Ivan Kalinić
Senior Information Security Consultant at Diverto LLC- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
-
English Full professional proficiency
-
Croatian Native or bilingual proficiency
-
German Elementary proficiency
Topline Score
Bio
Alen Delic
Ivan has a great ability to handle complex tasks and work with challenging clients. He understands tasks easily and adopts quickly to challenges and new ideas. Even more, he easily adopts to other peoples needs and is a great supporter. It is always a pleasure to work on information security projects with him and he is definitely a great asset within our team at Diverto.
Alen Delic
Ivan has a great ability to handle complex tasks and work with challenging clients. He understands tasks easily and adopts quickly to challenges and new ideas. Even more, he easily adopts to other peoples needs and is a great supporter. It is always a pleasure to work on information security projects with him and he is definitely a great asset within our team at Diverto.
Alen Delic
Ivan has a great ability to handle complex tasks and work with challenging clients. He understands tasks easily and adopts quickly to challenges and new ideas. Even more, he easily adopts to other peoples needs and is a great supporter. It is always a pleasure to work on information security projects with him and he is definitely a great asset within our team at Diverto.
Alen Delic
Ivan has a great ability to handle complex tasks and work with challenging clients. He understands tasks easily and adopts quickly to challenges and new ideas. Even more, he easily adopts to other peoples needs and is a great supporter. It is always a pleasure to work on information security projects with him and he is definitely a great asset within our team at Diverto.
Credentials
-
IRCA ISO 9001:2015 Lead Auditor (Quality Management Systems)
Bureau Veritas (Professional Certification)Nov, 2017- Nov, 2024 -
ISO/IEC 27001:2013 & ISO/IEC 20000-1:2011 Lead Auditor
Bureau Veritas (Professional Certification)Jun, 2017- Nov, 2024 -
ICE Silver Training
NovartisDec, 2014- Nov, 2024 -
ITIL® Foundation Certificate in IT Service Management
AXELOS Global Best PracticeNov, 2014- Nov, 2024 -
Project Management Professional (PMP)®
Project Management InstituteSep, 2012- Nov, 2024 -
Certified Information Systems Security Professional (CISSP)®
(ISC)²Sep, 2014- Nov, 2024 -
Information Systems Security Management Professional (ISSMP)®
(ISC)²May, 2015- Nov, 2024 -
Certified Data Privacy Solutions Engineer (CDPSE)
ISACAAug, 2020- Nov, 2024 -
Certified Cloud Security Professional (CCSP)
(ISC)²Nov, 2019- Nov, 2024 -
Oracle Public Sector Specialist
Oracle
Experience
-
Diverto
-
Croatia
-
Information Technology & Services
-
1 - 100 Employee
-
Senior Information Security Consultant
-
Jan 2019 - Present
⌨ Diverto is a company with the sole purpose of keeping companies, institutions and agencies safe in an information-centric world. Our services are tailored to our clients’ needs and requirements and are aimed to provide maximum protection to your business from data breaches, damaged credibility, and disruption of services.✪ Made a move toward information & cyber security exclusively where I could put my technical expertise, management, consulting, and auditing experience to work in order to provide consulting and remediation support services to clients.✹ Acting as a subject matter expert and trusted advisor, providing expert assessment and remediation advice to various clients✹ Performing risk assessments using tailored risk treatment options✹ Managing information security projects, creating project plans, milestones, deliverables, and assisting clients throughout the project lifecycle✹Consulting and helping clients with development of security strategies, policies and procedures relevant to the organization’s culture, objectives, and risk tolerance✹ Performing activities to support clients security and privacy programs, such as impact assessments, data and information inventory, dataflow mapping, review of contractual clauses, third party review, and assistance in development of policies and practices used to support programs aligned with current regulation✹ Consulting clients and providing expert advice to help them understand their regulatory and compliance requirements, security best practices, assessment findings, and introducing practical remediation options✹ Providing presales and scoping assistance as needed
-
-
-
-
Expert Court Witness for ICT, IP & QMS
-
Jun 2021 - Present
