A client requires ISO 27001 or proof of security from us
Information security requirements are increasingly becoming a condition for cooperation. I help prepare the organization to meet client expectations and put security and compliance in order.
Security · Risk · Compliance · Management systems
I combine 20+ years of experience in technology, information security, risk management and management systems. I help put processes in order, reduce risk and build solutions that keep working after the project ends.

Janusz Figurski
Information Security • Risk Management • Compliance
🏅 MBA
🏅 ISO 27001
🏅 ISO 22301
🏅 ISO 31000
About me
For over 20 years I have worked at the intersection of technology, business and management. I started as an engineer and technical specialist. Later I was responsible for product development, digital transformation, information security and management systems in large organizations.
Today I help organizations build and maintain effective processes for managing risk, compliance and information security. I believe good solutions should above all be practical, understandable and something the organization can sustain on its own once the engagement ends.
Experience gained at Siemens, Deutsche Telekom, Netia and GTS, among others. MBA from Kozminski University.
“Less chaos, less risk, more peace of mind — that's the result of a well-organized company.”
When to reach out
You don't always need another project, a new system or an extra full-time hire. Sometimes all it takes is an experienced person who can help put things in order, set a direction and see the matter through to the end.
I most often support organizations in situations such as:
Information security requirements are increasingly becoming a condition for cooperation. I help prepare the organization to meet client expectations and put security and compliance in order.
An external audit, certification or client review should not be a stressful event. I help assess readiness, organize documentation and prepare the team for the audit.
Procedures exist, but nobody uses them. Registers are kept only for audits. I help turn documentation into a tool that supports the daily work of the organization.
A risk register shouldn't just be an Excel sheet. I help implement a practical approach to identifying, assessing and monitoring risks that supports running the organization.
Not every organization needs a full-time specialist. I can support the organization as an external manager responsible for selected areas of security, risk or compliance.
I help organize the reporting of risks, actions and non-conformities so that management receives the information they need to make decisions.
I support organizations both at the implementation stage and in later maintenance, helping the system grow alongside the organization.
Many organizations need experience and support only a few days a month. I offer a flexible cooperation model tailored to the needs and scale of the business.
I help connect business, regulatory and organizational requirements into a coherent system that supports company goals instead of generating extra bureaucracy.
If you recognize your organization in any of the examples above, it's probably worth a conversation.
Book a callExperience
Experience gained at Siemens, Deutsche Telekom, Netia and GTS — from engineer, through product development and digital transformation, to security and risk.
Engineer
Technology and technical solutions
Presales
Technical advisory for clients
Product Manager
Product and services development
Product Director
Strategy and product portfolio
Digital transformation
Organizational and process change
Security & risk
Management systems, audits, compliance
Engagement models
Every organization is at a different stage of development. That's why I offer both one-off support and long-term cooperation in the areas of risk, compliance and information security.
For organizations that want to understand their current maturity level and structure their next steps.
As part of the engagement I analyze:
The outcome is a practical action plan with priorities, recommended improvements and a roadmap of next steps. It's a good starting point for organizations that want to consciously plan further development.
For organizations that have or are implementing management systems and need regular support without creating another full-time role.
The scope of cooperation may include:
This model keeps the system in good shape all year round, not just before the audit.
For organizations that want to put risk, compliance and information security in order without building their own team.
Within an ongoing engagement I support the organization in areas such as:
It's a solution for organizations that need an experienced partner supporting the board and process owners in day-to-day risk and compliance management.
Let's start with a short conversation. Together we'll identify the organization's needs and choose a scope of support adequate to the scale of operations and current challenges.
FAQ
Didn't find your answer? Send a message — I'll reply personally.
Contact
If you'd like to put risk management, compliance or information security in order — get in touch. I respond within one business day.
Book an online meeting