About Andreas
German
Native or bilingual
English
Fluent
Experience
- A-R-C Andreas Rühl ConsultingInformationssicherheits und Cybersecurity BeraterCONSULTING AND AUDITSJanuary 2025 - Today (1 year and 5 months)Berlin, GermanyLed consulting engagements in information security, cybersecurity and governance with a focus on building resilient security organizations, implementing ISMS frameworks and preparing clients for regulatory and audit requirements.Key responsibilitiesDesigned and implemented ISMS frameworks aligned with ISO/IEC 27001 and BSI IT-GrundschutzConducted gap assessments, risk analyses and security roadmap developmentSupported clients in preparation for TISAX, PCI DSS and KRITIS-related auditsDeveloped security policies, procedures, governance models and control frameworksAdvised leadership teams on information security strategy, security governance and organizational setupSupported the design of security architectures, operating models and technical security conceptsDelivered security workshops, awareness sessions and management briefingsActed as Interim CISO / senior advisor for clients requiring strategic and operational security leadershipTypical outcomesAudit-ready ISMS structures and governance processesClear security roadmaps and prioritized risk treatment plansImproved compliance posture and stronger organizational security maturity
- PROFI Engineering Systems AGPrincipal Consultant & Deputy Business Unit Manager – Security SolutionsCONSULTING AND AUDITSJanuary 2019 - January 2025 (6 years)GermanyLed the development and expansion of the Security Solutions business unit and the Information Security Consulting practice.Key responsibilitiesBuilt and scaled the Information Security Consulting service portfolioLed interdisciplinary consulting teams from presales through project deliveryManaged complex client engagements across multiple industriesDelivered ISMS implementations and security transformation programsSupported compliance and audit initiatives including ISO 27001, BSI IT-Grundschutz, KRITIS, PCI DSS, TISAX and DSGVODeveloped security policies, governance frameworks and operating modelsAdvised clients on information security strategy, architecture and risk managementLed workshops, management briefings and security awareness programsContributed to the development of Managed Security Services and SOC offeringsSupported recruiting, mentoring and capability development within the consulting teamAchievementsBuilt and expanded the Security Solutions business areaEstablished standardized delivery models and best practices for security consulting projects
- PROFI Engineering Systems AGPrincipal Consultant & Team Lead – Information SecurityCONSULTING AND AUDITSOctober 2017 - January 2025 (7 years and 3 months)Darmstadt, GermanyBuilt and established the Information Security Consulting practice and led consulting engagements across multiple industries.Key responsibilitiesDeveloped and expanded the Information Security Consulting service portfolioLed and mentored the Information Security consulting teamManaged complex consulting projects from presales through deliveryImplemented Information Security Management Systems (ISMS)Supported security and compliance initiatives including ISO 27001, BSI IT-Grundschutz, KRITIS, PCI DSS, VdS 3473 and GDPRDesigned security policies, governance frameworks and operational proceduresAdvised clients on information security strategy, architecture and risk managementConducted security workshops, management briefings and awareness programsSupported the expansion of managed security services
Recommendations
Be the first to recommend Andreas
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Electrical EngineeringTechnische Hochschule Nürnberg Georg Simon Ohm2007
Certifications
- ISMS Officer – ISO 27001VOREST AG2021
- ITIL v3 FoundationEXIN2012