Appointed as an Expert Court Witness in the field of Information and Communication Technologies, Intellectual Property and Quality Management Systems.Being Expert Court Witness includes following duties:✹ Gather & examine evidence✹ Perform computer forensics✹ Analyze, evaluate evidence & facts✹ Document/report & present expert findings✹ Partake in the Court proceedings & provide the Court with a factually accurate and independent opinion Appointed as an Expert Court Witness in the field of Information and Communication Technologies, Intellectual Property and Quality Management Systems.Being Expert Court Witness includes following duties:✹ Gather & examine evidence✹ Perform computer forensics✹ Analyze, evaluate evidence & facts✹ Document/report & present expert findings✹ Partake in the Court proceedings & provide the Court with a factually accurate and independent opinion
-
-
-
-
Expert Court Witness for ICT, IP & QMS
-
Feb 2018 - May 2021
Appointed as an Expert Court Witness in the field of Information and Communication Technologies, Intellectual Property and Quality Management Systems.Being Expert Court Witness includes following duties:✹ Gather & examine evidence✹ Perform computer forensics ✹ Analyze, evaluate evidence & facts ✹ Document/report & present expert findings✹ Partake in the Court proceedings & provide the Court with a factually accurate and independent opinion Appointed as an Expert Court Witness in the field of Information and Communication Technologies, Intellectual Property and Quality Management Systems.Being Expert Court Witness includes following duties:✹ Gather & examine evidence✹ Perform computer forensics ✹ Analyze, evaluate evidence & facts ✹ Document/report & present expert findings✹ Partake in the Court proceedings & provide the Court with a factually accurate and independent opinion
-
-
-
IN2 Group
-
Croatia
-
IT Services and IT Consulting
-
200 - 300 Employee
-
Head of Quality Management (GRC)/Consultant for quality and security MS's and BPI
-
Oct 2016 - Jan 2019
✪ Appointed as Head of Quality Management and consultant for quality and security management systems and business process improvement. As a Head of QM for the whole IN2 group, my main responsibility was to establish and maintain desired level of quality and security in IN2’s internal operations, services and products. External:✹ Multiple privacy and security consulting projects in corporate, health and public sector Security and GDPR workshopsProvide pragmatic, quality and timely ad hoc advice on all quality, security and privacy mattersScoping GDPR requirements, performing DPIAs, security assessments and executing risk assessmentsInternal:✹ Establish, apply and maintain business processes necessary for quality and security management✹ Develop, establish, manage and perform all internal GDPR compliance activities for whole IN2 group✹ Support organizational transformation & integration (due to the change in ownership) through business processes alignment ✹ Consult and provide support in applying business processes through development, documentation and monitoring of policies, business rules, metrics and SOPs✹ Consult and provide targeted trainings, identify and consult on key problems that affect business results✹ Plan and execute internal audits, obtain executive approvals, liaise with management board✹ Management board reporting on management system efficiency, risk management activities, process performance, conformity of products and services, improvement opportunities, etc.✹ Identification, planning and implementation of key projects to improve existing processes✹ Maintain relationships with external accreditation institutions
-
-
-
-
Liquidator & Managing Director
-
Oct 2016 - Apr 2017
✪ Changes in stakeholder structure affected company’s strategy direction and its ability to achieve intended results. Due to this change, owners made business decision to start liquidation process. Appointed as company liquidator in order to bring the company’s affairs to an end.Being company’s liquidator included following duties:✹ Taking care of company’s solvency, cash flow, P&L and other financials✹ Monitor active contracts and ensure timely collection✹ Negotiate contract cancellation terms and reimbursements✹ Contacting and receiving claims from the creditors, making payments to creditors✹ Reporting back to owners about the company’s affairs✹ After successful completion of the liquidation process, execution of company’s de-registration
-
-
Managing Director
-
Apr 2016 - Oct 2016
✪ Became MD of a new company LVP Consulting ltd and took managing responsibilities for company development.Activities:✹ Represent company, both locally and internationally, toward third parties, government bodies and other institutions.✹ Plan, prepare, entice and control of various development programmes.✹ Plan and manage company resources.✹ Providing consultancy services in information security, quality, compliance, governance and audit.✹ Take part in information systems development, implementation and maintenance.✹ Providing project coordination and management services.✹ Tracking and reporting on projects/company development.
