09.06.2026 aktualisiert

**** ******** ****
Premiumkunde
100 % verfügbar

Senior IT-Security & GRC Consultant | NIS-2, DORA, ISO 27001, SOC (CISSP)

Augsburg, Deutschland
Weltweit
MSc Management Information Systems; Dipl. Elektrotechnik/Informatik
Augsburg, Deutschland
Weltweit
MSc Management Information Systems; Dipl. Elektrotechnik/Informatik

Profilanlagen

Senad Džananović (2010) 2025.pdf

Skills

NIS 2SOC 2DORAAuditsCertified in the Governance of Enterprise ITComplianceCompliance-SchulungenIt-BeratungCorporate GovernanceCertified in Risk and Information Systems ControlDevOpsIncident ResponseGovernance-Risikomanagement und ComplianceITILInformation GovernanceIt-RisikomanagementAuditing (Informationstechnik)It-GovernanceISO / IEC 27001Iso 2700XNetwork Information ServicesProjekt-RisikomanagementRisikomanagement-InformationssystemeSAP GRCSecurity Support Provider InterfaceSox-ComplianceCertified Information Systems AuditorRisikomanagement-FachmannUnternehmensweites Risikomanagement-RahmenwerkDigital ComplianceIT-ArchitekturSicherheitskritischeISO/IEC 27002gRPCRisikomanagementDevSecOps
Senior IT-Security- und GRC-Berater (CISSP) mit Führungslaufbahn als CISO der Zentralbank von Bosnien-Herzegowina, CSO der UniCredit Bank sowie Senior Manager bei PwC und Deloitte.

Schwerpunkte:
NIS-2, DORA, ISO 27001 (ISMS-Aufbau), SOC 1 & SOC 2, NIST CSF, GDPR/DSGVO, COBIT, ITIL, SOX. IT-Governance, Risikomanagement, IT-Audit, Incident Response, BCP/DRP und DevSecOps – primär für Finanz- und Telekom-Sektor.

Ausgewählte Projekte:
  1. B2CyberSec (seit 08/2024): GDPR, ISO 27001, NIS-2, DORA, SOC-Operations.
  2. PwC (2022–2024): Leitung Cyber-Team Finanzindustrie CEE; DORA-Assurance-Framework, NIST-CSF-Reifegradanalysen, IT-Audits, SOC-1/SOC-2-Unterstützung, Steuerung von Penetration Tests.
  3. CISO Zentralbank B&H (2017–2022): Aufbau ISO-27001-Sicherheitsframework, SIEM/DAM/PAM, BCP/DR.

Sprachen:
Englisch (fließend), Bosnisch (Muttersprache). Projektsprache Englisch.

Keywords:
NIS-2, DORA, ISO 27001, ISMS, SOC 1, SOC 2, NIST CSF, GDPR, COBIT, ITIL, SOX, GRC, IT-Governance, Risikomanagement, IT-Audit, Incident Response, BCP, DRP, DevSecOps, CISO as a Service, KRITIS, Compliance.

Sprachen

EnglischverhandlungssicherBosnischMuttersprache

Kontaktanfrage

Einloggen & anfragen.

Das Kontaktformular ist nur für eingeloggte Nutzer verfügbar.

RegistrierenAnmelden