About Rafal
Polish
Native or bilingual
German
Native or bilingual
English
Fluent
Italian
Basic
Experience
- Freelance / ConsultantSenior Information Security & GRC ConsultantCONSULTING AND AUDITSMay 2023 - Today (3 years and 1 month)
- Advisory roles for enterprises and regulated organizations
- ISMS design, review and audit support (ISO 27001, BSI)
- Regulatory assessments (NIS2, DORA, BAIT)
- Interface between management, IT, security and auditors
- Architecture-level security and governance guidance
- FreelancerSenior Information Security Consultant, IT Security Architect, IT GRC & Data Privacy ExpertMay 2023 - Today (3 years and 1 month)08/25 – 12/25: Cloud: Security & Data Protection Coordinator
- Client: European Commission (EU)
03/25 – 06/25: Active Directory: Windows Authentication Hardening- Client: NGO (Germany)
01/25 – 02/25: ISO/IEC 27001:2022 Compliance Gap Analysis- Client: Media company (Germany)
09/24 – 02/25: PKI – Microsoft Active Directory Certificate Services- Client: NGO (Germany)
7/2024: Trainer – “BSI IT-Grundschutz Practitioner”- Client: TÜV Nord (Germany)
02/24 – 07/24: Azure Entra ID – Cloud Authentication- Client: NGO (Germany)
10/23 – 02/24: ISMS: Identity and Access Management- Client: NGO (Germany)
10/23 – 04/24: IT Asset Management: Structure Analysis- Client: Bank (Germany)
08/23 – 11/23: Cloud-First Network Architecture & PKI- Client: Laboratory Industry (Germany)
05/23 – 07/23: ISMS: Dual-Standard Security Concept- Client: Media Company (Germany)
05/23 – 09/23: IT Asset Management: Internal ISMS Audit- Client: Bank (Germany)
- Eurofins GSC IT Poland z.o.o., PLInformation Security Consultant, IT Security ArchitectENVIRONMENTALOctober 2020 - May 2023 (2 years and 7 months)Katowice, Poland
- Experience in Governance, Risk & Compliance (GRC) with a focus on thecreation and maintenance of ISMS policies, specifically the "Access Control and Password Policy", as well as performing IT risk analyses.
- Provided IT security consultancy as a Subject Matter Expert (SME) for system hardening and cryptography, particularly in the fields of IAM/PAM (Active Directory, Entra ID, Ping Federate, BeyondTrust PAM).
- Developed over 100 security blueprints for operating systems such as Windows 11, Windows Server 2019 and Ubuntu Linux, as well as for infrastructure components and security solutions (e.g. KeyFactor PKIaaS, CryptoSpike for NetApp, PostgreSQL, HashiCorp Vault, and Entrust HSM).
- IT architecture for the integration and securing of cloud modules such as Azure Key Vault, AWS IAM, Azure SQL and Azure Virtual Desktop (VDI), as well as the creation of hardening manuals for IT systems, IT services (DNS, Apache/Nginx/IIS, SSL/TLS cryptography, email servers) and secure networks.
Recommendations
Be the first to recommend Rafal
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master in Business InformaticsMaster in Business Informatics
- Master of ScienceWINGS at Wismar University2015Master of Science