
Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO Exec
Cash management

Connect with Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO Exec to Send Message
Connect
Connect with Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO Exec to Send Message
ConnectTimeline
About me
Director of Information Security, CISO
Education

University of the Aegean
2006 - 2009Department of Statistics and Actuarial-Financial Mathematics Master of Science (MSc) in Statistics & Data AnalysisThe Track in Statistics and Actuarial - Financial Mathematics of the Department of Mathematics aims at providing various skills and at developing advanced research in the areas of Statistics and Actuarial Science. The educational program of the Track aspires to produce professionals, who will be able to use sophisticated mathematical, probabilistic, statistical and computational methods in order to estimate risks and to propose efficient insurance, statistical and financial plans.The… Show more The Track in Statistics and Actuarial - Financial Mathematics of the Department of Mathematics aims at providing various skills and at developing advanced research in the areas of Statistics and Actuarial Science. The educational program of the Track aspires to produce professionals, who will be able to use sophisticated mathematical, probabilistic, statistical and computational methods in order to estimate risks and to propose efficient insurance, statistical and financial plans.The graduates will be able to suggest optimal investment strategies. They will have the necessary background that will enable them to analyze data from health, insurance, demography, industry. They can be employed in various positions in public enterprises, ministries, banks, hospitals, insurance-finance companies, oil companies, telecommunications companies, informatics companies, advertising companies, universities, research institutes. Show less

University of Piraeus
2001 - 2006Bachelor's degree Business Administration and ManagementThe Department of Business Administration has a carefully designed curriculum which offers a wide range of knowledge (Management, Accounting, Marketing, Finance, Quantitative Methods, Law, New Technologies, etc.) aiming at the intergrated education and training of future leaders in the private and public sector. Particular emphasis is given on familiarizing students with New Technologies through courses that include also a laboratory part. Α typical example, is the two courses of Computer… Show more The Department of Business Administration has a carefully designed curriculum which offers a wide range of knowledge (Management, Accounting, Marketing, Finance, Quantitative Methods, Law, New Technologies, etc.) aiming at the intergrated education and training of future leaders in the private and public sector. Particular emphasis is given on familiarizing students with New Technologies through courses that include also a laboratory part. Α typical example, is the two courses of Computer Applications that involve compulsory attendance of 40 hours each. The combination of a dynamic and innovative curriculum that takes advantage of the latest technologies, with the experienced and reputable professors of the Department, creates a fertile ground for the effective dissemination of knowledge and the development of the necessary skills for future professional recognition of the Department's students. Show less
Experience

Jumbo SA
Dec 2002 - Apr 2005Cash management
Citi
May 2004 - Sept 2004Self Service Banking (ATM’ s)• Correction of financial entries regarding the deposits of ΑΤΜ’s customers.• Information letters to the customers regarding the deposit corrections.

Citi
May 2006 - Sept 2006Self Service Banking (ATM’ s)• Reconciliation of Bank’s ΑΤΜ (in site the branches & off-site)• Correction of financial entries regarding the deposits of ΑΤΜ’s customers.• Managing the procedure of supply branch network in euro & foreign currency

