Recommended expert

Gentrit Ajazi

External Information Security Officer

Gentrit Ajazi
Lappersdorf, Germany

Experience

Mar 2024 - Sep 2025
1 year 7 months

External Information Security Officer

Large dairy company

  • Align information security objectives with executive management
  • Monitor and steer the Information Security Management System (ISMS) in collaboration with the information security team
  • Serve as the primary point of contact for all information security matters and advise internal staff and process owners (e.g., Supplier Management, HR)
  • Further develop and improve the ISMS and information security policies
  • Deliver training and drive ongoing employee awareness
  • Hold monthly coordination meetings (jour fixe)
  • Conduct risk analyses together with executive management and process owners
  • Support audits (e.g., ISO 27001) as well as customer-specific audits
  • Structure assessment and handling of information security incidents in cooperation with the information security team
  • Support preparation of the annual plan and budget for information security measures
  • Plan and conduct internal audits and management reviews
  • Integrate the ISMS with other management systems
Feb 2024 - Jul 2025
1 year 6 months

External Information Security Officer

SME in the IT network sector

  • Advise executive management on information security matters and provide regular as well as ad-hoc reporting to management
  • Monitor and steer the Information Security Management System (ISMS) in collaboration with the information security team
  • Support and accompany audits (e.g., ISO 27001)
  • Further develop and improve the ISMS and information security policies
  • Support all projects and employees of the organisation in matters relating to information security
Jul 2021 - Present
4 years 8 months
Munich, Germany

Product Owner for Information Security Team

die Bayerische

  • Accountable for the functional and strategic direction of the ISMS product (vision, roadmap, prioritisation)
  • Translate regulatory requirements (e.g. ISO 27001, NIS2, DORA, BSI) into actionable backlog items
  • Own and prioritise the product backlog including risk, compliance relevance and business impact assessment
  • Define and enhance security processes (risk management, incident response, supplier evaluation, access management)
  • Own the functional design of Jira/Confluence-based ISMS workflows and automations
  • Introduce and mature digital governance and reporting structures
  • Ensure audit-proof documentation and evidence for internal and external auditors
  • Manage stakeholder relations at C-level (CISO, Executive Board, business units, IT)
  • Derive KPIs and management reports to steer information security
  • Quality assurance of risk analyses, action plans and security assessments
  • Facilitate risk workshops and management reviews
  • Prioritise security-related investments
  • Promote security awareness and cross-functional governance structures
  • Manage escalations for critical risks or deviations
Mar 2021 - Aug 2021
6 months
Munich, Germany

Lecturer for Data Protection and IT Security

IU International University of Applied Sciences GmbH

  • Design, plan and deliver courses and trainings on data protection (GDPR, BDSG) and IT security for different target groups
  • Convey foundational and advanced topics such as information security objectives, malware, access and authorization concepts, network security and secure data processing
  • Explain legal frameworks (GDPR, national data protection laws) and their practical implementation in processes, policies and technical measures
  • Develop practical teaching materials, case studies and exercises (e.g., protection needs assessment, risk evaluation, security concepts based on IT-Grundschutz)
  • Prepare, conduct and assess examinations (written exams, oral exams, project work) and provide individual feedback to participants
  • Deliver awareness trainings to strengthen security awareness for employees and managers
  • Provide individual support and expert advice to participants on data protection, compliance, information security and secure IT processes
  • Continuously update course content with regard to new legal requirements, security standards and current threat landscapes (e.g., phishing, ransomware, cloud risks)
Jan 2020 - Jun 2021
1 year 6 months
Munich, Germany

Information Security Expert

BayernCard Services GmbH

  • Project lead for ISO 27001 project
  • Perform line activities of the Information Security Management System (ISMS) and drive continuous improvement of the system
  • Handle security incidents
  • Conduct protection needs assessments
  • Create information security policies and supporting tools
  • Plan and execute information security awareness measures
Sep 2016 - Dec 2019
3 years 4 months
Munich, Germany

Information Security / Jira System Administrator

EVA Fahrzeugtechnik GmbH

  • Operate the Information Security Management System (ISMS) and drive its continuous improvement
  • Advise business units on information security and Jira topics and support compliance with security policies
  • Design and implement an ISO 27001-compliant IT asset management solution in Jira Service Desk
  • Develop the information security risk management framework
  • Assess risks, vulnerabilities and information security events
  • Perform ISO 27001 and TISAX gap analyses
  • Support the initial certification audit for ISO 27001 and TISAX
  • Plan and manage information security audits, including assessment and follow-up of findings
  • Analyse and evaluate business processes with a focus on current and upcoming legal data protection requirements (e.g., EU GDPR)
  • Conduct trainings and awareness measures in the area of information security
  • Introduce Atlassian Jira and Confluence
  • Further develop and maintain the Jira and Confluence systems
  • Configure Active Directory integration for Jira and Confluence (LDAP)
  • Design and implement innovative Jira and Confluence solutions (e.g., HR processes)
Feb 2014 - Jul 2014
6 months
Erding, Germany
On-site