-
-
-
Novartis
-
Switzerland
-
Pharmaceutical Manufacturing
-
700 & Above Employee
-
Project Quality Manager
-
Nov 2014 - Dec 2015
✪ Contracted as an experienced Project Manager with strong background and aspirations towards Information Governance and IT Security in order to maintain and improve existing process maturity levels. Utilizing numerous internal information management frameworks, industry best practices and widely recognized risk and governance standards to ensure projects are fully compliant with built-in security.✹ Act as an IGM/GRC Manager delegate and manage offshore PQM pool.✹ Act as a point of contact for quality, risk, compliance and project management topics and provide various trainings. ✹ Information inventory management (identification of the classification of the information types). ✹ Information and IT Risk Management, guidance and support in the remediation after activities that identified a control gap. Track and manage information risks on projects as well as on CoE level.✹ Evaluation and management of IT security related risks and business risk acceptance.✹ Drive simplification and efficiency initiatives for compliance processes. Supports the creation and reviews of relevant IT or business function SOPs to ensure they meet IGM requirements. ✹ Ensure that projects are managed and run according to Novartis ICE Project Methodology and to the applicable IGM policy framework, IT Security baselines, AUBs’, procedures and other baselines.✹ Ensures that the quality of processes and deliverables of projects continuously meet the specified corporate and regulatory requirements.✹ Proactively work with respective IT Leadership Team and/or Business stakeholders to implement Global IGM/GRC strategy standards and policies for Information Governance and Management.✹ Supporting projects in Commercial IT and Financial services – Commercial: global and local implementations of Digital and Mobile projects; Financial: SOX/NFCM relevant projects.
-
-
-
IGEA
-
IT Services and IT Consulting
-
1 - 100 Employee
-
Project Manager
-
Apr 2011 - Nov 2014
⌨ IGEA d.o.o. is a privately owned company established in 1990. The company´s main activity is development, implementation and maintenance of information systems on various hardware platforms. Specialized in on demand software solutions development and in development and implementation of large and complex IT systems.✪ Advanced to project manager position based on quality and on-time result achievements. Managing large projects and participate in other projects in various management roles such as documentation manager (ISO 15910 and ISO 18019), service manager (ITIL and ISO 20000), software quality auditor (ISO 9126), etc. Among aforementioned roles job position included provision of various internal and external consultancy services and pre-sales/bid management for new projects which are financed by World Bank or from EU funds, especially for Instruments for Pre-Accession assistance (IPA) funds.✹ Obtained security clearance for Republic of Croatia Ministry of Internal Affairs
-
-
Software Project Leader/Software Developer
-
Nov 2007 - Apr 2011
⌨ IGEA d.o.o. is a privately owned company established in 1990. The company´s main activity is development, implementation and maintenance of information systems on various hardware platforms. Specialized in on demand software solutions development and in development and implementation of large and complex IT systems.✪ Recruited to participate in engineering and leading software development projects, coordinate developers and raise quality of delivered solutions. Trained and oriented new team members, organized and coordinated work schedules and meetings. Organized and implemented Service Desk support unit in accordance with ITIL guidelines. ✹ Leading technical development of IT systems✹ Developing Java Enterprise applications, Team Developer/Centura/Gupta applications, etc.✹ Administering and developing Serena Business Mashup applications✹ Implementation and maintenance of ITIL Service Desk business department
-
-
-
Wiener osiguranje Vienna Insurance Group
-
Bosnia and Herzegovina
-
Insurance
-
1 - 100 Employee
-
IT Internal Auditor
-
Apr 2007 - Nov 2007
⌨ Kvarner Vienna Insurance Group is a member of one of the biggest Austrian and European concerns - VIENNA INSURANCE GROUP offering all types of life and non life insurance ✪ Recruited to plan, manage and conduct IT audits for the whole group in Croatia which consisted of three insurance companies. Performed combined process audits on local group level (Croatia) and on international level in form of joint audit (whole Europe). Conducted IT audits and compliance audits (ISO 27001 & COBIT), reported audit results to Steering Committees and boards of directors, consulted business departments on various issues, supervised various service acquisitions, in charge for communication with external auditors, etc. Very well versed with translation and application of law and regulatory obligations, with corporate policies and procedures and with governance practices and its application. ✹ Participated on audit activities planning for yearly and quarterly periods✹ Fulfilled audit plans and made several additional audits demanded by group supervisory board and Croatian Financial Services Supervisory Agency (HANFA)✹ Participated on Joint Audits for the whole VIG group✹ Consulted business departments on matters involving audit recommendations implementation, alignment to laws and best practices✹ Developed interfaces for collection of raw audit data for continuous analysis✹ Developed in-house software for audit process support and reporting (planning module, audit module, report module, notification module)
-
-
Education
-
University of Zagreb, Faculty of Organization and Informatics
Postgraduate University Specialist (univ.spec.inf.), Information Systems Security and Auditing Management -
University of Zagreb, Faculty of Organization and Informatics
Master of Informatics, Information Systems