Project: preparing the organization for ISO 27001
I run the project of preparing the organization for ISO 27001 certification — I organize the work, coordinate process owners, prepare project documentation and oversee the schedule.
Security · Risk · Compliance · Management systems
I bring more than 20 years of experience in technology, information security and project management. I take responsibility for organizing the work, coordinating stakeholders, preparing the documentation and delivering projects to their agreed goals.

Janusz Figurski
Information Security • Risk Management • Compliance
🏅 MBA
🏅 ISO 27001
🏅 ISO 22301
🏅 ISO 31000
About me
I started my career as an engineer and technical specialist. I then led technical teams, ran product development, digital transformation and projects in information security and management systems for large organizations.
Today I run implementation projects in risk management, compliance and information security. I coordinate teams, prepare organizations for certification, implement risk management processes and deliver information security projects — from plan, through organizing the work, to handing the outcomes over for ongoing operation.
Experience gained at Siemens, Deutsche Telekom, Netia and GTS, among others. MBA from Kozminski University.
“A well-run project means less chaos, less risk and a concrete outcome handed over to the organization.”
Projects I run
I run implementation and organizational projects in information security, risk and compliance. I take responsibility for organizing the work, coordinating participants and delivering the project to its goal.
Most common types of projects I deliver:
I run the project of preparing the organization for ISO 27001 certification — I organize the work, coordinate process owners, prepare project documentation and oversee the schedule.
I run the project of preparing the organization for an audit or certification: organization of the work, documentation, coordination of participants and oversight of the schedule until the project goal is achieved.
I run the project of turning existing documentation into working procedures — I organize the work of process owners, coordinate the rollout and oversee the launch of solutions in day-to-day operations.
I deliver the project of implementing the risk management process — from identification, through assessment, to monitoring and reporting. I take responsibility for delivering the project goal and handing the process over for ongoing operation.
I run the project of launching an information security or compliance function in the organization — I prepare the structure, documentation, roles and reporting, and coordinate the rollout.
I deliver the project of organizing reporting on risks, actions and non-conformities — I coordinate the work of the teams and prepare a solution that supports management decisions.
I run projects implementing management systems aligned with ISO 27001, ISO 22301 or ISO 31000 — from design, through implementation, to handover for ongoing operation.
I take the role of project manager in the area of risk, compliance or information security — I take responsibility for organizing the work, coordinating stakeholders and delivering the project goal.
I run the project of integrating business, regulatory and organizational requirements into a coherent management system — I coordinate participants and take responsibility for the project outcome.
If you're planning a project in any of the areas above — let's talk about delivering it.
Book a callEngagement models
I start every project by defining the goal and the scope. I then organize the work, coordinate participants and take responsibility for delivering the project outcome.
For organizations that need to bring their management area up to an audit or certification within a defined deadline.
Project scope includes:
The project outcome is an organization ready for the audit or certification, with documentation in order and a team prepared to demonstrate compliance with the requirements.
For organizations implementing a management system aligned with ISO 27001, ISO 22301 or other standards.
Project scope includes:
The project outcome is an implemented management system operating in the organization and a team ready to maintain and develop it further.
For organizations launching or putting in order their risk and compliance management process.
Project scope includes:
The project outcome is a running risk and compliance management process, ready to be handed over for ongoing operation in the organization.
Let's start with a short conversation. Together we'll define the project goal, its scope and how to deliver it.
FAQ
Didn't find your answer? Send a message — I'll reply personally.
Contact
If you're planning a project in risk management, compliance or information security — write or call. I respond within one business day.