Markus J.

Chief Compliance Officer CCO

Bad Wörishofen, Germany

Experience

Jan 2025 - Present
8 months
Bulgaria

Chief Compliance Officer CCO

Streamline Process Outsourcing OOD

  • Outsourcing service provider for financial services firms in the DACH region, in Bulgaria
Jan 2025 - Apr 2025
4 months

Support of ICT Asset Management & Info Registers in Artemeon

Zurich

  • (until MVP transfer of the info register)
  • Finalization of the info register & ICT asset management
  • Analysis of ICT service providers including subcontractors
  • Contract analyses with SBF and SIA
  • IDV, kwF and mapping of approval-required activities and processes
Oct 2024 - Jan 2025
4 months

Setup of a processing register (VVT) after a merger in RiMaGo, including DSFA and SBF updates (part-time)

LBS Süd

  • Harmonization of categorization (confidentiality, integrity, deletion and blocking deadlines)
  • Training & data protection advice for process owners
  • Security requirement determinations (SBF), VVT updates and data protection impact assessments (DSFA)
Mar 2022 - Dec 2022
10 months

Coaching process management and KAIT compliance (part-time)

Universal-Investment-Gesellschaft (UI / Master-KVG)

  • Coaching for setting up process management
  • BaFin KAIT compliance check
  • LUY check for building the information network
Apr 2021 - Dec 2024
3 years 9 months

Setup of a VAIT, BAIT, KAIT information network (IVB) in the group and a DORA ICT register in RiMaGo (part-time)

Alte Leipziger Konzern

  • (insurance, building society & trust)
  • Project management for building the group information network (IV) in RiMaGo as part of a VAIT program
  • Implementation of the GRC software RiMaGo (SIMON Plus)
  • Integration of process management and BIC (BIC Cloud)
  • BaFin readiness for VAIT, BAIT, KAIT
  • DORA ICT register & outsourcing management
Apr 2021 - Oct 2021
7 months

Coaching for building a domain architecture (part-time)

Sparkassenversicherung Stuttgart

  • Linking process management, GRC and EAM
  • Mapping of outsourcing
  • Basis for the VAIT information network
  • Connecting process management and Signavio
May 2020 - Dec 2021
1 year 8 months

Information Security Officer for the IT subsidiary M-4Tec (part-time)

Münchener Hypothekenbank eG

  • Implementation of IT Baseline Protection BAIT
  • Building an ISMS according to BSI 100-1
  • Protection needs and risk analysis according to BSI 200-3 (SBF)
  • BCM emergency management according to BSI 100-4 (BIA)
  • ITSCM according to ITIL 2011
  • IT security concept according to BSI 100-2
  • Preparation for certification audit DIN ISO 27001
  • Processing register GDPR (VVT)
  • Data protection impact assessments (DPIA)
  • GDPR data processing agreements
  • GDPR vendor management
Jan 2020 - Present
5 years 8 months

Information Security Officer (ISO)

M-4Tec, subsidiary of Münchener Hypothekenbank eG

Dec 2019 - Oct 2020
11 months

Business Analyst & Coach Governance & Compliance Check

Itzehoer Versicherung

  • Focus on checking operational risks
  • BSI implementation planning for standards 200 ff.
  • BSI compliance check BCM BSI 100-4
  • GDPR gap analysis (deletion & blocking)
  • Developing a heatmap for topics including: BaFin / VAIT & BaFin / MaGo, BCM and ITSCM, professional secrecy under Section 203 of the German Criminal Code (StGB), ring-fencing (VAG), data protection (GDPR/BDSG (new)), information security (BSI / BSIG / KRITIS), the Trade Secrets Act (GeschGehG), EU-U.S. Privacy Shield data hosting, ePrivacy Regulation, and Pillar II of the EU Solvency II Directive on operational risks
Aug 2019 - Apr 2020
9 months

Business Analyst for the transformation to a digital insurer by 2023 – Data & Analytics Governance / AI

Signal Iduna

  • Strategy for transformation to a data-driven insurance organization, including implementation of BSI and GDPR compliance (blocking & deletion)
  • Use of data analytics and AI methods
  • Implementation and alignment of anonymization & pseudonymization procedures for ex-post analyses
  • Standard processes for data integrity and compliance according to DIN ISO 27001 and BSI 100/200
  • Setting up data analytics lab use cases
  • Strategic health analysis, cancellation warning / portfolio retention, cross-selling
  • Design of AI assistants (causality and data correlation checks)
  • Cloud computing requirements derivation BSI/GDPR
  • BCM requirements according to BSI 100-4
Jan 2019 - Aug 2019
8 months

