Peter F.
Axa Xl @Hamilton
Signup · Get unlimited contacts
WORK HISTORY
Axa Xl @Hamilton
EDUCATION
Loughborough University
Master of Science (MSc)
ABOUT PETER F.
I design the TPRM operating models, CTP Regime programmes, and AI governance frameworks that PRA, FCA, and Lloyd\'s supervisors scrutinise — for insurers, banks, and Lloyd\'s market firms that need concentration risk fixed, DORA gaps closed, or GenAI governance built from scratch. 15+ years in regulated financial services. Available for contract — Inside or Outside IR35. London / Hybrid. What I\'ve delivered recently: AXA XL — Designed TPRM target operating model for 150+ suppliers. Identified 12 cloud supply-chain SPOFs through concentration risk analysis (PRA SS2/21). Stress-tested exit plans for 15+ material outsourcers. Reviewed 200+ SOC 2/ISO 27001 reports. Presented fourth-party risk findings to Risk Committee. Hamilton Insurance — Built ISO 42001 AI governance framework from zero maturity across 8 business units in 6 months. Shadow AI inventory identifying 15+ unsanctioned tools. DORA incident reporting with 4-hour notification workflows. Quarterly AI risk assurance to Board Risk Committee. dmg media — Assessed 40+ third-party vendors in first 8 weeks, closing 15+ control gaps. Rebuilt risk-tiered vendor methodology reducing assessment cycle time by ~30%. Produced the organisation\'s first AI governance risk assessment mapping EU AI Act to 5+ active AI initiatives. Orange Business Services — Closed 30+ DORA ICT control deficiencies achieving Day-1 compliance readiness. ISO 27001 recertification — zero non-conformances. Earlier clients: Deutsche Bank, RBS, Lloyds Banking Group, Legal & General, State Street, Schroders, Inmarsat. What I cover: TPRM & CTP Regime (material outsourcing, concentration risk, fourth-party risk, exit strategies, vendor cyber assurance, cloud supply-chain risk) · AI Governance (ISO 42001, EU AI Act, GenAI/Shadow AI policy, NIST AI RMF) · DORA & Operational Resilience (incident response, impact tolerances, scenario testing) · IT/Technology/Cyber Risk (GRC, RCSA, controls testing, risk registers, KRI/MI, board reporting) · Regulatory fluency across PRA SS2/21, FCA SYSC 8, EBA Outsourcing Guidelines, GDPR. Credentials: AIGP · CISSP · CISM · CRISC · CCSP · CIPP/E · ISO 27001 & 42001 Lead Auditor · TOGAF · AWS & Azure certified Platforms: Archer, OneTrust, SureCloud, ServiceNow GRC, BitSight, SecurityScorecard
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.