20.11.2025 aktualisiert


Berater QMS (13485;9001), RMS(14971;31000;27005), ISMS(27001), BCMS(22301), KRITIS
Schwäbisch Gmünd, Deutschland
Weltweit
M.Sc. Regulatory Affairs Management; Diplom Wirtschaftsinformatiker (BA)Skills
What I offer
- Information Security Management (ISMS): I build, implement and maintain ISMS based on ISO/IEC 27001 with a focus on healthcare‑specific requirements.
- KRITIS advisory: I support compliance with §8a BSIG and implementation of protection and evidence obligations for critical infrastructure in the health sector.
- Regulatory affairs for MedTech and SaMD: I provide strategic regulatory and market entry advice, QMS setup according to ISO 13485 and risk management per ISO 14971.
- Operational projects: I deliver GDPR alignment, CRM and industry‑software implementations, SQL/SSRS reporting and pragmatic IT project management with sustainable handover to operations.
Method and strengths
- I work pragmatically, audit‑oriented and process‑driven, translating requirements into concrete, implementable measures.
- My focus is on information security (information protection, governance and processes), not only on IT technology.
- I ensure clear communication between clinical users, IT and management so security measures are accepted and lived.
- I have hands‑on experience with small and medium organizations and deliver cost‑efficient, scalable solutions.
Key qualifications
- M.Sc. Regulatory Affairs Management
- PECB Certified ISO/IEC 27001 Lead Auditor; appointed ISO 27001 auditor (TÜV)
- Lead Auditor ISO 22301; ISO/IEC 27001 Practitioner (Information Security Officer)
- CSPO (Certified Scrum Product Owner) and extensive MedTech and healthcare project experience
Sprachen
DeutschMutterspracheEnglischverhandlungssicherFranzösischGrundkenntnisse
Projekthistorie
- KRITIS
- ISO 27001
- ISO 27001
Zertifikate
ISO/IEC 27001 Practitioner
APGM International2018
Lead Auditor ISO 22301:2012
BSI Group2018
Risikomanagement & ISO 14971
Johner Institut2016
QWare Risk Manager
Bayoonet2016
Risikomanagement und Risikoanalyse für Medizinprodukte nach der DIN EN ISO 14971:2012
TÜV Süd2014
CSPO – Certified Scrum Product Owner
Scrum Alliance2014