freiberufler Information Risk, Security Management, Project Manager and Auditor auf freelance.de

Information Risk, Security Management, Project Manager and Auditor

offline
  • 130€/Stunde
  • 5408 Ennetbaden
  • Weltweit
  • zh  |  en  |  de
  • 31.05.2020

Kurzvorstellung

MAJOR SKILL & INDEPTH KNOWLEDGE
1. Security Governance, Risk and Compliance
2. Cybersecurity Consulting and Advisory
3. IT Audit and Risk Assessment
4. Project Management

Qualifikationen

  • Certified Information Systems Security Professional (CISSP)
  • CISA (Certified Information Systems Auditor)
  • DIN ISO/IEC 27001
  • DIN ISO/IEC 27002
  • Enterprise project management (EPM)

Projekt‐ & Berufserfahrung

Information Risk Security Manager (Festanstellung)
Kundenname anonymisiert, Hong Kong Island
4/2018 – 5/2020 (2 Jahre, 2 Monate)
Finanzdienstleister
Tätigkeitszeitraum

4/2018 – 5/2020

Tätigkeitsbeschreibung

Information Risk Security Manager
1. Perform Audit and Risk Assessment Services
a. Conduct Annual IT Audit.
b. Conduct Cybersecurity Risk Review.
c. Create Audit Plan.
d. Follow-up control issue and risk items.

2. Assist to obtain the following certification for the employer’s company:
a. ISO27001
b. ISO27701
c. PCI DSS 3.4.1
d. EU-US Privacy Shield
e. SOC 2 Types 1 and 2

3. Implement Information Security Framework
a. Implement Information Security Management System (ISMS) for ISO27001 Certification.
b. Institute Information Security Policies.
c. Define Technical Security Operation Requirements.
d. Define Operating Procedure for SIEM, Network Changes, Access Provision, Anti-virus and Endpoint Detection Response and Technical Compliance Review.
e. Provide consultancy to build Security Architecture, Controlled Procedures

4. Develop and Manage Business Continuity
a. Develop Business Continuity Plan.
b. Institute complete Business Continuity Planning Methodology.

Eingesetzte Qualifikationen

CISA (Certified Information Systems Auditor), DIN ISO/IEC 27001, DIN ISO/IEC 27002, Certified Information Systems Security Professional (CISSP)

Zertifikate

ISO27001 Lead Auditor
2015
COBIT 5 Assessor
2014
Project Management Professional (PMP)
2013
Certified Information Systems Security Professional (CISSP)
2012
Certified Information Systems Auditor (CISA)
2011

Ausbildung

Electronic Commerce and Internet Computing
MSc
2003
Hong Kong
Master in Accountancy
MAcc
2000
Hong Kong
Law
LLB
1999
Hong Kong
Computing and Information Systems
BSc
1984
England Manchester

Weitere Kenntnisse

PROFESSIONAL QUALIFICATIONS AND SECURITY STANDARD EXPERIENCE
• Certification – CISA, CISSP, ISO27001 LA, ISO27002, COBIT 5 Accessor, PMP, CEH (in preparation)
• Standards – ISO27001, ISO27002, ISO 27701, ISO31000, COBIT, COSO, SOC 2, NIST
• Legal Compliance – GDPR, US-EU Privacy Shield, Bank IT Regulation, SOX

Persönliche Daten

Sprache
  • Englisch (Fließend)
  • Deutsch (Grundkenntnisse)
  • Chinesisch (Muttersprache)
Reisebereitschaft
Weltweit
Arbeitserlaubnis
  • Europäische Union
  • Schweiz
Profilaufrufe
1177
Alter
63
Berufserfahrung
39 Jahre und 5 Monate (seit 11/1984)
Projektleitung
20 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden