Head of Engineering | Audit & technical advisory

Securing critical technical decisions

I step in when AI, data or platform projects become unclear, risky or blocked. Before things go off track, or when they already have.

Audit, framing, steering, recovery Sensitive contexts: legal, healthcare, public sector AI / data / platform systems

Remote first. On-site possible for project kickoff, crisis situations or key milestones, in France or Europe.

Portrait of Sylvain Zyssman
Framework
Few meetings. Time for analysis. Clear written outputs.

ISO 27001 Lead Auditor, used as a decision framework, not as a checklist.

When to involve me

4 common situations

Stalled project, high uncertainty

Too many options, no clear decisions, unstable trajectory.

Technical debt turning into risk

Quality, security, performance, costs. Risk increases, no one owns decisions.

Unclear security, compliance or governance

Responsibilities and evidence to structure, without bureaucracy.

Teams deliver, impact stays low

High activity, limited outcomes. The trajectory needs correction.

What you get

Decisions, trajectory, risk reduction

Audit

Clear diagnosis, risks, root causes. Technical, organizational, human.

Framing

Architecture, priorities, decisions to make, explicit trade-offs.

Steering

Critical path, governance, ownership, meaningful follow-up.

Recovery

Getting things back on track and reducing risk, without noise.

Delivery support

Supporting execution without acting as a daily developer.

ISO 27001

Decision and risk framework. Not a checklist, not a certification promise.

Approach

3 simple steps

3 steps

  • Understand: context, constraints, objectives, blockers.
  • Decide: options, trade-offs, priorities, ownership.
  • Deliver: defensible outputs and a prioritized action plan.
Few meetings. Focused workshops. Time for analysis. Clear written outputs.

Principles

  • Limited, prepared, useful meetings.
  • Explicit decisions, clear ownership.
  • Viable trajectory over feature production.
  • Security and compliance addressed early.

Engagement models

Remote first, occasional on-site

Audit sprint (2 to 4 weeks)

Clarity, arbitration, actionable plan.
  • Framing workshops
  • Analysis and audit
  • Readout and prioritized action plan

Fractional CTO (occasional or recurring)

Senior perspective over time, without a full-time CTO.
  • Decisions and arbitration
  • Governance, risk, compliance
  • Support in critical situations when needed

Contact

Simple, spam-safe

Get in touch

You can reach me by email or via LinkedIn. Typical response within 1–2 business days.
Timezone: Europe/Paris.

Scope

Remote first.
On-site possible for project kickoff, crisis situations or key milestones, in France or Europe.
If you are looking for a full-time hands-on developer, I am not the right profile 🙂