
DORA Experts in Essen
matched in minutes from over 15,000 CVsHire experts who turn the Digital Operational Resilience Act into practical controls, from ICT risk assessments and incident reporting to third-party oversight and resilience testing. FRATCH precisely matches you with vetted, available freelancers who fit your needs quickly.
Meet FRATCH Experts in Essen, who have recently used DORA
Alwin G.
Last position:
IT Interim Manager & AI Strategist
- Founder of CheironX: AI-supported GRC management (ISO 27001, BSI IT-Grundschutz, TISAX, DORA)
- Strategic focus on Agentic AI and GenAI for modern IT Governance, Risk & Compliance Management
- IT interim management and strategic consulting
Henry H.
Last position:
Interim Manager IT-Compliance at Int. Fertigungsunternehmen
- Industry: mechanical engineering, vehicle manufacturing
- Regulations: Data Act
- Project focus: data governance, legally compliant use of machine data, data platforms
- Assigned by: CFO, platform product owner
Successes/Results (early phase):
- Compliance support for the setup of an internal standardized data usage platform based on Databricks.
- Created the basis for the legally compliant and effective use of machine data, including:
- Technical: gap analysis and closing of gaps in the segmentation and maintenance of collected machine data.
- Technical: consideration of data flows from the platform to users and third parties.
- Organizational: drafting and finalizing the required data usage agreements.
Jens B.
Last position:
Senior Cyber Security Consultant at Brennscheidt IT Consulting
KEY PROJECTS
Since 05/2023 | Bank | Senior Cyber Security Consultant (external)
- Advising and guiding the system owners in creating and further developing IT security concepts
- Coordinating and tracking the remediation of findings from reviews and audits
- Advising on the implementation of regulatory requirements for information security
10/2023 – 02/2024 | Fintech | Project Manager (external)
- Project management to close various audit gaps in the field of information security
- Conceptual design and implementation of an information security management system based on ISO/IEC 27001
- Creation and further development of ISMS documents and processes
Frank D.
Last position:
Project Manager at TEAG Thüringer Energie AG
- Transition of Microsoft Azure operations to BTC AG
- Responsibility: budget of €60k
- Staff: leadership of 5 people
- Tools: Office 365, JIRA, Confluence
Manuel E.
Last position:
External Technical Lead for CI/CD, Architecture & Technical Governance at Insurance
- Technical lead for CI/CD modernization in the "Group Archive 4.0" system
- Architecture and steering responsibility according to the statement of work
- Setting up modern build and deployment processes
- CI/CD coaching and enablement of the internal development team
- Integration of modern DevOps, security, and compliance standards
- Ensuring technical governance, including collaboration with internal audit and BaFin
- Independently executing the modernization measures
- Supporting the team in adopting new technologies and methods
Kai-Uwe P.
Last position:
Technical Project Management at CHG Meridian AG
- CHG Meridian AG is a financial company focused on leasing in the areas of IT technology, logistics and medical technology and is regulated by BaFin. One part of the company is Return to Remarketing, where devices delivered to the technology center (notebooks, smartphones, tablets, etc.) are prepared for resale. The project I supported was responsible for enabling damage assessment of returned lease devices, documenting them visually in the form of pictures, enabling invoicing for the customer, and making the pictures available via the in-house customer platform. This was achieved through a combination of in-house development within the internal development department and the use of SaaS products. The second project was the transition of SaaS tendering software, purchased by the business unit, into the operations of the CHG IT department. Evaluation of security questions in relation to BaFin requirements, development of an authorization concept, implementation of single sign-on, documentation of the application in the CHG systems (CMDB, iKnow, etc.) and handover into operations.
Used technologies and methods: NIS2, DORA, agile software development, Scrum, Kanban, ServiceNow, SaaS, MS Teams, MS SharePoint, Active Directory, Entra ID, CMDB, incident management, change management, request management, service level agreement
Alexander D.
Last position:
Interim Manager Procurement | Head of Procurement & Strategic Sourcing at Löwenstein Medical Technology GmbH & Co. KG
- Overall responsibility for strategic and operational procurement, Procurement Management (11 FTE).
- Further development of the procurement and procurement organization, including task and role model.
- Management of cross-functional special projects (e.g. value engineering, design-to-cost).
- Development and implementation of a holistic sourcing and procurement strategy with a focus on resilience, ESG, de-risking, decoupling and cost performance.
- Execution of a comprehensive procurement transformation with a new supply chain strategy alignment.
