Alex Antar - Seasoned IT Governance, Compliance, ERM & IT security Expert

Principal Solution consultant at Matrice-In-Motion

Nationality

French

Current location

Ireland

Work category

IT and Technology

Education

Masters/PostGrad

RESULTS DRIVEN PROFESSIONAL: 17+ years international experience. Proven expertise in IT Governance, GRC (Governance, Risk & Compliance), SOX compliance, ERM (Enterprise Risk Management), PMO, ITIL, Business Intelligence (BI), Budget Management, Financial analysis, Online Banking, Security, Six Sigma, etc.

Alex Antar's Professional Experience

2008 - Present

Matrice-In-Motion - Principal Solution consultant

• End-to-end ownership of consultancy engagement (at board CIO/CEO level) and commercial proposition development including tailor made solution development, price structure, opportunity assessment, contract negotiation (in relation to IT Governance Framework development, SAP GRC, ERM Enterprise Risk Management (using Dakota Risk Manager), Accountability models, compliance certification process, incident, problem, configuration/asset and change management, etc);
• Based on COBIT, I led the assessment of the current state of IT maturity (AS-IS model) working through 8 threads (Strategy, Organization, Process, Applicative Structure, Infrastructure, Security, Business Continuity, Budget management).
- Elaborated a future model of maturity (TO-BE model).
- Proposed initiatives to fill the gap between the current and the future model.
- Prepared the road map and the future SAP GRC strategy on short, medium and long term.
• At AVIVA Group( Insurance & Banking services), I used COBIT to develop a fast track IT Governance framework as part of a global ITIL/SOX compliance programme including designing test scripts relating to the global General IT controls relevant to physical & logical Security, SDLC (Software Development Life Cycle), Change Management, IT operations and Backup & Recovery. I also had to secure the buy-in from PWC who were acting as AVIVA’s SOX advisors, and Ernest & Young the external auditors.
• Prepared a new Professional Service Offer about Optimizing the AVIVA’s IT Service Catalog.
• Prepared a new SAP GRC solution for AVIVA,
• Managed a service level management tool implementation to report on operating and service levels of the online banking service. I developed, improved, and performed training on its service catalog design and service level reporting processes. I designed the service catalog’s underlying relational database format and catalogued the online banking service;
• Prepared a new Professional Service Offer about ITSM & IT Governance for the Cork County Council in Ireland.
• Led the engagement of a corporate QlikView programme for KPMG Brussels (Belgium) involving financial and HR reporting functions.
• Prepared and taught an ITIL and COBIT introduction course in order to prepare IT agents to take the Foundation Exam (18+6 hours).
• Practice Lead in the following areas:
o IT Governance & IT strategy development including budget processes; Program Office management; Business Analytics, Enterprise Risk Management (ERM); SOX 404 compliance process development, IT General Controls re-engineering; Information Security compliance: COBIT, ISO 27001, 27002, 27005, 27006; Financial Analysis: Cost & Benefit, Sensitivity Analysis, TCO, ROI metrics, etc; Business Case Development; Business Process Improvement (Six Sigma);
• Created a full, organization-wide “PMO in-a-Box” with a Benefits Realization Management process within the ITIL V3 framework; The benefits management process focused on the following:
o Benefits Management During the Start-up Phase – Identifying High Level Benefits
o Benefits Management during the Initiate phase – Initial Benefits Planning
o Benefits Management during the Execute phase – Detailed Benefits Planning & Start Realising Benefits
o Benefits Management during the Close phase – Realise Benefits
• Prioritized the existing projects, created a project-selection/prioritization process;
• Developed metrics that the Steering Committee could use to consistently track all projects and select new projects based on strategic objectives;
• Automated the selection process so that from the time a project was first requested all the numbers needed to select and prioritize the project were available within two weeks. Etc.
• Business Development & Pre-sales Consulting for Business Intelligence & Data Analysis with focus on QlikView as part of partnership with QlikTech. Business Development included:
o MKTG analysis and strategy development;
o Cold calling and face-to-face products & services presentation;
o Writing Public tender proposals and documents,
• Delivering Training to customers and partners;

Key Skills
Acting Banking Budget management Business Development COBIT data data analysis engineering IT Operations ITIL Negotiation office management PMO Process Development Process Improvement Risk Management SAP six sigma Software Development SOX 404 strategy
2005 - 2007

Pepsi Cola International - IT Governance & PMO Manager

 Led and provided expert advice to Pepsi Cola (at board CIO/CEO level) to plan, evolve, and implement a global "PMO in-a-box" including Benefits realisation management framework that is SOX compliant including: Business case format, Charter/scope document, Impact analysis, Issues, risks, enhancement, scope control logs and forms, Meeting minutes and action items format, Deliverables matrix, Standard SDLC project plans, Project standards document, Documentation management plan, Communication plan, Quality assurance plan, Knowledge transfer plan, Test plan, Go live and deployment plan, Change management and stakeholder analysis, Status report(s), Roles/responsibility and key contacts, Time tracking and management, Budget tracking, Project health check, Lessons learned.
 Developing an IT Governance Framework combining ITIL and COBIT (with focus on SAP GRC) including an actionable service catalog and a web based dashboard tracking metrics that highlight and improve the value of IT division. This also included re-engineering a new global budget process governing the annual operating process as part of the OPEX & CAPEX based on variance control between actuals and forecasts for PepsiCo’s EMEA, USA and Asia including China, India, Pakistan and Puerto Rico. The reporting capabilities were developed using QlikView on top of Business Objects. Moreover, focus was on gaining the buy-in from different IT departments and delivering global awareness & training programme.
 Managing and coordinating Sarbanes-Oxley compliance audits and certifications insuring accurate group internal audits, documentation and testing, monitoring and improving internal control procedures and existing policies. This included interacting with internal and external auditors (KPMG) cross multifunctional teams and countries and chairing the quarterly SOX results reporting conference meetings briefing Pepsi Cola’s SOX compliance executives about the SOX testing results, issues, and mitigation activities.
 Based on COBIT, I led the re-engineering project of PepsiCo’s IT SOX compliance process including planning and coordinated, the “as is” and “to be” IT compliance analysis sessions through SOX focus groups meetings; I also developed an ERM Enterprise Risk Management process, successfully negotiated and obtained the buy-in from the control & process owners, SOX stake holders and internal plus external SOX auditors, re-wrote the SOX documentation (narratives, test scripts, risk matrix, Control process flows) relating to the global General IT controls relevant to physical & logical Security, SDLC (Software Development Life Cycle), Change Management, IT operations and Backup & Recovery.
 Initiated a global Six Sigma framework for PepsiCo’s plants and the global Shared Services Centre in Ireland;
 Developing a rational IT services costing model to improve the accuracy of the internal cross-charging.

Key Skills
accuracy audits COBIT development EMEA engineering IT Operations ITIL Management PMO reporting Risk Management SAP six sigma Software Software Development

Alex Antar's Education and Qualifications

1992

Masters/PostGrad - Computer Science

Université Blaise Pascal (Clermont-II) - Clermont-Ferrand, France

Alex Antar's Additional Information

Languages