Profileimage by BurakAdil Gucer Contracted Auditor, Contractor/Principal Auditor, CISA from Istanbul

Burak Adil Gucer

available

Last update: 07.04.2024

Contracted Auditor, Contractor/Principal Auditor, CISA

Company: Selbststaendig
Graduation: Elektrotechnik, B.Eng, TU
Hourly-/Daily rates: show
Languages: German (Full Professional) | English (Full Professional) | Turkish (Native or Bilingual)

Attachments

Zeugnis HCStarck Burak Gücer.pdf
Zeugnis-AUDI-20080305133334717.pdf
BG-CV-EN-2022.docx
9001 Cert.pdf
27701LA.pdf
BURAK GUCER 27001-2013LA.pdf
CISA.pdf
BG-CV-EN-2023_160323.pdf
SGS-AUDITLOG-20210628-0001_200423.pdf
BG-CV-EN-2023_200423.docx

Skills

ISO27001,
ISO27701,
ISO20000-1,
ISO22301,
GDPR,
BSI-Grundschutz,
TISAX,
Information Management,
Cloud,
Information Security,
Data Protection,
100-4 BCM,
CIS CSAT,
CMMC,
ITIL,
COBIT 2019,
Cyber Security,
PCI DSS, ,
ValIT,
Risk IT,
IT security

Project history

02/2000 - Present
Contracted Auditor
CFE Certification Ltd UK; T-Systems Germany; International Business Solutions Consulting Ltd (Auditing, taxes and law, 10-50 employees)

Main business services include, but not limited to
* Strategic IT and Business Alignment (Consultancy & Workshops)
* Business Analysis & IT Architecture (Consultancy & Workshops)
* Building & Optimizing ICT Organizations (Consultancy & Workshops)
* Process optimization (Consultancy & Workshops)
* Information Security (Consultancy, Audit and Workshops)
My job and responsibilities cover
* Building and maintaining advisory relationship with C-level and senior executives
* Overall P/L responsibility for the operations
* Demand Generation & Business Development for the services and partner products
* Program Management

05/2016 - 11/2019
Contractor/Principal Auditor
SGS AS (Auditing, taxes and law, 1000-5000 employees)

Since I am self-employed I worked at SGS Turkey as a contractor and held the
position Principal Auditor.
Our business unit was called "Certification and Business Enhancement" which
means we certify our clients that they are compliant with standards and we
consult them to enhance their business processes and organization in means of
Digital Transformation.
Leading Audits and holding seminars for the clients to transfer know-how
related with Information Security Management, Cyber Security, Risk Management,
Quality Management, Process Optimization and Business Continuity.
Serve as primary troubleshooter for technical, personnel, and audit related
issues.
Created new business opportunities by understanding the customer needs during
events, audits and seminars.
Since Part-Time Working model has been changed, I have resigned my contractor
position.

04/2010 - 05/2012
Managing Partner
Consulting Associates International, LLC International

The objective of Consulting Associates International LLC is to become a high calibre team of
consultants and auditors serving companies in fields such as
* Program & Project Management
* Risk and Business Impact Analysis
* Business Analysis and Process Optimization
* Business Continuity Planning
* Information Security and/or Quality Management Systems
* PCI DSS, Implementing Cobit, ITIL, ValIT and Risk IT
This company transformed itself to Gucer Auditing & Consulting recently.
My job and responsibilities covered
* Building and maintaining advisory relationship with C-level and senior executives
* Overall P/L responsibility for the operations
* Demand Generation
* Business Development

11/2007 - 03/2010
Chief Information Security Officer
H.C. Starck Group (Industry and mechanical engineering, 1000-5000 employees)

H.C. Strack group consist of several different business units: Metal and ceramic powder, fabricated
products, electronic chemicals and engineering parts.
* Senior executive leading all group-wide Information Security relevant topics such as
confidentiality, integrity and availability of assets.
* Deploying worldwide necessary staff to be responsible for IS-security and to establish IS-security
regulations in coordination with the global IS Security Community, which is also to be in the lead
of CISO.
* Oversee the network of IT security professionals & vendors, who safeguard the company's assets,
intellectual property & computer systems.
* Identify protection goals and objectives consistent with corporate strategic plan.
* Maintain relationship with local, state & federal law enforcement and other related government
agencies.
* Oversee the investigation of security breaches, assist with disciplinary & legal matters
associated with such breaches as necessary.
* Prepare & Conduct awareness programme

01/2001 - 10/2007
CISO
AUDI AG (Automotive and vehicle construction, >10.000 employees)

The Audi Group with the two brands Audi and Lamborghini is one of the most successful car
manufacturers in the premium segment and belongs to Volkswagen Group.
* Strategic alignment of information security with business strategy to support organizational
objectives
* Risk management by executing appropriate measures to manage and mitigate risks and reduce
potential impacts on information resources to an acceptable level
* Resource management by utilizing information security knowledge and infrastructure efficiently and
effectively
* Computer Emergency Response Team Leader
* Performance measurement by measuring, monitoring and reporting information security governance
metrics to ensure that organizational objectives are achieved
* Annual risk assessment and Quarterly Audits
* Prepare & Conduct awareness programme

01/2000 - 08/2001
Information Security Officer
Turkcell AS

As of December 31, 2008, with its 37 million subscribers, Turkcell is not only the leading operator
in Turkey, but is also the third biggest GSM operator in Europe in terms of subscriber numbers.
* I have developed and maintained the guidelines, standards and policies regarding system and
information ownership; information and data classification.
* Promoted the security and uninterrupted operation of computer-based application systems
* My main responsibilities were deriving security strategy from business needs and communicating
corporate wide, achieving security awareness by conducting group wide trainings for the employees
and Information security management in conformity with BS7799 Standard.

09/1998 - 08/2000
Sr. Project Manager & Supervisor
Vis AS (Internet and Information Technology, 250-500 employees)

Sales & project management responsibility especially for the security & network management products
and services.
* Established and managed the BU Consultancy by signing a partnership contract with Network
Associates Consultancy Group (McAfee).
* Managed projects such as Assessment and Improvement of IT Initiatives within Denizbank, Zorlu
Group, Telsim (Vodafone), Turkcell and Turk Telekom (AveA)

06/1992 - 08/2000
Cofounder & Shareholder
Simpleks AS (Other, 10-50 employees)

After having 5 years business experience I have founded together with my colleagues my own company
and became CEO. At the beginning me and my company were doing business in field of 3rd party support
& system integrator activities. After a short while I have initiated new business lines by
introducing new software & hardware. I have successfully established sales channels for CAD/CAE
tools like ESC Schematics and Racal-Redac. Besides we had direct sales to major accounts like Beko,
Teletas, etc. By adding products like Checkpoint, McAfee, etc. we have included the IT-Security
topics into our portfolio.
During the time period 1992 - 2000 I have been working together with Mr. Orhan Karadogan who was
representing Gartner in Turkey.

06/1992 - 06/1992
Senior System Engineer (Supervisor)
Baytur SA (Banks and financial services, 250-500 employees)

Baytur SA (Geneva) belongs to Cukurova Holding the 3rd biggest group in Turkey. I have been
supporting the internal clients in means of computer related problems.

06/1992 - 06/1992
Software Engineer (Team Leader)
Kavi Kablo AS (Industry and mechanical engineering, 250-500 employees)

KAVI is one of the biggest companies in Turkey producing cables and voltage regulators. In order to
optimize the inventory of the semi-products I have developed a customized ERP/CAM software to
support the manufacturing department.

Certifications

ISO27001:2022 Lead Auditor
2023
ISO 27701:2019 LEAD AUDITOR
2021
CISA
2009

Local Availability

Only available for remote work
Ich bin reisebereit bis zu 20%,
Remote bin ich ab sofort verfügbar - zeitliche Details nach Absprache
Profileimage by BurakAdil Gucer Contracted Auditor, Contractor/Principal Auditor, CISA from Istanbul Contracted Auditor, Contractor/Principal Auditor, CISA
Register