Maxim Ribakowski-Information Security Officer
Check rate
Experience
Information Security Officer
Horváth AG
- Managing the Information Security program according to ISO27001:2022, BAIT, BSI 200-1/4
- Creating and updating IT policies and procedures
- Communicating with C-level and the board (weekly, monthly, quarterly reports on incidents, risks, measures, audits, strategic and personnel planning)
- Coordinating external and internal audits (JAP, BAIT, BaFin)
- Risk management (monitoring improvement measures, assessing new risks, planning and reporting countermeasures)
- Incident management (analyzing security-related incidents, monitoring and planning countermeasures and improvements)
- Training employees on incidents, internal policies, and emergency procedures
- Business continuity management (reviewing and updating BIA, emergency plans, recovery concepts, test results)
- Managing communication between departments as a mediator
- Managing and auditing external service providers (IT, cloud services; SOC 1/2, ISAE 3402 Type 1/2, C5 reports, on-site audits)
Access Identity Management
T60 Consulting GmbH
- Leading a team of four specialists in Identity and Access Management
- Managing workflows and ensuring timely target achievement
- Coordinating and delegating tasks, monitoring progress, and ensuring compliance with legal requirements
- Policy management (developing and implementing policies, procedures, and standards: authorization concept, SoD policy, onboarding/offboarding, IT resources, emergency access)
- Training and supporting secure handling of credentials and IT systems
- Coordinating with IT, information security, data protection, legal, and HR for appropriate access rights
- Assisting with internal and external reviews
Information Security Officer
Testvolt AG
- Preparing for ISO 27001:2022 and ISO 22301:2019 certification
- Developing and reviewing ISMS documentation (security concepts, policies, work instructions)
- Conducting training on information security, data protection, and ISO standards
- Auditing information security at service providers
- Implementing an Information Security Management team (3 employees)
- Planning, coordinating and managing IT audits (year-end, insurance, partners)
- Collaborating closely with IT, legal, HR, and product development
IT-Security Officer
Bitwala GmbH
- Implementing a GRC tool (selection, training, centralization, and optimization of risk management, improving customer and partner services)
- Collaborating closely with IT, legal, compliance, HR, and product development
- Developing IT policies according to ISO 27001:2022, BAIT, MaRisk, GDPR, NIST
- Managing the Information Security program with standardization and automation in IT infrastructure, cloud, development, encryption, backup, cyber security, access management, data protection
- Conducting security reviews of business partners (ISO 2700x, SOC 1/2, ISAE 3402 Type 1/2, C5, on-site audits)
- Centralized risk and incident management via the GRC tool
- Business continuity management (emergency scenarios, test monitoring)
- Internal audits according to ISO 27001 and BAIT (planning, preparation, training, execution)
- Coordinating external audits
- Security Champions program to motivate and develop teams in information security management and data protection
- Preparing for the CISO role at Nuri Bank GmbH
Information Security Officer
LucaNet AG
- Leading and developing an agile team (5 employees) in information security management
- Managing workflows, coordinating, and delegating tasks
- Central coordination and delivery of security requirements
- Collaborating closely with directors across all branches, IT, legal, HR, and product development
- Managing the group-wide IT security strategy
- Preparing and managing certifications according to ISO 27001 and ISAE 3000 / SOC Type 1/2 for financial SaaS services
- Conducting training in information security and data protection
- Risk management as well as internal and external audits
- Coordinating and supporting suppliers and partners
- Establishing and improving business continuity management (BCMS) according to ISO 22301
- Leading and managing projects
Cyber Security Manager
Capgemini Outsourcing Services GmbH
- Organizing and further developing security concepts according to ISO/IEC 27001 based on IT baseline protection for the public sector and BAIT for the financial sector
- Advising on GDPR in app development (IT industry)
- Auditing data centers
- Implementing legally required documents under GDPR and ISMS (financial industry)
- Handling tenders and presales activities
- Project management and coordination
- Maintaining and improving the ISMS according to ISO 27001 and BSI standard 100-1/4
Consultant IT Compliance
Controlware GmbH
- Conducting risk analysis according to ISO 27005 in conjunction with ISO 31000 (financial industry)
- Performing audits under ISO/IEC 27001 (energy provider)
- Customer IT compliance audits under BAIT (financial industry)
- Data protection audits (telecom industry)
- Advising on the implementation of ISO/IEC 27001 (energy provider)
- Advising on IT baseline protection according to BSI based on ISO 27001 (public sector)
- Preparing ISO/IEC 27001 certifications (data center)
- Strategic and conceptual consulting on information security management (SaaS)
- Training on information security, data protection and ISO standards (public sector)
- Developing security concepts according to BSI, BaFin, BNetzA and international standards (financial industry)
- IT compliance project management and coordination
IT Quality & Security Manager
Telehouse GmbH
- Conducting certifications for data centers according to ISO 27001, ISO 22301, ISO 9001, SOC 1/2 and PCI DSS
- Interacting with internal and external stakeholders from different backgrounds
- Central coordination and communication of security requirements to HR, IT, developers, support and sales
- Coordinating suppliers and partners
- Leading teams in data protection, information security and SOC
- Risk management as well as internal and external audits
- Emergency management
- Project management and coordination
Deputy Data Protection Officer
Altran AG
- Strategically coordinating data protection tasks with internal and external IT and HR staff, legal department, sales and management
- Establishing an ISMS according to ISO 27001
- Acting as deputy data protection officer
- Implementing the data protection concept
- Conducting awareness measures for data protection and information security
- Preparing data protection reports
- Creating and revising internal policies in information security
- Adjusting terms and conditions and corporate rules
- Performing supplier audits
Industry Experience
See where this freelancer has spent most of their professional time.
Experienced in Information Technology, Professional Services, Banking and Finance, and Government and Administration.
Business Area Experience
See which departments and functions this freelancer has contributed to most.
Experienced in Information Technology, Quality Assurance, Project Management, Audit, Legal, and Human Resources.
Languages
Education
LL.B · Information Law Specialist
Certifications & licenses
Data Protection Officer
ITIL Implementer
Lead Auditor ISO 22301
Lead Auditor ISO 27001
Statistics
Experience
Expertise
Qualifications
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Maxim based?
What languages does Maxim speak?
How many years of experience does Maxim have?
What roles would Maxim be best suited for?
What is Maxim's latest experience?
What companies has Maxim worked for in recent years?
Which industries is Maxim most experienced in?
Which business areas is Maxim most experienced in?
Which industries has Maxim worked in recently?
Which business areas has Maxim worked in recently?
What is Maxim's education?
Does Maxim have any certificates?
What is the availability of Maxim?
What is the rate of Maxim?
How to hire Maxim?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Information Security Officer
Nearby freelancers
Professionals working in or nearby Rüdersdorf, Germany
Most recent projects
FRATCH works with many companies and recruitment agencies. Here you will find our recently posted projects and opportunities.
