Jörg Iffländer
External Information Security Officer
Experience
External Information Security Officer
ilink Kommunikationssysteme GmbH
External Information Security Officer
open*i GmbH
- Setting up an ISMS with the aim of certifying the entire company to ISO/IEC 27001:2022
IT Security Officer
Telio Group
- Guiding the company to IT baseline protection certification, preparing and supporting the certification audit and surveillance audits
External Data Protection Officer
various companies
ISO 27001 Consultant, External Information Security Officer
Telio Group
Acting as external Information Security Officer from 2018-05-25 to 2022-09-30
Interim external Data Protection Officer and building an internal DPO
ISO 27001 consultant to ensure successful surveillance audits and improve the ISMS maturity level
Extending the ISMS with the aim of BSI IT baseline protection certification for an information network (BSI-IGZ-0448-2021)
ITIL Expert, Program Management Consultant, Quality Management Consultant
Volkswagen Group
Role: Technical Expert, ITIL Expert, Program and Project Management Consultant, Quality Management Consultant
Technical monitoring of all security projects, functional gap analysis, program management setup, project dependency matrix, service process modeling
Project language: English
Senior Security Consultant
Volkswagen
Collection and evaluation of all relevant document information
Conducting interviews and preparing the due diligence for senior management
Senior Project Manager, Management Consultant for Senior Management
Volkswagen
Management of an RFI/RFP process to reduce operating costs of a dealer management system
PMO for all projects in the service management area
Consultant for Structural Analysis and Protection Requirement Assessments
DB Schenker
- Conducting structure analysis and protection requirement assessments to prepare an IT security concept as part of a data center outsourcing project
Information Security, Enterprise Risk Management, Data Protection/Data Privacy Consultant
ingra Unternehmensberatung GmbH
Main activities focused on setting up information security management systems (ISMS) for various clients (in accordance with ISO/IEC 27001 and/or BSI IT-Grundschutz)
Often took on the role of external information security officer and successfully accompanied the companies through the certification audits
Summary
After completing my degree in computer science (Dipl. Inform. Univ.), I decided to become self-employed in 1994. I started my career in IT project management, concentrating primarily on supporting small and medium-sized companies and public sector clients. Over time, IT service management was added to my portfolio. I came into contact with IT security at a particularly early stage, partly through my role as interim manager of a data center. IT security and data protection eventually became my core interests. I have now gained many years of experience in these areas and work with both medium-sized companies and large corporations.
I take great pleasure in offering my clients pragmatic and effective solutions. It is important to me to develop practicable concepts rather than theoretical ideals.
In recent years, my main activities have focused on setting up information security management systems (ISMS) for various clients (in accordance with ISO/IEC 27001 and/or BSI IT-Grundschutz). I have often taken on the role of external information security officer and successfully accompanied the companies through the certification audits.
Skills
- It Project Management
- Quantitative Risk Assessment
- Information Security Management
- Enterprise Risk Management
Languages
Education
University of Hildesheim
Diploma in Computer Science · Computer Science with a focus on Business Administration · Hildesheim, Germany
Certifications & licenses
BSI IT Baseline Protection Practitioner
Business Continuity Manager (ISO 22301)
Business Process Professional CBPP
Data Protection Auditor (TÜV) for GDPR and BDSG
Data Protection Officer (BDSG and GDPR)
Enterprise Risk Manager (Univ.)
University of Würzburg
IS/IT Risk Manager (ISO 31000, ISO 27001 and ISO 27005)
ISO/IEC 20000 Manager and Consultant Professional Level
IT Security Manager / IT Security Officer
ITIL Expert
Lead Auditor ISO/IEC 27001
PRINCE2 Agile Practitioner
PRINCE2 Practitioner
Requirements Engineer (IREB)
Similar Freelancers
Discover other experts with similar qualifications and experience