Romain Gauduchon

Head of GRC

Romain Gauduchon is in charge of governance, risk management, and cyber compliance activities at Wannath. He has strong experience in compliance audits (ISO 27001, ISAE 3402, PCI-DSS), process formalization, and project management. He works as an outsourced CISO for clients and also oversees the management of cyber projects and teams involved as part of Wannath's CISO Office offering.

Areas of expertise

  • Governance & management: Outsourced CISO, CISO/security officer support, roadmaps and master plans
  • Compliance: ISO 27001, HDS, SecNumCloud, ISAE3402, PCI-DSS, DORA, NIS2, SOC2, GDPR, ENS
  • Cyber risk management (EBIOS RM, ISO 27005, PAS)
  • Cyber resilience: Business Continuity Plan (BCP), Disaster Recovery Plan (DRP), crisis management
  • Education

  • MBA, EGE, specialized in Cybersecurity Management
  • University of Rennes 2, specialized in Communication & Information
  • Certifications

  • EBIOS Risk Manager
  • ISO 27001 Lead Auditor
  • 10 rue de Penthièvre.

    75008 Paris

    France.

    © 2026 Wannath, all rights reserved.