Head of Rollout for Brokers & Pool Integration BiPRO

ERGO

  • Rollout concept, negotiations with brokers and pool providers, SLAs
  • Knowledge of TAA services according to standard 420 and document transmissions according to standard 430. From the inventory services of standard 500, knowledge in the partner area (501) as well as general contract data (502) and 502.1/2 (SHUK).
  • IT architecture, compliance and data protection requirements (BSI / GDPR / VAIT)
  • Rollout management IT operations / business units
  • Data interfaces to specialist systems: TAA, claims, K, eVB, inventory
  • Multiple data provisioning GDV, cvs, xml
Nov 2018 - Jan 2019
3 months

Business Analyst for Data Protection-Compliant Operation of the GUV for Ship Crews

HDI Global SE

  • Immediate measures for data protection-compliant handling of group accident claims
May 2018 - Oct 2018
6 months

Business Analyst Guidelines GDPR – Guidelines for Implementing the GDPR (BDSG) in LH systems

Lufthansa

  • Risk assessment and implementation planning in the LSY system landscape
  • IT architecture requirements and guidelines for data hosting and inheritance
  • Data protection handbook for IT operations / data center
  • Training
  • Procedure description for data subject rights (Art. 15, 20)
  • Procedure description for deletion / right to erase (Art. 17)
  • Anonymization & pseudonymization processes for data analysis and permanent data pools
  • Portability & information templates
  • Compliance check of payment systems and credit card data management
  • BSI IT baseline protection concept and GDPR requirements
Jan 2017 - Apr 2018
1 year 4 months

Project Lead for Implementing the EU General Data Protection Regulation in an International Insurance Environment

HDI Global SE

  • Management of various implementation projects across different business lines with a focus on claims SUHK and life including occupational pensions and bancassurance as well as residual debt (application, portfolio, benefits)
  • Requirements coordination between data protection, legal, operations and interface to IT implementation
  • Data flow, access & authorization as well as hosting requirements for the IT systems
  • IT architecture and system compliance requirements according to BSI, GDPR and BCM criteria
  • Definition of blocking and deletion rules
  • Anonymization & pseudonymization processes for data analysis and permanent data pools
Jan 2015 - Present
10 years 8 months

Managing Partner and Data Protection Officer

Financial Service Consulting & Investment GmbH & Co. KG

  • Negotiation and contracts of data processing agreements for service providers, TOMs and reporting processes in BG & Germany
  • BSI IT baseline protection / DIN ISO 27001
  • BCM IT & processes in Germany and BG / data center operations
  • BSI baseline protection, GDPR, cloud deployment
Jan 2014 - Dec 2016
3 years

Project Manager GDV CoC Data Protection Implementation

Talanx Deutschland HDI Versicherung

  • Overall management of various implementation projects for subsidiaries, including bancassurance (residual debt)
  • Functional support and IT for CoC implementation
  • Requirement coordination for data protection, legal and operations, and interface to IT implementation
  • Coaching and adaptation of reference and standard models (data exchange, reporting, payments, HIS, BiPRO, GDV etc.)
  • IT architecture and system compliance requirements according to BSI, GDPR, IDD and BCM criteria
  • Rules for data storage, database inheritance/replication and data warehouse collection with blocking, deletion, anonymization and/or pseudonymization rules for relational and non-relational data, including IT architecture guidelines
  • Adaptation of data center operations processes
  • Access, authorization and sourcing rules for databases and record views
  • Definition of functional requirements for partner management and in-/out-collection
Jan 2014 - Dec 2014
1 year

Business Analyst Operating Model & Workflow Organization

DWP Bank

  • Quick check of process organization
  • Management coaching at 3 locations
  • Optimization of operating model for securities processing in the savings bank group
Nov 2013 - Jun 2018
4 years 8 months

Project Manager CoC Process Model Development

PPI

  • Updating and extending the PPI CoC Insurance reference model
  • Updating and extending the PPI functional architecture models for insurance
Jan 2013 - Nov 2013
11 months

Group-wide SEPA Test & Implementation Manager

Generali Deutschland

  • Planning and management of SEPA testing and implementation across various systems and corporate entities of a financial services group, including Bausparkasse Badenia
  • Adaptation and compliance check of payment systems / ZEUS
  • Setting up error reporting and test control at the group level
  • Planning of acceptance, phases, environments, data management, bank and LSV migration, and SEPA test cases
  • Management of system test managers and project managers of the 8 individual group company projects
  • Release and rollout planning for the overall SEPA project (insurance & building society)
  • Requirements management for payments (in-/out-collection in the group)
Sep 2012 - Feb 2014
1 year 6 months
Hamburg, Germany

Business Analyst Process and Performance Analysis with Operating Model Optimization (Part-time)

NRS Norddeutsche Retail- Service GmbH

  • Quick check of process organization
  • Management coaching at the Hamburg location
  • Optimization of the retail banking operating model
Aug 2012 - Feb 2013
7 months