HSBC
Oct 2006 - Dec 2019• Ensure an appropriate response to live incidents; implement standards, policies and procedures to reduce the length of down time and minimize the financial impact in the event the Bank experiences a disaster or other event that results in an interruption of critical operational functionality• Ensure compliance with the Group standards relating to incident logging, management of the Emergency Notification Process (ENS) and the performance of a post incident review• Ensure Business and Functional Stakeholders understand their and responsibilities• Ability to coordinate a number of resources in case of projects / Business Continuity Management activities execution or in case of any invocation. Cascade timely any related communications from Global and Regional security• Work in partnership with businesses/ functions to ensure alignment on the appropriateness of the controls and their effectiveness• Review and update controls in line with the changes to the risk environment• Oversee the local contingency site provision ensuring both availability and implementation effectivenessContinually reassess the operational risks and inherent in the business, taking account of changing economic or market conditions, legal and regulatory requirements, operating procedures and practices, management restructurings, and the impact of new technology Show less • Implement standards, policies and procedures to reduce the length of down time and minimize the financial impact in the event the Bank experiences a disaster or other event that results in an interruption of critical operational functionality• Manage the development, implementation and maintenance of Contingency Planning across all areas of the Bank• Information Security Risk Activities; including but not limited to Risk Analysis• A leading Business Continuity Management Risk Steward role (Second Line of Defense) for defining the risk management requirements specific to Third Parties related to Contingency Risk and for providing subject matter expertise, specialist input and oversight as required to support and challenge businesses and functions in the execution of their responsibilities• Provide specialist input and oversight on business continuity risk management process for Critical and Essential Third Parties• Provide specialist insight, advice and challenge to 1LoD; identify operational risk learning needs for Business Continuity and Information Secutity Risk and support the creation and/or embedding initiatives• Provide advice and challenge to 1LoD related to Insider Risk/ vetting requirements• Act as point of contact for remediation of Group/ Audit issues• Identify operational risk learning needs for the Security risks and support the creation and/or embedding of initiatives• Produce operational risk reporting relating to the Business Continuity/ Information Security Risk to provide insight (i.e. trends, reviewing external events from a variety of reporting sources) and support the decision making. Based on the trigger events the 1LoD may need further assessment or re-assessment of any existing RCAs• Conduct Security Risk thematic reviews• Identify key risks, their associated controls and the appropriate planning and procedures.GDPR issues -2LoD oversight for Insider Risk/ vetting Show less 1) Country Business Continuity Coordinator:• Implement standards, policies and procedures to reduce the length of down time and minimize the financial impact in the event the Bank experiences a disaster or other event that results in an interruption of critical operational functionality• Manage the development, implementation and maintenance of Contingency Planning across all areas of the Bank• Maintain standard guidelines and best practice relating to Business Continuity Management.• Maintain relationship with Regional BCM structure• Coordinate the development, implementation and maintenance of Business Continuity strategies, standards, policies and procedures. Ensure all business units comply with policies and proceduresManage projects to design, coordinate, conduct and evaluate business continuity exercises when assigned2) Information Security Risk Country Generalist:• Increasing the understanding of information risks within country by explaining these in plain/business terms and engaging Global ISR teams for help with mitigating actions to keep the country Global Businesses and Functions within their risk appetite• In country representation for multiple Global Information Security Risk functionsEstablish processes to ensure compliance with all internal and external regulations• Provide in country support to colleagues and activities across all the functions of the Global ISR team, including but not limited to Assurance Reviews, Risk Analysis, Third Party Security Reviews, and Data Loss PreventionProviding guidance to Risk Owners for setting key risk indicators (KRIs) for respective categories and monitoring preventative thresholds and trendsReviewing standards and providing challenge where expected controls have not been associated with the specific risk instances as described in ISR policyGuiding IT Security-Access Management enforcementProviding advice & guidance on policy control requirements associated with standards and related ISR policies Show less
Business Continuity & Incident Manager
Jan 2019 - Dec 2019Security Risk Manager
Mar 2018 - Dec 2018Business Continuity Manager & Information Security Risk Country Generalist
May 2012 - Mar 2018Assistant Invoice Finance Manager
May 2010 - May 2012Premises & Security Administrator
Oct 2006 - May 2010

UCI Greece Credit and Loan Receivables Servicing Company Single Member Societe Anonyme
Sept 2020 - Dec 2022- Oversee strategic business initiatives - Review organizational structure - Develop, implement & oversee the overall Quality Management Strategy - Information Security Management - ISO Company's Certifications Governance -Maintenance and monitoring of quality standards- Corporate Social Responsibility/ Sustainability- Identify knowledge/ skill gaps in the company and suggest solutions - Liaison between staff, executives, senior leaders and CEO, regarding company structure, employee well-being, project updates, proposals and planning - Work with CEO and senior management on special projects - Subject Matter Expert in Risk Management, handling inquiries and developing relative action plans Show less
Head of Governance, Risk & Compliance
Jan 2021 - Dec 2022Quality Assurance Manager
Sept 2020 - Jan 2021

Pancreta Bank
Jan 2023 - Apr 2024Director of Information Security, CISO- Cybersecurity Strategy - Information Security Management System Framework- ISO 27001 Implementation - Information & Communications Technology (ICT) and Security risks - Cybersecurity learning program to all Staff- Cyber Risk Insurance
Licenses & Certifications

B2 French Language
Ministry of National Education - Directrorate General of European & International Affairs in Education
B2 Italian Language
Ministry of National Education - Directrorate General of European & International Affairs in Education
Blind System in Typing
Computer Start
Delf 1
Universite de Paris
Foundation Course on International Factoring - Bronze Certificate
Factors Chain International.webp)
CBCI Certificate of the Business Continuity Institute
Business Continuity Institute (BCI)
IT Security Fundamentals
QA Ltd
ECDL Core Cetrificate
PEOPLECERT
Proficiency in English language
University of Central Lancashire
Business Impact Analysis - Expert Session
Business Continuity Management Institute, BCM Institute
INFORMATION SECURITY MANAGEMENT SYSTEMS LEAD AUDITOR | ISO/IEC 27001:2022
TÜV AUSTRIA HELLAS Inspection and Certification BodyDec 2023
ECDL Webstarter Certificate
PEOPLECERT
Information Systems for Enterprises
University of Piraeus
ECDL Imagemaker Certificate
PEOPLECERT.webp)
MBCI
Business Continuity Institute (BCI)
Organizational Behavior / Management
HSBC
DPO Executive
TÜV AUSTRIA HELLAS Inspection and Certification BodyApr 2021
Certified Data Privacy Solutions Engineer (CDPSE)
ISACAMar 2021
Risk and Systems Control
BCS, The Chartered Institute for IT- View certificate

Learning GDPR
LinkedInFeb 2021 - View certificate

Learning Document Retention and Data Management
LinkedInFeb 2021 - View certificate

Privacy in the New World of Work
LinkedInFeb 2021 - View certificate

Azure Active Directory: Basics
LinkedInJan 2021 - View certificate

GDPR Compliance: Essential Training
LinkedInJan 2021 - View certificate

CASP+ Cert Prep: 1 Risk Management
LinkedInJan 2021 - View certificate

Microsoft 365: Manage Governance and Compliance
LinkedInJan 2021 - View certificate

Microsoft 365 Business Essential Training for SMBs
LinkedInJan 2021 - View certificate

Building Resilience
LinkedInApr 2020 - View certificate

Project Management Foundations
LinkedInApr 2020 - View certificate

Artificial Intelligence Foundations: Machine Learning
LinkedInJul 2019 - View certificate

SAP ERP Essential Training
LinkedInApr 2020 - View certificate

Developing Your Professional Image
LinkedInMar 2020 - View certificate

Negotiating Your Job Offer
LinkedInJul 2019 - View certificate

Learning to Be Promotable
LinkedInJun 2019 .webp)
Associate Fellow of The Business Continuity Institute
Business Continuity Institute (BCI)May 2019- View certificate

