David Wägerle
Consultant Information Security
Experience
Co-Auditor
St. Franziskus Hospital GmbH
As co-auditor, I took part in planning and conducting the B3S audit at the KRITIS hospital, including reviewing documents (ISMS according to ISO 27001/B3S, security concepts, risk analyses), preparing and conducting interviews with departments, and inspecting clinical and IT-relevant areas.
I independently evaluated assigned control areas (e.g. information security organization, emergency and continuity management, technical and organizational measures) based on the B3S Medical Care and the legal KRITIS requirements, and formulated findings and recommendations for improvement.
I supported the lead auditor in consolidating the results, preparing the audit report, and deriving measures to improve information and patient security in the hospital.
Consultant Information Security
SWK AG
- Systematically assessed the current information security level and the protection needs of business-critical processes and systems
- Conducted a risk-based gap analysis against ISO/IEC 27001 and relevant KRITIS requirements, and prepared the results for management and departments
- Performed a structured review of existing security policies, processes, and operational documentation, including identifying redundancies and inconsistencies
- Defined, prioritized, and planned an actionable measures catalog (roadmap) for ISMS implementation, including quick wins and a multi-year implementation plan
- Prepared and facilitated stakeholder interviews (IT, departments, management) to capture and consolidate requirements, risks, and dependencies
- Selected and recommended appropriate standards and frameworks to align security measures and future audits
- Designed KRITIS-specific security governance and integrated it into existing organizational structures
- Coordinated the interfaces between the ISMS and business continuity management (BCM), including aligning emergency, recovery, and risk considerations
IT Security Consultant
Elettronica GmbH
- Developed a comprehensive information security concept in SAVe 6, taking into account the IT baseline protection BW and applicable NATO guidelines
- Prepared technical annexes for the information security concept, including rights and roles concept, data protection concept, hardening concept, logging and auditing concept, and operation manuals
- Implemented the defined security measures on hardened systems, including configuring operating system and application hardening according to specifications
- Designed and implemented a VS-NfD-compliant disk and file encryption solution, following current classified information guidelines (VSA)
- Planned and implemented secure administration concepts based on SINA (Secunet) solutions
- Supported the design of secure network and segmentation concepts for military environments
- Coordinated the security architecture with clients and prepared approvals and security reviews
- Created instructions for operational staff to implement the technical measures on site
- Documented the implementation of the security concept, including providing evidence to meet ZDv A-960/1 and relevant VSA requirements
Project Manager
Dentsply Sirona
- Built and maintained a complete asset inventory of workstation systems using automated discovery and network scans with Lansweeper, including assessing Windows 11 readiness (hardware, drivers, applications)
- Designed the rollout strategy and aligned with IT management, departments, and, if needed, external service providers
- Created informational materials, announcements, and one-pagers for users about the changes from the Windows 11 update
- Technically prepared the in-place upgrade process via SCCM, including creating and testing task sequences, driver packages, and compatibility checks
- Conducted structured test phases with pilot groups, evaluated the results, and derived necessary optimizations for stability, performance, and user experience
- Continuously implemented improvements based on test results and feedback from departments
- Managed and monitored the production rollout in multiple waves, including progress tracking, incident handling, and coordination of follow-up tasks
- Created and maintained project documentation in Confluence for handover to operations
- Formally closed the project with reporting on schedules, quality, budget, and user satisfaction, and provided recommendations for future rollout projects
Project Manager / Technical Lead MDM
Dentsply Sirona
- Independently led the project from requirements analysis and design through implementation to the go-live of the on-premises MDM solution
- Set up the MDM infrastructure, including installing, configuring, and maintaining SOTI MobiControl on company servers
- Conducted a full asset inventory and analysis of the current scanner fleet as a basis for rollout planning and lifecycle management
- Developed device configurations, profiles, and policies (e.g. Wi-Fi, apps, kiosk mode, security settings, barcode settings) for Android barcode scanners in a production shift environment
- Planned and executed the rollout of the MDM software and configuration to the scanners within an isolated network segment
- Ensured continuous device management (monitoring, updates, troubleshooting, replacement processes) and defined the operational procedures for ongoing operations
- Collaborated closely with production, IT department, and business units on usability requirements, shift models, and fault tolerance
- Documented the system architecture, operating procedures, and administration guides as a basis for handover to operations
Industries Experience
See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.
Experienced in Aerospace and Defense (3 years), Utilities (2 years), Healthcare (2 years), and Manufacturing (2 years).
Business Areas Experience
The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.
Experienced in Information Technology (4 years), Audit (2 years), and Project Management (2 years).
Skills
- It Baseline Protection
- Cyber Security Check
- Vs-nfd
- It Governance
- Incident Management
- It Service Management
- It Compliance
- Ot Security
- Second-level Support
- Mobile Device Management
- Data Protection
- Windows Administration
- Active Directory
- Sccm
- Servicenow
- Lansweeper
- Iso 27001
Languages
Certifications & licenses
Cyber-Security-Practitioner
ISO/IEC 27001 Foundation
IT Baseline Protection Practitioner
ITIL v4 Foundation
Prince 2 Practitioner
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is David based?
What languages does David speak?
How many years of experience does David have?
What roles would David be best suited for?
What is David's latest experience?
What companies has David worked for in recent years?
Which industries is David most experienced in?
Which business areas is David most experienced in?
Does David have any certificates?
What is the availability of David?
What is the rate of David?
How to hire David?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Co-Auditor
Nearby freelancers
Professionals working in or nearby Lorsch, Germany