Recommended expert

Manfred Liebetrau

Senior Consultant Information Security

Manfred Liebetrau
Dortmund, Germany

Experience

Oct 2022 - Jul 2024
1 year 10 months
Stuttgart, Germany

Senior Consultant Information Security

Creditplus Bank AG

  • Designing the information security process based on ITIL 4
  • Designing the ITIL 4 incident and change management processes
  • Creating information security policies for the bank
  • Support in the project for internal audit findings
  • Advising on the setup of the bank's internal control systems (ICS)
  • Advising on setting up ICS processes
  • Advising and supporting security architecture and risk analysis of the existing IT landscape, including IT security architecture, data management, data compliance & physical security
  • Advising and project leadership for the security concept of the bank's assets
  • Advising and support in contracts with external service providers to meet the bank's regulatory (BAIT; MaRisk; DORA; NIS2; GDPR) and information security requirements
  • Support in planning and implementing a SOC/SIEM and risk management
  • Support for the spam email team in analyzing and handling incidents
Jul 2022 - Feb 2023
8 months
Berlin, Germany

Senior Consultant Information Security

Investitionsbank

  • Advising on the setup of the bank's internal control systems
  • Support in building the bank's IT compliance department and reorganizing the existing risk analysis (MaRisk)
  • Converting old procedural manuals to current work instructions
  • Advising on business process changes within the framework of regulatory requirements
  • Recertification of authorizations and concepts (BRK)
  • Advising on setting up ICS processes
  • Managing the handling of regulatory audit findings in collaboration with internal audit (BAIT)
  • Checking the implementation of regulatory requirements by IT and physical security
  • Reviewing evidence and documentation as proof of implementation
  • As-is vs. to-be analysis of existing documentation and procedures
Apr 2022 - Jan 2023
10 months
Hamburg, Germany

Senior Consultant Information Security

Technikerkrankenkasse

  • Designing the information security process based on ITIL 4 in collaboration with risk management (MaRisk; risk analysis)
  • Designing the ITIL 4 incident processes
  • Advising ITSCM on introducing the SOC; preparing a PoC based on VAIT
  • Security architecture; vulnerability and patch management
  • Evaluating appropriate target measures as a basis for SOC Level 1 analysis
Mar 2021 - Dec 2021
10 months
Berlin, Germany

Senior Consultant Information Security

Federal Ministry

  • Designing the IT security and ISMS processes; setting up MITRE ATT&CK
  • Support in the SOC/SIEM project to connect Azure Sentinel to the network infrastructure
  • Security architecture; vulnerability and patch management
  • Analyzing and assessing security alerts in the MS 365, Defender for Identity and Azure environments
  • Planning and setting up a new CMDB
  • Planning physical security for the data center; access control
  • Leading the incident response team; MITRE ATT&CK analyses
  • Security awareness training for employees (interim)

Skills

Focus Areas

  • Information Security Management
  • It Governance (Bait; Vait; Kait; Marisk; Dora; Nis2; Dga; Eu Ai Act)
  • Compliance (Ics; Document & Data Management)
  • Bsi It Baseline Protection 200-x
  • Itil 4 / Iso 27000 Series
  • Iso 31000 Risk Management (Identification; Analysis; Treatment; Risk Grid; Procedure Adoption)
  • Advising And Creating Policies; Processes And Security Concepts; Security Architecture
  • Iso 22317 Business Impact Analysis (Bia); Iso 22301 Business Continuity Management (Bcm)

Sectors

  • Banking; Insurance; Financial Service Providers
  • Public Sector
  • Logistics Companies
  • Telecommunications
  • It Service Providers
  • Energy Supply

Roles

  • Information Security Consulting At C-level
  • Security Management (Isms; Ics)
  • Advisor For Audit Findings Kwg §44
  • Security Awareness Training
  • Risk Management And Risk Analysis
  • Compliance Evaluation: Assessing Legal Requirements And Regulatory Requirements And Their Implementation
  • Project Management
  • Business Analysis

Methods And Standards

  • Iso/iec 27001 (Din Nia-01-27)
  • Iso 31000 (Din/iso 31000; Vde 1000 (Gk)) Risk Analysis
  • Itil 4
  • Project Management (Pmi Pmbok; Prince2)
  • Business Analysis Cbap (Babok)
  • Legal Knowledge: Itsig; Gdpr; Hgb; Bgb; Stgb; Kwg; Gwg; Gob; Pep (According To Directive 2005/60/ec Of The European Parliament); Bait; Vait; Kait; Dora; Nis2; Dga; Eu Ai Act
  • Other Knowledge: Bpml; Cissp; Cism; Cbk; Information Systems Audit; Isms; Mitre Att&ck

Tools

  • Ms Office (Word; Excel; Powerpoint; Visio; Access; Project)
  • Gpli (Asset Management; Cmdb; Security Management)
  • Ms Sdl (Security Development Lifecycle; Used For Threat Modeling With The Stride Method)
  • Jira; Confluence (Project Documentation And Communication)
  • Sharepoint (Task Distribution And Document Collection)
  • Documentum (Data Management; Data Compliance; Archive)
  • Talend Open Studio (Db Migration From Oracle To Snowflake)

Technology

  • Programming Languages: Php; Sql; Java (Jsp); Javascript; Css3; Html5; Xml; Python
  • Frameworks: Bootstrap; Vue.js
  • Databases: Mysql/mariadb; Oracle; Ms-sql; Snowflake
  • Operating Systems: Windows (Pc; Server 2012 R2); Linux (Rhel; Sles; Ubuntu); Osx

Languages

English
Advanced
German
Intermediate
French
Elementary
Dutch
Elementary

Certifications & licenses

CBAP

IT-Security Coordinator

IT Security Officer

TÜV

Profile

Created
Last Update
Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions

Frequently asked questions

Do you have questions? Here you can find further information.

Where is Manfred based?

Manfred is based in Dortmund, Germany and prefers 100% remote projects.

What languages does Manfred speak?

Manfred speaks the following languages: English (Advanced), German (Intermediate), French (Elementary), Dutch (Elementary).

How many years of experience does Manfred have?

Manfred has at least 3 years of experience. During this time, Manfred has worked in at least 1 role and for 4 different companies. The average length of individual experience is 9 months. Note that Manfred may not have shared all experience and actually has more experience.

What roles would Manfred be best suited for?

Based on recent experience, Manfred would be well-suited for roles such as: Senior Consultant Information Security.

What is Manfred's latest experience?

Manfred's most recent position is Senior Consultant Information Security at Creditplus Bank AG.

What companies has Manfred worked for in recent years?

In recent years, Manfred has worked for Creditplus Bank AG, Investitionsbank, Technikerkrankenkasse, and Federal Ministry.

Which industries is Manfred most experienced in?

Manfred is most experienced in industries like Banking and Finance, Insurance, and Government and Public Administration.

Which business areas is Manfred most experienced in?

Manfred is most experienced in business areas like Information Technology (IT), Audit, and Project Management.

Does Manfred have any certificates?

Manfred has 3 certificates. These include: CBAP, IT-Security Coordinator, and IT Security Officer.

What is the availability of Manfred?

Manfred is immediately available full-time for suitable projects.

What is the rate of Manfred?

Manfred's rate depends on the specific project requirements. Please use the Meet button on the profile to schedule a meeting and discuss the details.

How to hire Manfred?

To hire Manfred, click the Meet button on the profile to request a meeting and discuss your project needs.

Average rates for similar positions

Rates are based on recent contracts and do not include FRATCH margin.

1200
900
600
300
Market avg: 870-1030 €
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.