SecureHaveNET
Insights on ISO/IEC 27001, TISAX, governance and security practices based on practical experience in industrial environments.
Read ArticlesConnecting standards, processes, and operational practice.
I support Governance, Risk & Compliance processes by aligning ISO/IEC 27001, TISAX, IATF 16949, and VDA 6.3 requirements with the realities of production environments, including IT and OT.
My focus is on the practical implementation of standards, ensuring that information security and compliance become an integral part of the organizational structure rather than just an audit-driven project.
0 years of experience
Click to see details
I deliver measurable business value through increased process transparency, tighter control over critical operations, and accelerated, informed risk mitigation.
Security as part of organizational architecture.
I combine quality, technical, and regulatory perspectives, creating solutions that support business decisions and operational stability.
With experience in highly regulated production environments, I focus on pragmatic, scalable solutions compliant with the automotive industry.
I treat security as an element of management systems, not just a control layer.
A brief description of the platform
A platform dedicated to cyber resilience, GRC, and information security management in industrial environments. Focused on practical implementation of ISMS, TISAX, and risk management in IT and OT, combining technical, process, and business perspectives.
All content on this website reflects my personal perspective and does not represent the views of any organization I am connected with.
A practical look at GRC and industrial cybersecurity.
ISO
Is ISO/IEC 27001 treated as just a documentation project in companies?
Read more →
TISAX
How to prepare an organization for assessment without operational disruption.
Read more →
GRC
A comprehensive introduction to the GRC model, its role in organizations, and integration with business processes.
Read more →If you want to discuss Governance, TISAX, ISO 27001, or OT resilience – feel free to reach out.
I usually respond within 24–48 hours.
Last updated: 01.03.2026
The data controller is Andrzej Dudek, owner of this website.
The site may collect the following data:
Personal data is processed for the following purposes:
The legal basis for processing personal data is:
Personal data is not shared with third parties unless:
Data is stored only as long as necessary to achieve the purposes described above.
Users have the right to:
The site may use cookies to improve functionality and analyze statistics.
Appropriate technical and organizational measures are applied to protect personal data.
For personal data inquiries, contact: andrzej.dudek@securehavenet.ovh
Selected traffic metrics based on Google Analytics data.