Independent technology leader & advisor

I help companies build, run, and secure the technology they depend on.

My work ranges from focused assessments and roadmaps to hands-on transformation and fractional CTO, CIO, or CISO leadership across technology, operations, security, and governance.

Thomas Salnot

Based in France

Remote-first · working internationally

Travel available by prior agreement

Three connected practices

Build, run, and secure often overlap in the same engagement.

01

Build

Technology & Engineering

Turn product ambitions into a technology strategy, architecture, and engineering organisation that can deliver.

01Technology strategy and roadmap

02Architecture and platform assessment

03Engineering organisation and delivery model

04Cloud foundations and DevSecOps

Explore build

02

Run

IT & Digital Workplace

Create a reliable, secure, and maintainable workplace across identity, devices, SaaS, support, and operations.

01Microsoft 365, Entra, and Intune posture assessment

02Identity and access lifecycle design

03Endpoint management strategy

04ITSM, ITAM, and service foundations

Explore run

03

Secure

Cybersecurity & Governance

Understand the real risks, choose proportionate controls, and build security governance that teams can sustain.

01Security posture and risk assessment

02Prioritised remediation programme

03ISO 27001, HDS, GDPR, and audit readiness

04Cloud and application security governance

Explore secure

Ways to work together

The scope can range from a focused assessment to implementation or ongoing leadership.

01

Assess

Assessment · priorities · roadmap

Create a trustworthy view of the current situation, expose the important risks, and turn ambiguity into decisions.

02

Transform

Design · implementation · adoption

Turn the roadmap into sustainable change across architecture, tooling, processes, controls, and ways of working.

03

Lead

Fractional · interim · advisory

Provide experienced CTO, CIO, or CISO leadership when the organisation needs direction without a permanent executive hire.

Selected work

Technology work across engineering, IT, and security.

These engagements involved decisions across architecture, operations, security, and compliance.

Olea Medical

Cloud · Security · Compliance

Moving a regulated healthcare company toward a cloud-first future

I supported SaaS and data initiatives, security governance, and the ISO 27001 + HDS journey while establishing a strategic AWS partnership to support long-term modernisation.

Build / Secure

ANA Healthcare

IT operations · Identity · Governance

Building modern IT and security foundations from end to end

I lead identity, endpoint management across macOS, Windows, and Linux, cloud and tool decisions, and practical security governance while building a lean stack that can support growth and regulatory expectations.

Run / Secure

Side project: Security Basics, a card deck that explains common security topics in plain language.

View the Security Basics deck

Why me

My work connects executive decisions with technical delivery.

My experience spans hands-on engineering to CIO, CTO, and CISO-level responsibility. That range helps me connect decisions that are too often made in isolation: architecture, delivery, identity, operations, risk, compliance, and user experience.

I work especially well in growing or regulated organisations. The work usually involves controls, tools, ownership, and day-to-day operations.

10+

years across engineering, IT, cloud, and security

20+

audits in regulated and quality-driven environments

Teams

engineering, IT, and security leadership

Start a conversation

Let's talk, even if you are still defining the brief.

I'm based in France and work internationally, remote-first. I travel when being on site is useful, with timing and expenses agreed in advance. I currently lead IT and cybersecurity at ANA Healthcare. I also take on selected consulting, advisory, and fractional work.