You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Xavier ArmendarizXA

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Xavier

I help public and private organizations strengthen their IT Governance, improve their Information Security, and ensure regulatory compliance (ISO 27001, ISO 22301, ISO 9001), through practical approaches to risk management, information security management, business continuity, and service management.

I have experience as CISO, IT Director, IT General Coordinator, and GRC Consultant, leading strategic projects in high-level institutions, combining executive vision with technical execution.

I specialize in projects such as:
- Implementation and audit of management systems (ISO 27001, ISO 22301, ISO 9001)
- Risk management (ISO 31000, 27005, Magerit)
- IT Governance (COBIT, ITIL)
- Business continuity plans
- Enterprise architecture (TOGAF)
- Security master plans

My differential value lies in integrating strategy, compliance, and operation, with experience in both management and consulting, which allows me to accompany organizations from diagnosis to implementation.
  • Spanish

    Native or bilingual

  • English

    Conversational

Remote only
Primarily works remotely

Experience

  • Govertis
    Security & GRC Advisor
    November 2020 - Today (5 years and 7 months)
    Spain
    Consultant and Auditor of IT Security Regulations, IT Management Frameworks, IT Services. Information Security Audit: NIST CSF, ISO 27001, 27002, 27005, ISA62443, PART-IS. Business Continuity Project Management: ISO 22301, 22313 Risk Management: ISO31000, ISO27005, Magerit Development of Security Master Plan projects Enterprise Architecture: TOGAF as a Service Implementer: ISO 27001, ISO 22301, ISO 22313, ISO 9001.
  • Cooperativa de Ahorro y Crédito Politécnica Nacional
    Supervisory Board Member.
    BANKING AND INSURANCE
    January 2021 - December 2023 (2 years and 11 months)
    Quito, Ecuador
    Monitoring of Good Corporate Governance
    Follow-up of internal and external audits.
    Regulatory compliance governance
    Activities:
    Monitoring of Good Corporate Governance
    Follow-up of internal and external audits.
    Regulatory compliance governance
  • Servicio de Compras Públicas del Estado -SERCOP
    Director of Solutions Development (DDS)
    PUBLIC SECTOR
    June 2019 - October 2020 (1 year and 4 months)
    Quito, Ecuador
    Role: Plan, Evaluate, develop, and Control the required IT applications.
    Activities:
    • Manage the development of IT applications.
    • Manage the application architecture of current systems.
    • Apply development standards, methodologies, and frameworks for software.
    • Manage software application innovation within SERCOP.
    • Manage IT processes under ISO 9001 and ISO 37001
    • Elaboration of Terms of Reference for Enterprise Architecture and Microservices projects.

Recommendations

Be the first to recommend Xavier

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master in Management of Systems and Information Technologies
    Universidad de Las Américas
    2013
    Magister
  • Diploma in Project Administration
    Tecnológico de Monterrey
    2008
    Diplomado en Administración de Proyectos

Certifications

  • Chief Auditor ISO 22301:2019 Business Continuity Management
    BUREAU VERITAS BUSINESS SCHOOL
    2025
  • Certified ISO/IEC 27001:2022 Lead Auditor
    CertiProf
    2024

Skill set

Categories