- Reorganization of the procurement team to improve efficiency through clear role allocation and relief from non-core and non-functional tasks.
- Professionalization of contract management processes and supplier development programs.
- Process optimization along the S2C and P2P chain, including standardization and automation in line with MDR (EU Regulation 2017/745), GxP compliance & quality management systems ISO 9001 and ISO 13485.
- KPI development and optimization of the KPI system for performance and efficiency measurement in critical paths and missing parts.
- Coaching the team in strategic procurement work, project management and procurement due diligence.
- Implementation of AI-supported tools for sourcing, spend analysis and inventory management to optimize inventory.
- Achieved inventory reduction of ~31% through professional inventory management.
- Management of two cost reduction (cost avoidance) programs with quantified results: ~50% reduction in manufacturing costs for one core component and ~64% reduction in material costs for the successor platform through redesign and category sourcing.
- Savings in the low double-digit million range versus the baseline.
- Material groups: contract manufacturing, PCBA, EMS, blower, silicone injection molding, power supplies, batteries, displays, hoses, masks, valves, foams, cables, sensors, wireless modules (2G–5G), telemedicine components, laboratory services.
Levent Ö.
Last position:
Senior Expert Transformation & Change Management at STC Services (Freelancer in cooperation)
- Developed an IT governance and oversight framework aligned with DORA requirements
- Coordinated and trained external service providers
- Optimized financial processes and performance
Arndt M.
Last position:
Project Manager for ServiceNow Vulnerability Response at Union Investment Services & IT GmbH
- Led the subproject for implementing Vulnerability Response as part of DORA
- Documented the current processes in compliance, risk & security
- Created the functional design for introducing application, infrastructure, and cloud vulnerabilities
- Agile management of the integration service provider, the technical department, and the company's cross-functional teams
- Integrated the V scanners Tenable, Qualys and Defender, as well as NVD and CISA/KEV
- Integrated GitLab Ultimate for importing and processing SBOMs
- Developed automation rules to match scan results with CIs in the CMDB, assign vulnerabilities and remediation tasks, handle approvals (false positives, exceptions) and closures
- Calculated multiple risk scores and priorities
- Defined dashboards and reports (Workspaces, Performance Analytics)
- Aligned the new processes, especially to improve the CMDB data quality (according to CSDM)
Carsten W.
Last position:
Managing Consultant - IT Outsourcing-Services (IT, Voice, Data) at Bank / insurance group (Savings Banks Group)
- Transforming complex AI use cases into practical solutions
- Analyzing IT/telecom end-to-end business processes from requirements to order (RACI), modeling with IBO Prometheus
- Risk management
- Assessing digitalization potential, AI, and strategic supplier analysis against the IT target picture
- Optimizing offer and cost calculation bases in strategic and operational IT procurement
- Optimizing supplier strategy (DSGV and financial institutions)
- Exploring various approaches to cost optimization and simplifying supplier management
- Optimizing contracts and licensing management (e.g., SAP, Microsoft, IBM, Cisco, BMC, etc.)
- Desk and field expediting with external partners
- Possible outsourcing and consolidation of services with fewer suppliers
- On-time handover of work packages within agreed time and budget
Tamara S.
Last position:
Working Student Contract Law at SITA Airport IT GmbH
- Assisting in drafting, reviewing, and negotiating contracts and other legal documents (NDAs, termination agreements, termination notices, etc.)
- Research and analysis of legal issues
- Implementation of legal and regulatory requirements (GDPR, NIS2, DORA, Data Act, AI Act)
- Supporting compliance with legal requirements and internal policies (AI Regulation, Accessibility Enhancement Act, Supply Chain Due Diligence Act, Whistleblower Protection Act)
- Documenting and filing important contract documents in the digital system
- Negotiating and evaluating individual contract clauses
Daniel J.
Last position:
Information Security Consultant
- Enhanced quality assurance of documents, processes and required evidence in preparation for the upcoming KRITIS audit 2025.
- Reviewing and commenting on all relevant documents.
- Advising authors and document owners on inquiries and during the creation process.
- Supporting departments with IT security inquiries.
- Used tools/Frameworks MS Office, SharePoint, Jira, Confluence, ISO27001+, NIS-2 (EU 2022/2555), B3S (Statutory Health & Private Health Insurance), BSIG / IT-SIG 2.0, BSI-KritisV, BSI-C5, BSI Baseline Protection (200-2, 200-4), ServiceNow, RCE (EU 2022/2557), SGB, GDPR
Discover over 15,000 top freelancers
Statistics of experts using DORA
Aggregated from the professional profiles of matched freelancers.
Experience
22 years (Germany: 21 years)

Position duration
1.9 years (Germany: 2.4 years)

Positions per freelancer
17 (Germany: 16)

Top business areas
Information Technology, Project Management, Operations

Top industries
Information Technology, Manufacturing, Banking and Finance

Certification focus areas
Information Technology, Project Management, Audit
Bachelor's degree or higher
73% (Germany: 88%)
Master's degree or higher
36% (Germany: 60%)

Certifications per freelancer
10 (Germany: 7)

Most common languages
German, English, French

Speak two or more languages
100% (Germany: 97%)
Based on our profile pool as of 19 Sep 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Essen are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Essen using DORA
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 19 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
DORA experts industry focus
See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.
- Information Technology (92%)
- Manufacturing (75%)
- Banking and Finance (67%)
- Insurance (67%)
- Professional Services (67%)
- Energy (58%)
- Retail (50%)
- Automotive (42%)
Please note that freelancers can work across multiple industries, so percentages overlap.
About the technology
What DORA covers
DORA, the Digital Operational Resilience Act, sets requirements for digital operational resilience across the European financial sector. It addresses ICT risk management, serious incident reporting, resilience testing, information sharing and oversight of critical technology providers. Companies use it to connect regulatory obligations with workable technology and governance controls.
Where it applies
DORA affects banks, insurers, investment firms, payment providers and other regulated financial entities, along with many ICT suppliers serving them. Its scope reaches cloud services, managed infrastructure, software, networks, data operations and outsourced technology processes. In Essen, specialists may support financial companies and industrial groups with regulated finance activities, whether the work is on-site or remote.
Core deliverables
- ICT risk management frameworks and control libraries
- Incident classification, escalation and reporting processes
- Critical supplier registers and third-party risk reviews
- Resilience testing plans, evidence and remediation tracking
- Governance documentation aligned with business services
These deliverables must work in daily operations, not just satisfy an audit. Strong implementation links policies to system owners, service dependencies, recovery procedures and clear evidence.
Ecosystem and skills
DORA work often connects with GRC platforms, IT service management, security monitoring, identity controls, cloud governance and business continuity tooling. Useful adjacent knowledge includes ISO 27001, NIS2, COBIT, operational risk, incident response and regulatory reporting. Experts should understand both control design and the technical environments where those controls operate.
When companies need specialists
Companies bring in freelance DORA expertise when a compliance programme needs practical ownership, when an audit exposes gaps or when a major outsourcing change affects ICT risk. They may also need help preparing for supervisory reviews, testing recovery capabilities or translating legal requirements into backlog items. Local collaboration in Essen can help when workshops involve risk, compliance, procurement and technology teams, while remote delivery suits documentation and assessment work.
What strong experts deliver
Strong professionals start with business services and critical dependencies instead of applying generic checklists. They distinguish inherent risk from control effectiveness, document assumptions and produce evidence that reviewers can follow. They also communicate clearly with boards, operational teams and external suppliers, and leave behind maintainable processes rather than one-off compliance documents.
Frequently asked questions
Need clarity? These are the questions we hear most often about DORA.
DORA, the Digital Operational Resilience Act, is used to strengthen how financial entities prevent, withstand, respond to and recover from ICT-related disruption. It covers risk management, incident reporting, resilience testing and oversight of technology providers.
DORA is focused specifically on digital operational resilience in financial services and includes detailed expectations for ICT risk, major incidents, testing and third-party technology oversight. ISO 27001 provides a broader information security management framework, while NIS2 covers cybersecurity duties across wider sectors.
A strong DORA freelancer usually combines regulatory interpretation with ICT risk, business continuity, incident response and supplier management. Experience with GRC tooling, cloud controls, IT service management and frameworks such as ISO 27001 can make the work more effective.
The right level depends on the scope, regulatory status and maturity of the organisation. DORA specialists should be able to show relevant work across control assessments, resilience testing, incident processes or critical ICT supplier reviews, with examples that match the project’s complexity.
Yes. DORA work often involves interviews, document reviews, control mapping and workshops that can be delivered remotely. On-site sessions in Essen may still help when teams need to agree on critical services, ownership or recovery procedures, and German or English language requirements should be clarified early.
Ask how the DORA specialist maps requirements to business services, technology dependencies, controls and evidence. Good answers should cover incident thresholds, testing outcomes, supplier oversight and remediation, rather than relying on a generic compliance checklist.
A useful DORA assessment identifies material gaps, owners, priorities and evidence requirements. It should result in practical actions such as updated ICT risk controls, tested recovery procedures, improved incident workflows and a defensible view of third-party dependencies.
DORA is both. Compliance teams interpret obligations and oversee governance, while technology and operations teams must implement controls across infrastructure, applications, monitoring, recovery and suppliers. The best specialists connect these perspectives so resilience becomes part of normal service management.
The average hourly rate of freelancers in Essen, Germany who have used DORA in their recent projects is 117 €, which corresponds to a daily rate of about 936 € based on an 8-hour working day.
Of the freelancers in Essen, Germany who have used DORA in their recent projects, 73% hold at least a Bachelor's degree and 36% hold at least a Master's degree.
On average, freelancers in Essen, Germany who have used DORA in their recent projects have 22 years of professional experience, with a single engagement typically lasting around 1.9 years.
The most common languages among freelancers in Essen, Germany who have used DORA in their recent projects are German (100%), English (92%), and French (17%).
The most common industries among freelancers in Essen, Germany who have used DORA in their recent projects are Information Technology (92%), Manufacturing (75%), and Banking and Finance (67%).
The most common business areas among freelancers in Essen, Germany who have used DORA in their recent projects are Information Technology (92%), Project Management (92%), and Operations (83%).
Main locations of FRATCH Experts, who have recently used DORA
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Cologne
Frankfurt
Dusseldorf