ISO 27001 Experts in Dortmund
in minutes from over 15,000 CVs with vetted, available specialistsHire experts who build ISO 27001 management systems, close audit gaps, and prepare documentation for certification and surveillance audits. Work with specialists who shape risk treatment, controls, internal audits, and security policies, matched fast and precisely from vetted, available freelancers.
Meet FRATCH Experts in Dortmund, who have recently used ISO 27001
Laurin Hagemann
Last position:
Software Architect (Freelance) at Care4Sure
- Delivered MVP-focused full-stack architecture for a health-sector client: Vite/React frontend, backend services on Google Cloud Run, and Supabase for database plus IAM/authentication.
- Supported product requirements engineering and prioritized cost-aware workload placement, implementing browser-side/edge computation where feasible before moving logic to backend services.
Tarek El Idrisi
Last position:
Associate GRC at Egerer Consulting
Carve-out project: Development of certification strategy, implementation and requirement plans across multiple standards — ISO/IEC 27001, ISO 9001, ISO 14001, ISO 22301, ISO/IEC 20000-1, BSI IT-Grundschutz, and BSI TR-RESISCAN
- Cross-standard inventory and risk assessment
- Coordination with cross-department stakeholders: ISB, executive management, certification bodies, legal and data protection
- Consulting in information security, GRC, and IT auditing
Jens Brennscheidt
Last position:
Senior Cyber Security Consultant at Brennscheidt IT Consulting
ISMS consulting
Interim management
Conducting security analyses & audits
BCM consulting
Executive management
Mohamad Alosman
Last position:
Systems Engineer for Network Security at Bechtle AG
- SD-WAN solution by Aruba – Swiss energy company (330 sites): design and implementation of an SD-WAN branch solution with Aruba 9004 gateways, encrypted overlay, policy-based routing, WAN load balancing, and centralized management via Aruba Central.
- LAN/WLAN & security – schools in Germany (9 sites): deployment of Aruba switches & AP-505, FortiGate 80F firewalls; setup of Checkmk monitoring, incident and change management, and secure admin access (BeyondTrust).
- Multi-site security – energy billing company (20 sites): deployment of a complete Fortinet solution (FortiGate HA cluster, FortiSwitch PoE, FortiAP), IPsec remote-access VPN via FortiClient, centralized management via FortiCloud, IntraID authentication, operations and incident management.
- Data center migration – German client: migration of data center switches (Mellanox), firewall cluster, and OfficeConnect switches to a new data center; securing configurations, implementing HA designs, testing, monitoring, and coordinated change and incident processes. Setup of two new 6300 M VSX clustered switches.
- Data center security – university hospital: implementation of a high-availability FortiGate 400F firewall cluster across three data centers; security policy design, operational support, and change/incident management.
- Enterprise campus & network access control – manufacturing company in Germany: introduction of Aruba ClearPass NAC, setup of a VSX-based switching architecture, secure WLAN access with MPSK, and integration into existing networks.
- EU client (Germany & Poland) – Sophos firewalls: operations, incident and change management of Sophos firewalls including IPsec VPN; troubleshooting and ongoing optimization of security configurations.
- Network modernization – pharmacy client in Germany: design and rollout of core and access switching (Mellanox, Aruba Instant On), migration from Sophos to Fortinet firewalls, network segmentation, and security hardening.
Manfred Liebetrau
Last position:
Senior Consultant Information Security at Creditplus Bank AG
- Designing the information security process based on ITIL 4
- Designing the ITIL 4 incident and change management processes
- Creating information security policies for the bank
- Support in the project for internal audit findings
- Advising on the setup of the bank's internal control systems (ICS)
- Advising on setting up ICS processes
- Advising and supporting security architecture and risk analysis of the existing IT landscape, including IT security architecture, data management, data compliance & physical security
- Advising and project leadership for the security concept of the bank's assets
- Advising and support in contracts with external service providers to meet the bank's regulatory (BAIT; MaRisk; DORA; NIS2; GDPR) and information security requirements
- Support in planning and implementing a SOC/SIEM and risk management
- Support for the spam email team in analyzing and handling incidents
Christian Fox
Last position:
Deutsche Post DHL Group
- Leadership development training
- ITIL
- Prince2
Discover over 15,000 top freelancers
Statistics of experts using ISO 27001
Aggregated from the professional profiles of matched freelancers.