Leading with Emotional Intelligence (2013)
LinkedInDec 2018 - View certificate

Preparing for Your Review (2014)
LinkedInDec 2018 - View certificate

Body Language for Leaders
LinkedInDec 2018 
ProQual Level 2 Award in Cyber Security Awareness for Business
ProQual Awarding BodyDec 2017
Honors & Awards
- Awarded to Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO Exec26th #GreekICTForum in Zappion Megaro, led and moderated by Athanassios Kosmopoulos, DPO of Digital Governance Ministry https://www.linkedin.com/posts/georgios-mallikourtis-0634b630_greekictforum-cybersecurity-privacy-activity-7172171112481447937-ILHi?utm_source=share&utm_medium=member_desktop The 26th #GreekICTForum in Zappion Megaro was concluded on Thursday 7/3/24, with an impressive session led and moderated by Athanassios Kosmopoulos, DPO of Digital Governance Ministry. Insightful presentations and an "Ask-Me-Anything" discussion on hashtag#Cybersecurity, hashtag#DataProtection and hashtag#Artificialintelligence with an esteemed panel:Fotini Papagiannaki,Pepi Sompolou, CDPSE, AFBCI, Spiros Tassis,George Mallikourtis,CIPM,CISA,CDPSE, CISM,ISMS LA,DPO… Show more The 26th #GreekICTForum in Zappion Megaro was concluded on Thursday 7/3/24, with an impressive session led and moderated by Athanassios Kosmopoulos, DPO of Digital Governance Ministry. Insightful presentations and an "Ask-Me-Anything" discussion on hashtag#Cybersecurity, hashtag#DataProtection and hashtag#Artificialintelligence with an esteemed panel:Fotini Papagiannaki,Pepi Sompolou, CDPSE, AFBCI, Spiros Tassis,George Mallikourtis,CIPM,CISA,CDPSE, CISM,ISMS LA,DPO exc,COBITcert,BCCLA and Nikos Drakos. Show less
Volunteer Experience
Olympic Games 2004 - Technology Helpdesk Associate of IT Department
Issued by Cultural Olympiad 2001-2004, Hellenic Ministry of Culture on Feb 2004
Associated with Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO ExecEducator for 5th & 6th-grade students helping to understand entrepreneurship and money management
Issued by SEN/Junior Achievement Greece on May 2013
Associated with Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO ExecClimate Champion - Sustainability
Issued by Earthwatch Institute on Apr 2009
Associated with Pepi Sompolou, CDPSE, ISMS LA, AFBCI, DPO Exec
Languages
- enEnglish
- frFrench
- itItalian
- grGreek
- spSpanish
Recommendations

Mikko kallatsa
Senior HW Designer at HuldTampere, Pirkanmaa, Finland
Pulkit chhabra
A Motorcyclist and Salesforce Consultant|Data Architect|BA with 9+ yrs of exp. designing complex tec...Delhi, India
Bita ahsant
Information Security Risk ManagerRotterdam, South Holland, Netherlands
Nour a.mohamed
BIM Manager , IEDM , PMP , FMPD , IAEgypt
Naveen ram
Team lead at Mashreq JavaScript | ReactJsChennai, Tamil Nadu, India
Shreya bhutra
Chartered Accountant ||Assistant Manager @ JPNR Corporate Consultants|| VP-PR at JPNR Toastmasters C...Kolkata, West Bengal, India
Shubham singh
Crafting top-notch funnel designs and forging connections with entrepreneurs worldwide.Delhi, India
Joseph veeravalli
Sr. Technology Consultant at PwCColumbia, South Carolina, United States
Григорий пилипейко
Ведущий эксперт по технологиям – SberRussia
Gina guzmán ramírez
Regional Pharmacovigilance Manager, LA NORTH Region. AbbVieBogota, D.C., Capital District, Colombia
Abhishek maurya
MTech(Technology & Development) IIT-Bombay | GATE’23: AIR 42 | Bachelors of Planning (SPA-Bhopal)Madhya Pradesh, India
Finn gropengießer
Gründungsmanager + Sales & Business Development ManagerGöttingen, Lower Saxony, Germany
Emma goulet
Étudiante en année de césure de l'ENSG Nancy - Service civique au LaosVandoeuvre-lès-Nancy, Grand Est, France
Neslihan sanatçı
Planlama MüdürüIstanbul, Istanbul, Türkiye
Mostafa ahmed
Luxury Botique Manager at Damas Jewellery LLCKuwait
Sarah donnelly
Sustainability Strategist | Masters in Sustainable DesignSt Paul, Minnesota, United States
Bryann brzoskowski
Pricing at DC Logistics BrasilItajaí, Santa Catarina, Brazil
Danielle coombs
Communications Strategist (Internal/External)Ireland
Mangesh sapkal 🇮🇳
Human Resources Officer at UPSPune, Maharashtra, India
Jenn canlas
Information Technology Officer | Philippine National Public Key Infrastructure (PNPKI)Metro Manila, National Capital Region, Philippines
...