Security · Risk · Compliance · Management systems

I run projects in information security, risk and compliance.

I bring more than 20 years of experience in technology, information security and project management. I take responsibility for organizing the work, coordinating stakeholders, preparing the documentation and delivering projects to their agreed goals.

  • MBA – Kozminski University
  • Over 20 years of experience
  • Leading information security and risk management projects
  • Delivering internal audits and management system implementations
  • Experience in large organizations and a practical, delivery-oriented approach
  • ISO 27001 • ISO 22301 • ISO 27017 • ISO 27018 • ISO 31000
Janusz Figurski — information security, risk and compliance project manager

Janusz Figurski

Information Security • Risk Management • Compliance
🏅 MBA
🏅 ISO 27001
🏅 ISO 22301
🏅 ISO 31000

About me

From engineer to manager of organizational and transformation projects.

I started my career as an engineer and technical specialist. I then led technical teams, ran product development, digital transformation and projects in information security and management systems for large organizations.

Today I run implementation projects in risk management, compliance and information security. I coordinate teams, prepare organizations for certification, implement risk management processes and deliver information security projects — from plan, through organizing the work, to handing the outcomes over for ongoing operation.

Experience gained at Siemens, Deutsche Telekom, Netia and GTS, among others. MBA from Kozminski University.

“A well-run project means less chaos, less risk and a concrete outcome handed over to the organization.”

Projects I run

Projects I run

I run implementation and organizational projects in information security, risk and compliance. I take responsibility for organizing the work, coordinating participants and delivering the project to its goal.

Most common types of projects I deliver:

01

Project: preparing the organization for ISO 27001

I run the project of preparing the organization for ISO 27001 certification — I organize the work, coordinate process owners, prepare project documentation and oversee the schedule.

02

Project: preparing for an audit or certification

I run the project of preparing the organization for an audit or certification: organization of the work, documentation, coordination of participants and oversight of the schedule until the project goal is achieved.

03

Project: updating and rolling out operational documentation

I run the project of turning existing documentation into working procedures — I organize the work of process owners, coordinate the rollout and oversee the launch of solutions in day-to-day operations.

04

Project: implementing the risk management process

I deliver the project of implementing the risk management process — from identification, through assessment, to monitoring and reporting. I take responsibility for delivering the project goal and handing the process over for ongoing operation.

05

Project: launching a security or compliance function

I run the project of launching an information security or compliance function in the organization — I prepare the structure, documentation, roles and reporting, and coordinate the rollout.

06

Project: organizing risk reporting to management

I deliver the project of organizing reporting on risks, actions and non-conformities — I coordinate the work of the teams and prepare a solution that supports management decisions.

07

Implementation of ISO 27001 / ISO 22301 / ISO 31000

I run projects implementing management systems aligned with ISO 27001, ISO 22301 or ISO 31000 — from design, through implementation, to handover for ongoing operation.

08

Interim project manager or reinforcement for the team

I take the role of project manager in the area of risk, compliance or information security — I take responsibility for organizing the work, coordinating stakeholders and delivering the project goal.

09

Project: integrating risk, compliance and security

I run the project of integrating business, regulatory and organizational requirements into a coherent management system — I coordinate participants and take responsibility for the project outcome.

If you're planning a project in any of the areas above — let's talk about delivering it.

Book a call

Engagement models

Project models — from a single implementation to running complex programmes.

I start every project by defining the goal and the scope. I then organize the work, coordinate participants and take responsibility for delivering the project outcome.

01Project

Project: preparation for an audit or certification

For organizations that need to bring their management area up to an audit or certification within a defined deadline.

Project scope includes:

  • defining the certification scope and project goal
  • assessing the organization's readiness
  • preparing project documentation
  • coordinating process owners and teams
  • overseeing the schedule
  • preparing the organization for the certification audit
  • participation in the audit and closing non-conformities

The project outcome is an organization ready for the audit or certification, with documentation in order and a team prepared to demonstrate compliance with the requirements.

02Project

Project manager for a management system implementation

For organizations implementing a management system aligned with ISO 27001, ISO 22301 or other standards.

Project scope includes:

  • defining the scope and goals of the implementation
  • planning the project and schedule
  • organizing the work of the project team
  • preparing the management system documentation
  • coordinating process owners
  • rolling processes out in day-to-day operations
  • handing the system over for ongoing operation

The project outcome is an implemented management system operating in the organization and a team ready to maintain and develop it further.

03Project

Project manager for risk and compliance management

For organizations launching or putting in order their risk and compliance management process.

Project scope includes:

  • designing the risk management process
  • launching risk identification and assessment
  • preparing risk and action registers
  • coordinating delivery of regulatory and contractual requirements
  • organizing internal audits
  • preparing reporting for management
  • coordinating activities between business, IT and security

The project outcome is a running risk and compliance management process, ready to be handed over for ongoing operation in the organization.

Not sure which project model to choose?

Let's start with a short conversation. Together we'll define the project goal, its scope and how to deliver it.

Book a call

FAQ

Frequently asked questions.

Didn't find your answer? Send a message — I'll reply personally.

Contact

Let's talk about your project.

If you're planning a project in risk management, compliance or information security — write or call. I respond within one business day.

By submitting the form, you consent to being contacted about your inquiry.