Internship in Management/Sales for IT Security Products

taniTec GmbH

  • Present the service portfolio and vendor solutions by phone, at customer events and in on-site meetings with clients
  • Prepare quotations, visit reports and project documentation
  • Contribute to building the telemarketing team by providing product training to staff and creating sales guides
  • Acquire new customers across the entire DACH region
  • Provide solution-oriented customer support in collaboration with the technical department and external partners

Industries Experience

See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.

Experienced in Insurance (4.5 years), Information Technology (3.5 years), Automotive (3.5 years), Food and Beverage (1.5 years), and Education (0.5 years).

Insurance
Information Technology
Automotive
Food and Beverage
Education

Business Areas Experience

The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.

Experienced in Information Technology (9.5 years), Quality Assurance (8 years), Product Development (4.5 years), Audit (1.5 years), Project Management (1.5 years), and Legal (0.5 years).

Information Technology
Quality Assurance
Product Development
Audit
Project Management
Legal

Skills

  • Technical Isaca-cism Certification
  • Certified Dora Ict Risk Manager (Dva)
  • Certified Lead Auditor (Hvs)
  • Iso 27001 Information Security
  • Pci Dss
  • Bait
  • Vait
  • Gdpr
  • Tisax Level 3 – Very High Protection Requirements
  • Jira System Administration
  • Confluence System Administration

Languages

English
Native
German
Advanced

Education

Aug 2014 - Nov 2014

Swinburne University of Technology

Engineering Management, International Business · Melbourne, Australia

Oct 2012 - Feb 2018

University of Applied Sciences Kempten

Bachelor of Engineering · Industrial Engineering – Mechanical Engineering · Kempten, Germany

Certifications & licenses

DORA ICT Risk Manager

DVA

ISACA-CISM Certification

Lead Auditor

HVS

Profile

Created
Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions

Frequently asked questions

Do you have questions? Here you can find further information.

Where is Gentrit based?

Gentrit is based in Lappersdorf, Germany.

What languages does Gentrit speak?

Gentrit speaks the following languages: English (Native), German (Advanced).

How many years of experience does Gentrit have?

Gentrit has at least 10 years of experience. During this time, Gentrit has worked in at least 6 different roles and for 7 different companies. The average length of individual experience is 1 year and 5 months. Note that Gentrit may not have shared all experience and actually has more experience.

What roles would Gentrit be best suited for?

Based on recent experience, Gentrit would be well-suited for roles such as: External Information Security Officer, Product Owner for Information Security Team, Lecturer for Data Protection and IT Security.

What is Gentrit's latest experience?

Gentrit's most recent position is External Information Security Officer at Large dairy company.

What companies has Gentrit worked for in recent years?

In recent years, Gentrit has worked for Large dairy company, SME in the IT network sector, die Bayerische, IU International University of Applied Sciences GmbH, and BayernCard Services GmbH.

Which industries is Gentrit most experienced in?

Gentrit is most experienced in industries like Insurance, Information Technology (IT), and Automotive. Gentrit also has some experience in Food and Beverage and Education.

Which business areas is Gentrit most experienced in?

Gentrit is most experienced in business areas like Information Technology (IT), Quality Assurance (QA), and Product Development. Gentrit also has some experience in Audit, Project Management, and Legal and Compliance.

Which industries has Gentrit worked in recently?

Gentrit has recently worked in industries like Insurance, Information Technology (IT), and Food and Beverage.

Which business areas has Gentrit worked in recently?

Gentrit has recently worked in business areas like Information Technology (IT), Product Development, and Quality Assurance (QA).

What is Gentrit's education?

Gentrit holds a Bachelor in Engineering Management, International Business from Swinburne University of Technology and a Bachelor in Industrial Engineering – Mechanical Engineering from University of Applied Sciences Kempten.

Does Gentrit have any certificates?

Gentrit has 3 certificates. These include: DORA ICT Risk Manager, ISACA-CISM Certification, and Lead Auditor.

What is the availability of Gentrit?

Gentrit will be available from March 2026.

What is the rate of Gentrit?

Gentrit's rate depends on the specific project requirements. Please use the Meet button on the profile to schedule a meeting and discuss the details.

How to hire Gentrit?

To hire Gentrit, click the Meet button on the profile to request a meeting and discuss your project needs.

Average rates for similar positions

Rates are based on recent contracts and do not include FRATCH margin.

1000
750
500
250
Market avg: 650-810 €
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.