21.11.2025 aktualisiert


100 % verfügbar
Cybersecurity consultant certified ISO 27001 Lead Implementer
Palma de Mallorca, Spanien Master degree in Computer science, ESIEA, 2011, Paris, France
Über mich
Cybersecurity consultant certified ISO 27001 Lead Implementer, I have a hands-on expertise in implementing Information Security Management Systems (ISMS).
Skills
AuditsInterne KontrollenISO / IEC 27001Sox-ComplianceTisaxInformationssicherheits-ManagementsystemThird Party ManagementRisikomanagement
Information Security Management Systems (ISMS) according ISO 27001, TISAX and HDS standards
Hands-on expertise in implementing and maintaining ISMS, with a methodical and pragmatic approach to meet specific organizational needs.
Hands-on expertise in implementing and maintaining ISMS, with a methodical and pragmatic approach to meet specific organizational needs.
- Project management: experience in leading ISO 27001 certification initiatives, managing non-conformities, and preparing for certification.
- Risk management: skilled in conducting information security risk analysis and developing strategies to mitigate risks.
- IT controls: proficiency in developing and implementing IT controls to ensure continuous improvement of security measures.
- Information security policies and procedures: expertise in developing security policies and procedures to ensure compliance with standards and regulations.
- Stakeholder management: ability to collaborate with key stakeholders to align ISMS with business objectives and regulatory requirements.
- Compliance knowledge in particular NIS 2 and DORA
Sprachen
EnglishverhandlungssicherFrenchMutterspracheSpanishgut
Projekthistorie
Supporting multiple companies in implementing and managing ISMS in compliance with ISO 27001 or TISAX standards. Conducting security assessments, performing risk assessments, and developing security controls.
Conducted risk assessments of IT projects using third parties, ensuring compliance with internal requirements and external regulations, with a focus on EBA guidelines on outsourcing.
Updated annual risk analysis, worked with business departments to identify and mitigate risks, defined KRIs, and implemented IT controls to meet SOX requirements.
Zertifikate
ISO 270001 Lead implementer
PECB2024