
Christophe Mazzola
CISO · Lead GRC · author and speaker
I take cybersecurity where it actually breaks: governance and the human factor. And I try to make it clear, for executives and for everyone else.
The book came out in January 2025. It sells, it is well received, and yet it only protects the people who read it to the end. This site is my answer: everything the book asks you to do, freely available, cut into actions you can take in one evening. There is no team behind it, I write it and I keep it running.
At a glance
- Role
- CISO of the international Mobilexpense group
- GRC
- Lead GRC at Cresco Cybersecurity, Integrity360 group
- Training
- Founder of the Cyber Academy, PECB Certified Gold Trainer
- Certifications
- 20 professional certifications, verifiable on Credly
- Stages
- TEDx, PECB, Agoria, Les Engagés
- Based in
- Gran Canaria, bilingual French and English
The path
Entrepreneur, author and CISO, I have made cybersecurity a craft of clarity: making it legible and applicable, for executives and for everyone else. What interests me in technology is not its complexity, it is what it enables when it genuinely serves people. That is the point of the book “Être en cybersécurité”, published by Éditions Spinelle.
Today I design and challenge the governance and compliance frameworks (ISO 27001, PCI DSS, NIS2, DORA) that organisations rely on to stay compliant, resilient and honest about their real risk posture, from finance to software, from sport to luxury. In parallel I founded the Cyber Academy, where I train hundreds of professionals on the standards that matter, through certifying tracks built with PECB.
Most governance failures are not technical. They are structural, cultural, and deeply human.
What I believe
What I have learned over fifteen years in the field: dashboards go green while blind spots grow, audits get signed off while accountability dilutes. I also explore the human side of the subject in a second book in the works, “Cyberpsychologie, se connaître pour ne plus se faire hacker”.