Gentrit Ajazi
External Information Security Officer
Experience
External Information Security Officer
Large dairy company
- Align information security objectives with executive management
- Monitor and steer the Information Security Management System (ISMS) in collaboration with the information security team
- Serve as the primary point of contact for all information security matters and advise internal staff and process owners (e.g., Supplier Management, HR)
- Further develop and improve the ISMS and information security policies
- Deliver training and drive ongoing employee awareness
- Hold monthly coordination meetings (jour fixe)
- Conduct risk analyses together with executive management and process owners
- Support audits (e.g., ISO 27001) as well as customer-specific audits
- Structure assessment and handling of information security incidents in cooperation with the information security team
- Support preparation of the annual plan and budget for information security measures
- Plan and conduct internal audits and management reviews
- Integrate the ISMS with other management systems
External Information Security Officer
SME in the IT network sector
- Advise executive management on information security matters and provide regular as well as ad-hoc reporting to management
- Monitor and steer the Information Security Management System (ISMS) in collaboration with the information security team
- Support and accompany audits (e.g., ISO 27001)
- Further develop and improve the ISMS and information security policies
- Support all projects and employees of the organisation in matters relating to information security
Product Owner for Information Security Team
die Bayerische
- Accountable for the functional and strategic direction of the ISMS product (vision, roadmap, prioritisation)
- Translate regulatory requirements (e.g. ISO 27001, NIS2, DORA, BSI) into actionable backlog items
- Own and prioritise the product backlog including risk, compliance relevance and business impact assessment
- Define and enhance security processes (risk management, incident response, supplier evaluation, access management)
- Own the functional design of Jira/Confluence-based ISMS workflows and automations
- Introduce and mature digital governance and reporting structures
- Ensure audit-proof documentation and evidence for internal and external auditors
- Manage stakeholder relations at C-level (CISO, Executive Board, business units, IT)
- Derive KPIs and management reports to steer information security
- Quality assurance of risk analyses, action plans and security assessments
- Facilitate risk workshops and management reviews
- Prioritise security-related investments
- Promote security awareness and cross-functional governance structures
- Manage escalations for critical risks or deviations
Lecturer for Data Protection and IT Security
IU International University of Applied Sciences GmbH
- Design, plan and deliver courses and trainings on data protection (GDPR, BDSG) and IT security for different target groups
- Convey foundational and advanced topics such as information security objectives, malware, access and authorization concepts, network security and secure data processing
- Explain legal frameworks (GDPR, national data protection laws) and their practical implementation in processes, policies and technical measures
- Develop practical teaching materials, case studies and exercises (e.g., protection needs assessment, risk evaluation, security concepts based on IT-Grundschutz)
- Prepare, conduct and assess examinations (written exams, oral exams, project work) and provide individual feedback to participants
- Deliver awareness trainings to strengthen security awareness for employees and managers
- Provide individual support and expert advice to participants on data protection, compliance, information security and secure IT processes
- Continuously update course content with regard to new legal requirements, security standards and current threat landscapes (e.g., phishing, ransomware, cloud risks)
Information Security Expert
BayernCard Services GmbH
- Project lead for ISO 27001 project
- Perform line activities of the Information Security Management System (ISMS) and drive continuous improvement of the system
- Handle security incidents
- Conduct protection needs assessments
- Create information security policies and supporting tools
- Plan and execute information security awareness measures
Information Security / Jira System Administrator
EVA Fahrzeugtechnik GmbH
- Operate the Information Security Management System (ISMS) and drive its continuous improvement
- Advise business units on information security and Jira topics and support compliance with security policies
- Design and implement an ISO 27001-compliant IT asset management solution in Jira Service Desk
- Develop the information security risk management framework
- Assess risks, vulnerabilities and information security events
- Perform ISO 27001 and TISAX gap analyses
- Support the initial certification audit for ISO 27001 and TISAX
- Plan and manage information security audits, including assessment and follow-up of findings
- Analyse and evaluate business processes with a focus on current and upcoming legal data protection requirements (e.g., EU GDPR)
- Conduct trainings and awareness measures in the area of information security
- Introduce Atlassian Jira and Confluence
- Further develop and maintain the Jira and Confluence systems
- Configure Active Directory integration for Jira and Confluence (LDAP)
- Design and implement innovative Jira and Confluence solutions (e.g., HR processes)
Internship in Management/Sales for IT Security Products
taniTec GmbH
- Present the service portfolio and vendor solutions by phone, at customer events and in on-site meetings with clients
- Prepare quotations, visit reports and project documentation
- Contribute to building the telemarketing team by providing product training to staff and creating sales guides
- Acquire new customers across the entire DACH region
- Provide solution-oriented customer support in collaboration with the technical department and external partners
Industries Experience
See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.
Experienced in Insurance (4.5 years), Information Technology (3.5 years), Automotive (3.5 years), Food and Beverage (1.5 years), and Education (0.5 years).
Business Areas Experience
The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.
Experienced in Information Technology (9.5 years), Quality Assurance (8 years), Product Development (4.5 years), Audit (1.5 years), Project Management (1.5 years), and Legal (0.5 years).
Skills
- Technical Isaca-cism Certification
- Certified Dora Ict Risk Manager (Dva)
- Certified Lead Auditor (Hvs)
- Iso 27001 Information Security
- Pci Dss
- Bait
- Vait
- Gdpr
- Tisax Level 3 – Very High Protection Requirements
- Jira System Administration
- Confluence System Administration
Languages
Education
Swinburne University of Technology
Engineering Management, International Business · Melbourne, Australia
University of Applied Sciences Kempten
Bachelor of Engineering · Industrial Engineering – Mechanical Engineering · Kempten, Germany
Certifications & licenses
DORA ICT Risk Manager
DVA
ISACA-CISM Certification
Lead Auditor
HVS
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Gentrit based?
What languages does Gentrit speak?
How many years of experience does Gentrit have?
What roles would Gentrit be best suited for?
What is Gentrit's latest experience?
What companies has Gentrit worked for in recent years?
Which industries is Gentrit most experienced in?
Which business areas is Gentrit most experienced in?
Which industries has Gentrit worked in recently?
Which business areas has Gentrit worked in recently?
What is Gentrit's education?
Does Gentrit have any certificates?
What is the availability of Gentrit?
What is the rate of Gentrit?
How to hire Gentrit?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a External Information Security Officer
Nearby freelancers
Professionals working in or nearby Lappersdorf, Germany