No items found.
No items found.
Banking and Insurance

MGEN: Moving Beyond Excel to Professionalize Cyber Risk Management

As a major player in social protection, MGEN has transformed its cyber risk management strategy by adopting Egerie as its core GRC platform. The days of complex, rigid Excel files are gone — replaced by a streamlined, continuous approach that benefits both internal teams and external auditors, particularly in the context of ISO 27001 certification.
Florian Bourdon
Cyber GRC Expert, MGEN
Bouton Lecture
Watch
The challenge

Certified under ISO 27001 since 2018, MGEN previously managed its risk analysis using a hybrid Excel file based on EBIOS 2010 and EBIOS RM. Maintained annually by external consultants, the document was complex, difficult to update, and not well-suited for operational needs.

MGEN needed to:

- Regain full ownership of risk analysis.

- Centralize and secure governance data.

- Shift from a siloed, annual process to a strategic, day-to-day practice.

The solution

Following a successful pilot phase, MGEN selected the Egerie platform, convinced by its:

- User-friendly interface and strict adherence to EBIOS RM.

- Capacity to become a daily, central GRC tool.

- Clear, interactive dashboards that bring value during audits and internal reviews.

- In 2024, MGEN transitioned all its risk analyses to EGERIE and expanded its use to new areas: compliance with the French national information security policy (PSSI), monitoring of the cyber program, awareness planning, and more.

The results

Lighter, ongoing updates: No more heavy annual updates — the process is now continuous and under control.

Increased professionalism: Egerie supports internal communication, drives engagement, and stands out during audits.

Strategic steering: Smooth monitoring of the cyber program, collaborative updates, and centralized data.

Improved maturity: Stronger risk awareness, closer interactions with project teams, and progressive integration of regulatory frameworks like DORA, PSSI, and HDSv2.

What’s great about Egerie is how everything is connected. If we change something at the beginning of the analysis, the whole chain updates automatically. It saves us a huge amount of time and makes our work much more relevant.
Florian Bourdon
Cyber GRC Expert, MGEN
Key figures

No Excel since the start of 2024: 100% managed in Egerie

10+ potential GRC users over time

1 single tool to centralize cyber governance

ISO 27001 audit 2024: risk management cited as a key strength by the auditor

TESTIMONIES

You may be interested in this content

Every business has its challenges. Learn how our solutions have helped our customers overcome them and strengthen their cybersecurity.

Discover the use cases
Founder and CEO @Enteprise
We all know there’s no business without risk. But we must be able to give business teams the right information so they can make the right decisions. And that’s exactly what we’re doing with Egerie.
François Sopin
François Sopin
Founder and CEO @Enteprise
The tool allowed us to industrialize an approach that had previously been very manual. More importantly, it helped us get business teams involved in risk management.
Béatrice Berard
Béatrice Berard
Founder and CEO @Enteprise
What’s great about Egerie is how everything is connected. If we change something at the beginning of the analysis, the whole chain updates automatically. It saves us a huge amount of time and makes our work much more relevant.
Florian Bourdon
Florian Bourdon
Founder and CEO @Enteprise
icone fleche gauche
icone fleche droite
Leader européen des services multi-techniques, SPIE a industrialisé sa démarche de conformité et renforcé sa résilience cyber en s’appuyant sur la plateforme EGERIE pour piloter efficacement ses risques et ses vulnérabilités.
A leading financial institution in France, La Banque Postale serves individuals, businesses, and the public sector with a strong commitment to security and compliance. The organization overhauled its risk analysis methodology to improve efficiency, transparency, and its overall risk culture.
How do you turn a regulatory constraint into a driver for cybersecurity performance? That’s the challenge the Hospices Civils de Lyon (HCL) successfully met, with Egerie’s support, through a project that aligned their cybersecurity practices with the requirements of the ISO 27001 standard—making it much more than just a compliance exercise.
As a major player in social protection, MGEN has transformed its cyber risk management strategy by adopting Egerie as its core GRC platform. The days of complex, rigid Excel files are gone — replaced by a streamlined, continuous approach that benefits both internal teams and external auditors, particularly in the context of ISO 27001 certification.

Discover our platform

Lorem Ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod temporincididunt ut labore and Dolore Magna aliqua.

Request a demo