate information security strategy and data acquisition, retention and deletion guidelines
  • Advised Senior Staff and Board of Directors on program health and the industry's threat landscape
  • Enforced data integrity, confidentiality and availability of information and created controls for data processing by the company
  • Conducted risk assessments and designed remediation strategy
  • Performed security audits and implemented WAN/LAN architectural changes
  • Authored technology policies, procedures, security controls and best practices
  • Developed a training program to upskill the team and accelerate adoption of a DevSecOps mentality
  • Updated the infrastructure leveraging AWS products to create a resilient and scalable platform for ML model training and production usage.

Information Security and Technical Operations Manager

LendInvest
London
08.2016 - 01.2018
  • Provided day-to-day ownership of enterprise security and system reliability, providing information security governance, client relationship management, infrastructure and application security, policy development, security metrics, and overall technology risk management
  • Developed IT Security Governance structure to reduce risks in business processes, enhance information security, and comply with regulatory requirements
  • Defined and evolved an enterprise crisis response playbook, leading cross-functional tabletop exercises and training senior leaders on roles and responsibilities
  • Created an Information Security Framework including Incident Management and BCP/DRP
  • Developed and implemented security controls in line with ISO27001 requirements using Gap Analysis and Business Assessment
  • Managed security incidents and forensic activity and formulated and executed a Monitoring Strategy
  • Provided ongoing risk awareness sessions
  • Conducted comprehensive technical and security reviews of 3rd party contracts and agreements, working closely with the Head of Legal and VP of compliance
  • Lead data discovery and mapping against newly created classification policies across over 40 systems
  • Maintained complete leadership control of numerous additional activities, including data migration, AWS environment monitoring, operational project management involving proposals, hosting service delivery, budget control and timescale.

IT Manager

Crowdmix Ltd
London
08.2015 - 08.2016
  • Joined a start-up with 150 employees globally to provide extensive system availability and security strategy, support, building and leading the system engineers team
  • Ensured the effective development and management of a policy portfolio aligned with ISO27001 requirements
  • Directed the implementation of SSO across all systems, enabling user permission monitoring and least privileged access to all users, including developers
  • Managed numerous vital activities, including the introduction of asset management for computer estate control in multiple locations, analysis of user needs and system functionality, automation of provisioning of environments on AWS and ICT strategy implementation
  • Successfully delivered a monitoring solution using Datadog and Pagerduty
  • Created multiple office networks from scratch, developing a redundant network encompassing dual ASA firewalls, stacked switches, web filters and IPS
  • Conducted planning and managed a multi-tenant back-end service deployment on AWS and Azure;
  • Gained recognition for ongoing successes, including implementing SIEM tools, deploying a ticket tracking system, defining SLA, conducting regular root cause analysis sessions and ensuring adherence to agreed service level.

Network and Systems Consultant

Olympia Kensington
London
05.2015 - 07.2015

Systems and Infrastructure Administrator

MindGym Ltd
London
02.2013 - 03.2015

Senior Infrastructure Analyst

Colgate-Palmolive
04.2011 - 02.2013

Support Operation Supervisor

Square Enix Ltd
London
11.2007 - 02.2011

Education

Master - Business Administration

University Toulouse 1 Capitole
France
2007

Skills

  • Information security framework (ISO27001, EU AI ACT, NIST, GDPR, NIS2, PCI-DSS, PSD2)
  • App security / Pentest / Social Engineering
  • Policies, Procedures, Standards & Guidelines
  • Cyber risk assessment & threat modelling
  • Business Continuity & Disaster Recovery
  • Vulnerability management
  • Stakeholder management
  • Risk awareness training
  • Cloud platform security
  • Strategic technology planning
  • KPIs definition and reporting
  • Excellent start-up and Fintech company experience

Timeline

Head of Information Security

Bondsmith
04.2023 - Current

Technical Operations Security Manager

Seldon
03.2022 - 04.2023

Head of Information Security

QA Ltd
10.2018 - 03.2022

Consultant - Technology Manager

Certua
01.2018 - 10.2018

Information Security and Technical Operations Manager

LendInvest
08.2016 - 01.2018

IT Manager

Crowdmix Ltd
08.2015 - 08.2016

Network and Systems Consultant

Olympia Kensington
05.2015 - 07.2015

Systems and Infrastructure Administrator

MindGym Ltd
02.2013 - 03.2015

Senior Infrastructure Analyst

Colgate-Palmolive
04.2011 - 02.2013

Support Operation Supervisor

Square Enix Ltd
11.2007 - 02.2011

Master - Business Administration

University Toulouse 1 Capitole
CAMILLE MALET