Bianca-beata Blaj

Consultant

Würzburg, Germany
Experience
Jul 2023 - Present
2 years 1 month
Würzburg, Germany

Consultant

Software Developer

  • ISO 27001:2022 standard transition
  • Supporting transition from ISO 27001:2017 to ISO 27001:2022
  • Security analyses and controls
  • Developing security concepts
  • Conducting internal audits
Apr 2023 - Present
2 years 4 months

Lead Auditor

Würth IT GmbH und PÜG Prüf- und Überwachungsgesellschaft mbH

  • Conducting external audits
  • Audits at energy providers
  • Audits in the banking sector
  • Audits in software development
Jan 2023 - Present
2 years 7 months
Bietigheim-Bissingen, Germany

Data Protection Officer

Automotive Supplier

  • Data protection consulting
  • Creating data protection impact assessments
  • Maintaining and updating processing records
  • Revising privacy statements
  • Handling data protection incidents
  • Conducting data protection training
Mar 2021 - Oct 2021
8 months
Stuttgart, Germany

Consultant

Automaker

  • IT security management / IT compliance
  • Security and compliance requirements in the digital workplace product development process
  • IT security management
  • Security analyses and controls
  • Identifying and minimizing security and compliance risks
  • Developing security concepts
Jul 2020 - Jun 2024
4 years
Berlin, Germany

Consultant

Telecommunications Company

  • Implementing NIS 2 Directive (01/24 – 06/24)
  • Applying NIS 2 Directive
  • Implementing measures to prevent and contain cybersecurity incidents
  • Responding to security incidents
  • Adjusting risk management for AI systems, cybersecurity
  • Documentation and containment strategies
  • Incident reporting
  • Risk analysis and security for information systems
  • Maintaining and restoring backup and crisis management
  • IT security, BSI IT baseline protection (07/20 – 12/23)
  • Conducting baseline protection checks
  • Performing risk analyses
  • Documenting security processes
  • Participating in training management (training and awareness)
  • Supporting digital radio BOS / BDBOS subprojects
  • Assessing information security for digital radio BOS
  • Developing and maintaining security concepts for digital radio BOS
  • Creating information security policies for digital radio BOS
Feb 2020 - Dec 2020
11 months
Munich, Germany

Consultant

Munich Re

  • Data protection consultant
  • Processor contracts (reviewing existing contracts, checking if a processor agreement is needed for departments, drafting processor agreements, negotiating with partners, etc.)
  • Advising on data protection issues
  • Creating and reviewing processing records
  • Conducting data protection impact assessments
  • Data protection review for launching a knowledge platform
May 2019 - Dec 2019
8 months
Stuttgart, Germany

Consultant

Daimler AG

  • Data protection / IT law consultant
  • Employee data protection
  • Processor contracts
  • Creating processing records
  • Developing a DPIA concept
  • Advising on data protection issues
  • Drafting technical concepts (e.g., deletion concept)
  • IT compliance
Dec 2018 - Mar 2019
4 months
Hamburg, Germany

Consultant

Bank

  • Information security management system consultant
  • BSI IT baseline protection
  • Supporting ISMS implementation
  • Developing information security policies
  • Drafting technical concepts and guidelines
  • IT compliance
  • Creating audit programs
Feb 2018 - Nov 2018
10 months
Eschborn, Germany

Consultant

Deutsche Bank AG

  • Data protection consultant
  • Supporting GDPR implementation
  • Employee data protection
  • Deletion concept
  • Advising on data protection issues
  • Compliance
  • Segregation of duties
May 2017 - Dec 2017
8 months
Grünstadt, Germany

Consultant

Stadtwerke Grünstadt GmbH

  • Building an ISMS per ISO 27001, ISO 27019 under §11 EnWG
  • Supporting project planning
  • Developing information security policies
  • Creating guidelines and documentation
Jan 2014 - Dec 2017
4 years
Munich, Germany

Employee

City of Munich

  • Staff in the area of social law
Jan 2011 - Dec 2012
2 years
Timișoara, Romania

Working Student

Serban Law Office

  • Corporate law support
  • Drafting contracts
  • Preparing presentations and decision papers on corporate law topics, especially data protection
  • Creating guidelines and documentation
Languages
Romanian
Native
German
Advanced
English
Advanced
Education
Lorem ipsum dolor sit amet

First State Examination · Law

Ludwig-Maximilians-Universität

LL.M., Business Law · Munich, Germany

West University of Timișoara

Law, European and International Law · Timișoara, Romania

Certifications & licenses

ISO 9001:2015 Auditor

IT Law with Software Support

IT Security Officer

IT Security Manager

Lead Auditor for ISO 27001:2022

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions