Andrzej Koper
Senior Risk & Resilience Consultant @Barnett Waddingham
Signup · Get unlimited contacts
WORK HISTORY
Senior Risk & Resilience Consultant @Barnett Waddingham
London, GB
EDUCATION
University of Kent @ Canterbury
BEng Hons, Communication Engineering
SKILLS
ABOUT ANDRZEJ KOPER
As an experienced Information Security Consultant and Manager with a strong foundation in Governance, Risk, and Compliance (GRC), I’ve built my career on integrity, accountability, and strategic thinking. I bring over a decade of experience advising and supporting organisations across multiple sectors, ensuring their security posture aligns with regulatory requirements and business objectives.I hold industry-recognised certifications, including CISM (renewed in 2024) and ISO/IEC 27001 Lead Auditor, and I’ve led and supported initiatives involving ISMS development, policy frameworks, risk assessments, third-party/vendor risk management, and internal audits. My approach is pragmatic: enabling organisations to manage risks without overcomplicating processes or losing sight of operational needs.My previous role at Willis Towers Watson allowed me to shape and mature information security controls and assurance practices at scale. Prior to that, I’ve contributed to both large enterprises and smaller businesses as a consultant, bridging the gap between technical teams and senior stakeholders. I’m fluent in using tools like Microsoft Excel and Word to create actionable, audit-ready documentation, risk registers, and reports that make sense to both auditors and business leaders.I’m especially passionate about third-party risk management—building clear, repeatable processes to assess and monitor vendor risk exposure, ensuring compliance with standards like ISO 27001, NIST CSF, and GDPR.I also bring project management skills and a background in business continuity, incident response, and internal governance, making me well-suited to roles that demand a holistic, risk-based mindset.I am open to remote, hybrid, or UK-based roles, particularly in GRC, Information Security Analyst/Officer, or Third-Party Risk Manager positions. I’m looking to contribute to an organisation that values security as a business enabler and fosters continuous improvement.If you’re seeking a calm, honest, and thorough professional who takes pride in clarity and structure—let’s connect.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.