Manfred Liebetrau-Senior Consultant Information Security
Check rate
Experience
Senior Consultant Information Security
Creditplus Bank AG
- Designing the information security process based on ITIL 4
- Designing the ITIL 4 incident and change management processes
- Creating information security policies for the bank
- Support in the project for internal audit findings
- Advising on the setup of the bank's internal control systems (ICS)
- Advising on setting up ICS processes
- Advising and supporting security architecture and risk analysis of the existing IT landscape, including IT security architecture, data management, data compliance & physical security
- Advising and project leadership for the security concept of the bank's assets
- Advising and support in contracts with external service providers to meet the bank's regulatory (BAIT; MaRisk; DORA; NIS2; GDPR) and information security requirements
- Support in planning and implementing a SOC/SIEM and risk management
- Support for the spam email team in analyzing and handling incidents
Senior Consultant Information Security
Investitionsbank
- Advising on the setup of the bank's internal control systems
- Support in building the bank's IT compliance department and reorganizing the existing risk analysis (MaRisk)
- Converting old procedural manuals to current work instructions
- Advising on business process changes within the framework of regulatory requirements
- Recertification of authorizations and concepts (BRK)
- Advising on setting up ICS processes
- Managing the handling of regulatory audit findings in collaboration with internal audit (BAIT)
- Checking the implementation of regulatory requirements by IT and physical security
- Reviewing evidence and documentation as proof of implementation
- As-is vs. to-be analysis of existing documentation and procedures
Senior Consultant Information Security
Technikerkrankenkasse
- Designing the information security process based on ITIL 4 in collaboration with risk management (MaRisk; risk analysis)
- Designing the ITIL 4 incident processes
- Advising ITSCM on introducing the SOC; preparing a PoC based on VAIT
- Security architecture; vulnerability and patch management
- Evaluating appropriate target measures as a basis for SOC Level 1 analysis
Senior Consultant Information Security
Federal Ministry
- Designing the IT security and ISMS processes; setting up MITRE ATT&CK
- Support in the SOC/SIEM project to connect Azure Sentinel to the network infrastructure
- Security architecture; vulnerability and patch management
- Analyzing and assessing security alerts in the MS 365, Defender for Identity and Azure environments
- Planning and setting up a new CMDB
- Planning physical security for the data center; access control
- Leading the incident response team; MITRE ATT&CK analyses
- Security awareness training for employees (interim)
Industry Experience
See where this freelancer has spent most of their professional time.
Experienced in Banking and Finance, Insurance, and Government and Administration.
Business Area Experience
See which departments and functions this freelancer has contributed to most.
Experienced in Information Technology, Audit, and Project Management.
Skills
Focus Areas
- Information Security Management
- It Governance (Bait; Vait; Kait; Marisk; Dora; Nis2; Dga; Eu Ai Act)
- Compliance (Ics; Document & Data Management)
- Bsi It Baseline Protection 200-x
- Itil 4 / Iso 27000 Series
- Iso 31000 Risk Management (Identification; Analysis; Treatment; Risk Grid; Procedure Adoption)
- Advising And Creating Policies; Processes And Security Concepts; Security Architecture
- Iso 22317 Business Impact Analysis (Bia); Iso 22301 Business Continuity Management (Bcm)
Sectors
- Banking; Insurance; Financial Service Providers
- Public Sector
- Logistics Companies
- Telecommunications
- It Service Providers
- Energy Supply
Roles
- Information Security Consulting At C-level
- Security Management (Isms; Ics)
- Advisor For Audit Findings Kwg §44
- Security Awareness Training
- Risk Management And Risk Analysis
- Compliance Evaluation: Assessing Legal Requirements And Regulatory Requirements And Their Implementation
- Project Management
- Business Analysis
Methods And Standards
- Iso/iec 27001 (Din Nia-01-27)
- Iso 31000 (Din/iso 31000; Vde 1000 (Gk)) Risk Analysis
- Itil 4
- Project Management (Pmi Pmbok; Prince2)
- Business Analysis Cbap (Babok)
- Legal Knowledge: Itsig; Gdpr; Hgb; Bgb; Stgb; Kwg; Gwg; Gob; Pep (According To Directive 2005/60/ec Of The European Parliament); Bait; Vait; Kait; Dora; Nis2; Dga; Eu Ai Act
- Other Knowledge: Bpml; Cissp; Cism; Cbk; Information Systems Audit; Isms; Mitre Att&ck
Tools
- Ms Office (Word; Excel; Powerpoint; Visio; Access; Project)
- Gpli (Asset Management; Cmdb; Security Management)
- Ms Sdl (Security Development Lifecycle; Used For Threat Modeling With The Stride Method)
- Jira; Confluence (Project Documentation And Communication)
- Sharepoint (Task Distribution And Document Collection)
- Documentum (Data Management; Data Compliance; Archive)
- Talend Open Studio (Db Migration From Oracle To Snowflake)
Technology
- Programming Languages: Php; Sql; Java (Jsp); Javascript; Css3; Html5; Xml; Python
- Frameworks: Bootstrap; Vue.js
- Databases: Mysql/mariadb; Oracle; Ms-sql; Snowflake
- Operating Systems: Windows (Pc; Server 2012 R2); Linux (Rhel; Sles; Ubuntu); Osx
Languages
Certifications & licenses
CBAP
IT-Security Coordinator
IT Security Officer
TÜV
Statistics
Experience
Global Experience
Expertise
Qualifications
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Manfred based?
What languages does Manfred speak?
How many years of experience does Manfred have?
What roles would Manfred be best suited for?
What is Manfred's latest experience?
What companies has Manfred worked for in recent years?
Which industries is Manfred most experienced in?
Which business areas is Manfred most experienced in?
Does Manfred have any certificates?
What is the availability of Manfred?
What is the rate of Manfred?
How to hire Manfred?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Senior Consultant Information Security
Nearby freelancers
Professionals working in or nearby Dortmund, Germany
Most recent projects
FRATCH works with many companies and recruitment agencies. Here you will find our recently posted projects and opportunities.