Business Analyst for Shipping Control Optimization

Generali Germany

  • Develop and implement a process to optimize mail shipping by integrating Post Direkt and Premium Address
  • Implement SEPA-compliant adjustments to partner management, including connecting administration and printing systems
Feb 2012 - Aug 2012
7 months
Munich, Germany

Requirements Manager - Development of Operating Model for Motor Insurance

ADAC

  • Develop an independent operating model for a motor insurance in Germany
  • Project management
  • Business case and ROI
  • Process design and system selection for claims, portfolio, appraisers, and applications (eVB)
  • IT and business architecture including compliance requirements
  • Claims management requirements and partner selection
  • Payment transactions (ZVS)
  • Sales partner organization
Oct 2011 - Dec 2014
3 years 3 months
Frankfurt, Germany

Study on Process Management in Insurance

Process Data Generation Working Group

  • Design, execution, and evaluation
May 2011 - Jun 2011
2 months
Teltow, Germany

Business Coach / Workshop Series & Management Reorganization Motor Claims Center

Direct Line

  • Workshops with management
  • Redesign claims handling processes, organization, and underwriting and approval rules
  • Adjust work instructions
  • Resource selection
  • Motor portfolio, sales, and claims systems
  • Specification documents for further development
  • Automation of proofs and certificates (e.g., eVB)
Nov 2010 - Feb 2012
1 year 4 months
Hamburg, Germany

Project Manager - Process Management Setup, Management Coaching, Task Force Reorganization

SOVAG AG

  • Workshops, committee work, concept development, and implementation support
  • Set up claims service in customer contact center
  • Staff selection and management
  • In- and outbound collection process optimization (ZVS)
  • SEPA implementation support
  • CR and test management
Apr 2010 - Nov 2010
8 months
Frankfurt, Germany

Study Process Management in Insurance 2010

Process Data Generation Working Group

  • Design, facilitation, execution, and analysis
Nov 2009 - Dec 2017
8 years 2 months
Frankfurt, Germany

Moderator of the Process Data Generation Working Group

Process Data Generation Working Group

  • Technical responsibility for process and benchmark systems
  • Insurance-specific requirements
  • Benefits and limitations of industry-specific standards and reporting processes (BiPRO, GDV)
Feb 2009 - Present
16 years 7 months

Freelancer Managing Consultant

Financial Service

Feb 2009 - Present
16 years 7 months
Hamburg, Germany

Project Manager for Development of PPI – Process Performance Suite (PPS)

PPI AG

  • Managed development of the insurance reference architecture
  • Development of the insurance process library
  • Publication of the insurance process map
  • Studies on process management in the insurance industry
  • Conceptual design of wdc (web data collector – productivity measurement tool), including workflow-DMS integration
  • Further development and integration of industry-specific standards such as BiPRO and the GDV format
May 2008 - Jan 2009
9 months
Munich, Germany

Project Manager Reorganization of Claims Management and Introduction of a New Claims System

VKB / Insurance Chamber of Bavaria

  • Project management of state-of-the-art claims management
  • Introduction of Car Glas Story
  • Application and eVB optimization
  • Optimization of minor claims and appraisers
  • Best practice processes and organization
  • Integration of expert system, DMS & workflow
  • Introduction of innovative claims settlement methods
  • Optimization of claims and settlement costs
  • Inclusion of cooperative and savings banks in the new claims operating model
  • IT architecture specifications for DB structures (policies, partners, ZVS, HIS data)
  • Specifics of K-fleet business
  • Requirements and optimization of partner and payment transaction systems
Feb 2008 - Nov 2008
10 months

Requirements Manager Process Optimization / Benchmark & Optimized Claims Handling

MVG / Mannheimer

  • Project management
  • Coaching and support of the operations organization
  • Redesign of claims handling processes and integration of these into the MATS workflow & DMS system
  • Committee work / conducting info sessions
  • Reporting / customization of web time tracking
  • Benchmarking & evaluation
  • Designing target process flows for property insurance (application, in-force policies, claims, payment transactions)
  • Optimization of claims management
  • Defining acceptance and testing procedures for implementing IT requirements
Jan 2008 - May 2008
5 months

Business Analyst Quick Check Life & Benchmark

SV / Sparkassenversicherung Stuttgart

  • Project management
  • Quick business assessment
  • Responsibility for KPIs & benchmark values
  • Optimization suggestions for Riester, bAV and benefits, FL
  • Redesign of routing rules in workflow & DMS
  • Leading workshops with executives
  • Committee work (LA, Board)
  • Optimization of sales and processing processes at the Sparkasse/SV interface for residual debt
Feb 2007 - Dec 2007
11 months
Kiel, Germany

Requirements Manager for developing a cross-company insurance administration platform for the public sector

