Development of IT processes & strategies, Consulting on data protection & security matters, Conduct of audits/assessments & trainings
Aktualisiert am 29.08.2023
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 01.09.2023
Verfügbar zu: 65%
davon vor Ort: 0%
Informationssicherheit
Datensicherheit
IT-Compliance
Schulung
Auditor
Risikomanagement
English
Professional working proficiency
German
Bilingual proficiency
Russian
Muttersprache

Einsatzorte

Deutschland, Österreich, Schweiz
möglich

Projekte

2 Monate
2023-07 - heute

Audits / Assessments in Data Protection & Information Security

  • esp. data protection, information security, internal control system reg. to data protection controls/processes
  • Review compliance with guidelines & processes
  • Coordination & preparation of audits & assessments
  • Design & implementation of measures from audits / assessments
  • Project language: German / English
Media Industry / IT
2 Monate
2023-07 - heute

Data Protection Management System (DSMS) & Information Security Management System (ISMS)

  • esp. records of processing activities, data processing agreement, pre-assessment, data protection impact assessment (DPIA)
  • Ongoing updating & documentation in the DSMS
  • Carrying out of pre-assessments
  • Implementation of DPIA
  • Migration of the DSMS tools
  • Project language: German / English
Media Industry / IT
2 Monate
2023-07 - heute

Consent Management Platform (CMP)

  • esp. IAB TCF, user tracking, cookies, global vendorlist (GVL)
  • Developments of the CMP
  • Conception, control & implementation of the technical realisation
  • Participation in the design & implementation of consent-relevant processes & products
  • Project language: German / English
Media Industry / IT
2 Monate
2023-07 - heute

Contract Documents & Template according to GDPR

  • esp. joint controller agreement (JCA), data protection agreement (DPA), standard contractual clauses (SCC), transfer impact assessment (TIA)
  • Preparation, review & ongoing updating of contract templates (incl. JCA, DPA)
  • Negotiation of JCA & DPA
  • Carrying out of TIA
  • Review & update of data protection regulations (e. g. for products, websites)
  • Project language: German / English
Media Industry / IT
2 Monate
2023-07 - heute

Information security & data protection; ensuring security/data protection standards

  • esp. BDSG, GDPR, ePrivacy Regulation, data subject enquiries, data protection/security incidents, information obligations
  • § Advice on & specification of security requirements together with development teams for products (e.g. risk analyses, security concepts)
  • Monitoring, review & implement the standards of the ISO 27000 series
  • Control & update of an appropriate standard of safety in processes & products
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Data Protection Concepts & Training

  • esp. deletion concept, technical & organisational measures, role/authorisation concept, privacy by design/default
  • Conception, review & implementation of guidelines
  • Creation, test & update of data protection/security concepts
  • Implementation of data protection/data security measures in product development & internal processes
  • Conduct of training courses on information security & data protection topics
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Risk Management

  • Ongoing review of regulations and measures in information security & data protection
  • Analysis & evaluation of security incidents
  • Review & identification of data protection risks
  • Management of data protection incidents
  • Identification & evaluation of data protection violations
  • Design, review & implementation of internal procedures for data subject/authority enquiries
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Data Protection Management System (DSMS) & Information Security Management System (ISMS)

  • esp. records of processing activities, data processing agreement, pre-assessment, data protection impact assessment (DPIA)
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Consent Management Platform (CMP)

  • esp. IAB TCF, user tracking, cookies, global vendorlist (GVL)
  • Developments of the CMP
  • Conception, control & implementation of the technical realisation
  • Participation in the design & implementation of consent-relevant processes & products
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Contract Documents & Template according to GDPR

  • esp. joint controller agreement (JCA), data protection agreement (DPA), standard contractual clauses (SCC), transfer impact assessment (TIA)
  • Preparation, review & ongoing updating of contract templates (incl. JCA, DPA)
  • Negotiation of JCA & DPA
  • Carrying out of TIA
  • Review & update of data protection regulations (e. g. for products, websites)
  • Project language: German / English
Media Industry / IT
1 Jahr 3 Monate
2022-04 - 2023-06

Information security & data protection; ensuring security/data protection standards

  • esp. BDSG, GDPR, ePrivacy Regulation, data subject enquiries, data protection/security incidents, information obligations
  • § Advice on & specification of security requirements together with development teams for products (e.g. risk analyses, security concepts)
  • Monitoring, review & implement the standards of the ISO 27000 series
  • Control & update of an appropriate standard of safety in processes & products
  • Project language: German / English
Media Industry / IT
4 Monate
2022-12 - 2023-03

Audits / Assessments in Data Protection & Information Security

  • esp. data protection, information security, internal control system reg. to data protection controls/processes
  • Review compliance with guidelines & processes
  • Coordination & preparation of audits & assessments
  • Design & implementation of measures from audits / assessmentsProject
  • language: German / English


Media Industry / IT

Aus- und Weiterbildung

4 Jahre 4 Monate
2016-10 - 2021-01

Business Law

Bachelor of Laws (LL.B.), Anhalt University of Applied Sciences, Bernburg (Germany)
Bachelor of Laws (LL.B.)
Anhalt University of Applied Sciences, Bernburg (Germany)
  • International Business Relations, esp. European Law, UN CISG, Dispute Resolution
3 Jahre
2013-08 - 2016-07

Vocational diploma, Economics

BSZ Franz-Ludwig-Gehe, Dresden (Germany)
BSZ Franz-Ludwig-Gehe, Dresden (Germany)
  • Economics

Kompetenzen

Top-Skills

Informationssicherheit Datensicherheit IT-Compliance Schulung Auditor Risikomanagement

Produkte / Standards / Erfahrungen / Methoden

IT-Knowledge:

  • Project management e. g. Jira, Trello, Asana
  • Process management e.g. Confluence, Miro, ADONIS
  • Data management e. g. SAP HANA Cloud, SAP Analytics Cloud
  • Data Protection / IT Security management e.g. DSMS, caralegal, ISMS


Work Experience:

2023-07 - today 

Role: Data Protection Officer & Auditor, Information Security Officer

Customer: St. Paul?s Bay (Malta) | IT Industry


Tasks:

  • Development of IT processes & strategies
  • Consulting on data protection & security matters
  • Conduct of audits/assessments & trainings


2022-04 ? 2023-06 

Role: Data Protection & Information Security Manager

Customer: glomex GmbH, Unterföhring (Germany) | Media Industry


Tasks:

  • Project management in implementation of data protection, information security & compliance requirements
  • Conduct of audits/assessments, trainings, documentations


2021-03 ? 2022-03 

Role: Legal Assistant

Customer: Ratepay GmbH, Berlin (Germany) | Financial Services


Tasks:

  • Development of internal claim processes & strategies
  • Conception & implementation of risk management system, esp. internal control system (ICS)
  • Establishment of legal standards for IT service provider


2019-07 ? 2020-09

Role: Legal Assistant

Customer: Syntegon Pharmatec GmbH, Dresden (Germany) 


Tasks:

  • Contract, supplementary & claims management
  • Enforcement of performance obligations & claims for supplementary performance
  • Management & conception of test catalogues

Vertrauen Sie auf GULP

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das GULP Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.