Experience
13 years (Germany: 22 years)
Position duration
1.5 years (Germany: 2.6 years)
Positions per freelancer
7 (Germany: 13)
Top business areas
Information Technology, Project Management, Audit
Top industries
Information Technology, Banking and Finance, Insurance
Certification focus areas
Information Technology, Audit, Project Management
Bachelor's degree or higher
100% (Germany: 88%)
Master's degree or higher
50% (Germany: 54%)
Certifications per freelancer
5 (Germany: 6)
Most common languages
German, English, French
Speak two or more languages
83% (Germany: 97%)
Based on our profile pool as of 30 Aug 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Dortmund are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Dortmund using ISO 27001
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 30 Aug 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
About the technology
ISMS core
ISO 27001 is the standard for an information security management system, often called an ISMS. It helps companies define how they protect data, manage risk, and prove control over security processes. It is used in regulated supply chains, SaaS, industry, healthcare, and any setup that handles sensitive information.
Typical work
Strong specialists turn the standard into practical delivery. They write policies, map risks, define controls, support statement of applicability work, and prepare evidence for audits.
- ISMS scope and policy setup
- Risk assessment and treatment planning
- Control mapping and evidence collection
- Internal audit and corrective actions
- Certification readiness reviews
Tools and methods
ISO 27001 work sits close to GRC, asset inventories, ticketing systems, and document control. Professionals often work with incident handling, access reviews, vendor assessments, and business continuity plans. They need clear writing, a structured method, and a sharp eye for gaps between policy and practice.
When to hire
Companies bring in freelance expertise when they start a certification journey, need to recover from audit findings, or must align a busy team around one security framework. In Dortmund, this often fits firms with cross-border clients, industrial operations, or IT service work that needs formal trust signals. Remote collaboration is common, but on-site sessions help with interviews and evidence gathering.
What good looks like
A strong specialist does not only write documents. They understand how the company works, which controls are realistic, and how to get people to follow them. Look for clear explanations, audit experience, and the ability to translate ISO 27001 into daily routines.
Related standards
ISO 27001 is often discussed with ISO 27002, which explains the control set in more detail. Depending on the company, the work may also touch ISO 27701, SOC 2, NIS2 preparation, or vendor security reviews. The best experts know where ISO 27001 ends and where other frameworks begin.
Frequently asked questions
Questions about ISO 27001? Start with the answers below.
A strong ISO 27001 specialist helps turn security goals into a working management system. That can include scope definition, risk treatment, policy drafting, internal audits, and preparation for certification or surveillance audits.
ISO 27001 defines the requirements for an information security management system, while ISO 27002 explains the controls in more detail. Companies often use both together: one to set the framework, the other to guide control selection and implementation.
A good ISO 27001 professional usually knows risk management, audit preparation, document control, and incident handling. Experience with vendor reviews, access governance, and business continuity is also valuable because these topics often appear in the same project.
For a small gap analysis or policy review, a focused ISO 27001 specialist may be enough. For a full certification journey, you usually want someone who has already guided teams through scoping, evidence collection, and audit discussions.
Most ISO 27001 tasks can be done remotely, including documentation, workshops, and audit preparation. On-site time helps when the specialist needs to interview staff, review physical controls, or work through evidence with several teams in one place.
Look for clear examples of how the ISO 27001 expert handled scope, risk, controls, and audit findings. Good specialists explain trade-offs in plain language, avoid overcomplicating the ISMS, and focus on evidence that will stand up in an audit.
No, ISO 27001 is useful for smaller companies too, especially when customers ask for formal security proof. Many growing firms use it to organize security work before it becomes messy or reactive.
A ISO 27001 specialist works best when the company can share its scope, current policies, main systems, and known risks early. For teams in Dortmund, it also helps to clarify whether the work is fully remote or includes on-site sessions for interviews and evidence checks.
The average hourly rate of freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects is 100 €, which corresponds to a daily rate of about 797 € based on an 8-hour working day.
Of the freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects, 100% hold at least a Bachelor's degree and 50% hold at least a Master's degree.
On average, freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects have 13 years of professional experience, with a single engagement typically lasting around 1.5 years.
The most common languages among freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects are German (100%), English (83%), and French (50%).
The most common industries among freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects are Information Technology (83%), Banking and Finance (50%), and Insurance (50%).
The most common business areas among freelancers in Dortmund, Germany who have used ISO 27001 in their recent projects are Information Technology (100%), Project Management (67%), and Audit (50%).
Main locations of FRATCH Experts, who have recently used ISO 27001
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Hamburg
Munich
Cologne
Frankfurt
Stuttgart
Dusseldorf
Essen