PNWL / Provinzial

  • Committee work
  • Integration workshops for life policy administration with the participating insurers
  • IT landscape and architecture design including partners and payment transactions
  • Subproject lead (testing)
  • Requirements management
  • Release & acceptance planning
  • Test & development controlling
  • Order & CR management
  • Coaching of the internal project management
Aug 2006 - Apr 2007
9 months
Bonn, Germany

Requirements Manager for implementing the VVG reform in the life customer service center

ZGD / Zurich

  • Coaching and support in customer service, application, policy benefits and dunning processes (modeling VVG-compliant target processes)
  • Adapting work guidelines and documentation
  • Functional specification of IT requirements and training of case handlers
  • Acceptance and test procedures for implementing IT requirements
Mar 2006 - Dec 2006
10 months
Hanover, Germany

Project Manager reorganization / development and establishment of a cross-division customer service center (life and non-life)

Concordia

  • Project management of the process analysis
  • Development of a personnel needs planning tool
  • Integration of claims processes
  • Designing a DMS tracking and workflow system
  • Development of routing and inbound control, functional specifications (rules, authorizations etc.) and IT requirements
  • 1st level processes for partner data and payment transactions
  • Division-specific 2nd & 3rd level org HUS, RS
Feb 2006 - Jun 2006
5 months
Bonn, Germany

Project Manager for Reorganization / Integration of the life benefits, risk underwriting and company pension areas into a

ZGD / Zurich

  • Project management
  • Risk management & controlling
  • Reporting and committee work (steering committee etc.)
Jan 2005 - Present
20 years 8 months

Data Protection Officer (DPO) and Compliance Officer

Qvestcon GmbH

  • Processor agreement negotiations and contracts with service providers, data and access rights architecture for web portal projects including payment transactions, SLA agreements, compliance and data protection guidelines, tracking agile IT development (JIRA – Confluence)
  • Target architecture, IT layout planning
Feb 2004 - Sep 2006
2 years 8 months
Kassel, Germany

Program Lead for insurance company merger with integration of a specific sales channel under its own brand

HUK - VRK

  • Overall coordination of various projects
  • Multi-project management
  • Project/risk management & controlling
  • Committee work (steering committee, executive board)
  • Assessment of VRK claims management and the asset management department (KonTraG, BaFin 29/2002, BAK-red R 11/2001 etc.)
  • K migration in the HUK system environment
Jan 2004 - May 2004
5 months
Hamburg, Germany

Subproject Manager for business process optimization in Life

Aspecta

  • Subproject management
  • Designing target processes
  • Workflow & DMS system redesign
  • Business case and ROI analysis
Sep 2003 - Feb 2004
6 months
Oberursel, Germany

Requirements Manager for business process optimization and implementation of a quantity and time tracking system in the

AL / Alte Leipziger

  • Project management
  • Developing a requirement profile
  • System development
  • Customization according to client specifications
  • User training
Jul 2002 - Aug 2003
1 year 2 months
Saarbrücken, Germany

Requirements Manager for the Implementation of a New Policy Administration System

Cosmos

  • Project Controller/Risk Manager
  • Management Control, Planning, Reporting, Documentation, Risk Analysis, Committee Work
Mar 2000 - Jun 2002
2 years 4 months
Wiesbaden, Germany

Requirements Manager for Development, Customization, and Implementation of Process-Based Workforce Planning

ZGD / Zurich

  • Formerly Deutsche Bank Life, then Herold
  • Operational model optimization for bancassurance in the DB Group
  • Merger DB Life – Herold (Life, Partners, Payments)
  • Herold integration into Zurich Germany
  • Data Collection & Analysis
  • Benchmarking & Simulation
  • Development of Data Collection and Analysis Tools
  • Cross-site Process Optimization
  • Operational, Organizational, and Personnel Model
May 1994 - Mar 1999
4 years 11 months
Dresden, Germany

Managing Partner / Executive Management

PBP GmbH

  • Managing Partner
  • Establishment of new branches, expansion of business areas, and recruitment of suitable employees
  • Site and market analysis, contract drafting and negotiation, acquisition, personnel management, receivables management
  • Leading approx. 80 employees

Summary

25 years of consulting experience at top management level in

banks and insurance companies in both mid-sized and corporate environments

Focus areas: Process Management, Regulatory & Compliance (B/V/K-AIT, MaRisk, MaGo, GDPR, BSI), Domain Architecture, Data & Analytics Governance, and IT Sourcing and Vendor Management (DORA/ICT)

Languages

German
Native
Bulgarian
Elementary
English
Elementary
Russian
Elementary

Education

Lorem ipsum dolor sit amet

Degree · Business management

Certifications & licenses

Trainer license (AdA)

IHK

BWV Insurance Specialist § 34d GewO

BWV

DEKRA Communication Consultant

DEKRA

Real Estate Loan Broker § 34i GewO

IHK

Six Sigma Green Belt

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions