You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Aileen S.AS

Aileen S.

Data Governance and Risk Management

521 €/jour
1 projet
Paris, FR
8-15 ans

Délai de réponse moyen : 1h

À propos de Aileen

1. Positioning
I deliver Data Governance and Risk & Compliance services for organizations in complex, regulated environments.

I specialize in turning data governance from policy into practice—embedding scalable, GDPR-aligned governance frameworks into cloud, AI, and federated data architectures.

It led information governance on one of the UK's most complex national data platforms (NHS Federated Data Platform), managing governance, risk, and compliance across cloud and AI environments.

2. Client Value Proposition
Establish clear data ownership and accountability
Reduce regulatory and operational risk
Implement audit-ready, GDPR-compliant governance frameworks
Embed governance into modern data platforms and transformation programs

Enabling scalable, controlled, and trusted data use.

3. Core Capabilities
Experience delivering data governance and transformation across NHS England programs at national scale.

• Data Governance Frameworks – enterprise design and implementation
• Risk & Compliance – GDPR alignment, audit readiness, controls
• Operating Models – RACI, stewardship, decision structures
• Data Quality & Controls – monitoring, traceability, reliability
• Modern Data Platforms – governance for cloud, AI, federated architectures

4. Delivery Approach
Structured, implementation-led model:

Phase 1 — Assess & Align
Phase 2 — Design
Phase 3 — Implement
Phase 4 — Stabilize & Scale

Focused on operational governance, not theory, based on NHS England program delivery.

5. Differentiators
Led Information Governance on the NHS Federated Data Platform (FDP)
National-scale, highly regulated experience
Execution-and adoption-focused approach
Bridges business, technology, and compliance
Cloud and AI-enabled ecosystem expertise

6. Outcomes
Embedded operational governance (not just frameworks)
Reduced compliance and operational risk
Improved data trust and usability
Scalable governance supporting long-term maturity
Alignment with modern data platforms
  • Allemand

    Bilingue ou natif

  • Anglais

    Capacité professionnelle complète

  • Français

    Notions

  • Japonais

    Notions

Accepte de travailler sur site
Paris (jusqu’à 50 km)

Expériences

  • NHS England
    Information Governance/Data Governance and Controls Manager
    AGENCE & SSII
    juillet 2021 - Aujourd'hui (4 ans et 11 mois)
    London, UK
    Leading and managing the implementation of data governance and data protection principles for analytical health service products within the national vaccination programme, e.g. the National Vaccination Booking System and migration from Foundry to the NHS Federated Data Platform (FDP) using Palantir Technologies.

    Data Management & Protection
    •Identifying and mitigating data protection risks through conducting and reviewing Data Protection Impact Assessments (DPIAs)
    •Ensuring compliance with UK/EU GDPR and security regulations
    •Designing and implementing role- and purpose-based access control models and access scopes
    •Developing governance documentation (Data Sharing/Processing Agreements, MOUs, DSP Toolkit compliance, Privacy Notices)
    •Implementing data security controls including pseudonymisation/anonymisation, authentication, user group scoping, onboarding/offboarding, and secure data ingestion/egress
    •Developing data category frameworks and internal data management standards

    Project Management & Strategic Design
    •Embedding governance standards across programmes with stakeholders including government bodies, research institutions, healthcare providers, suppliers, and cross-directorate teams within NHS England
    •Leading change management for transitioning data assets to FDP, including assessment of analytical products and AI capabilities (ontology, FHIR Immunisation API)
    •Harmonising governance processes across platforms to enable a system-agnostic, streamlined approach
    •Leading legislative transition post-COVID under COPI notices and managing post-COPI data assessments

    Additional responsibilities included SARs, FOI requests, ROPA maintenance, compliance audits, risk management, incident reporting, SOP development, and capacity building.

    Developed and embedded the Information Governance Framework and Risk Management processes for FDP, including data architecture principles, access standards, and training teams on governance and compliance.
    Digital Transformation GDPR Federated Data Platform Foundry Policy writing
  • NHS England and Improvement
    Risk Officer
    SECTEUR PUBLIC & COLLECTIVITÉS
    mars 2018 - juin 2021 (3 ans et 3 mois)
    London, UK
    Second Line of Defence – Risk Management

    Development, implementation, and continuous enhancement of a sustainable and effective risk management framework across NHS England and NHS Improvement

    Strategic Risk Management

    •Alignment of Risk and Strategy
    Aligning corporate risks with strategic objectives, including delivery of the Long Term Plan and major transformation programmes (e.g., corporate merger, EU Exit and future relationships, COVID-19 response).
    •Policy and Framework Development
    Designing, implementing, and embedding a national Risk Management Framework aligned with regulatory requirements and best practice principles.
    This includes the development and integration of:
    •Risk appetite framework and key risk indicators (KRIs)
    •Risk assessment methodology and matrix
    •Risk maturity assessments
    •Risk governance and escalation processes
    •Structured review and reporting mechanisms
    •Clear roles, responsibilities, and accountability frameworks
    •Communication and engagement strategies to embed risk culture
    •Governance and Assurance
    Ensuring compliance with audit, advisory, and regulatory requirements, and providing assurance to Executive leadership and the Audit and Risk Assurance Committee.
    •Change and Integration Management
    Conducting gap analyses and harmonising risk management frameworks and processes during the corporate merger of NHS England and NHS Improvement to ensure a consistent, integrated approach.

Avis

5,0

sur 1 évaluation

EmmanuelE

Emmanuel

Senior Product Designer - Banane

Avis laissé le 30/05/2026

I had the pleasure of working with Aileen on our data governance and data catalogue initiatives, and she really exceeded our expectations. She developed a strong understanding of our business and quickly identified the risk profile of our data processing activities. From there, she helped us shape a practical governance approach that balanced compliance requirements with how the business actually works. Aileen defined key risk indicators, clarified the purpose and scope of our data processing, set appropriate legal bases, and structured critical data assets. Her guidance on risk helped us move forward with confidence while still keeping business priorities in mind. What stood out most was her very pragmatic approach to information governance. She supported us in setting up new data activities with clear, practical advice, responded quickly when things changed, and helped make complex legal and operational questions easier to understand. She also put together a solid framework to support the adoption of new AI solutions. Thanks to Aileen’s expertise and collaborative way of working, we now have a much stronger foundation for our current and future data initiatives. I would highly recommend her for any work involving data and AI governance, regulatory compliance, risk management, or data strategy.

Recommandations

Soyez le premier à recommander Aileen

Contribuez à la réussite de ce freelance en partageant votre expérience de collaboration avec lui.

Ces profils de freelance correspondent également à vos critères

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Formations

  • Political Communication and Philosophy (Master of Arts)
    Paris-Sorbonne University
    Joint-degree with Bonn ( thesis 17/20)
  • Risk Analysis (Master of Science)
    King's College London
    2017
    Risk Analysis Master of Science (Upper second-class)

Compétences

Catégories