
Closed
Posted
I need a security specialist to help me lock down the personal data we hold. At the moment information can be viewed too broadly; my goal is to make sure that only properly-authorised staff ever see it, and that every access attempt is recorded and auditable. Here is what I’m after: • Map the data flows and identify every location where personal information is stored or processed. • Design and implement role-based access controls so the system automatically limits visibility to authorised personnel only. • Integrate strong authentication (MFA preferred) and session management that times out inactive users. • Set up detailed audit logging and alerting so I can review who accessed what, when, and from where. • Provide concise documentation and a hand-over session so my team understands how to maintain the controls. I’m open to whichever stack you feel is best—whether that’s Active Directory/LDAP, Azure AD, AWS IAM, custom RBAC in a web app, or another proven solution—provided it keeps the data protected and is straightforward for my team to administer. If you have experience aligning controls with GDPR, CCPA, or similar privacy requirements, please highlight it. Deliverables are accepted once I can run a simple test user through the system and confirm that unauthorised accounts receive no data, logs reflect every attempt, and the documentation clearly explains how to add or revoke access. Let me know your proposed approach, estimated timeframe, and any questions you need answered before you start.
Project ID: 40362271
3 proposals
Remote project
Active 8 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
3 freelancers are bidding on average $25 USD/hour for this job

As a seasoned Network, Cybersecurity and System Engineer with over 10 years of experience, I am confident in my ability to address your security concerns and make your personal data access control impenetrable. I have a strong track record working with both small and enterprise-level companies in planning, designing, and implementing secure network infrastructures. With various industry qualifications under my belt, including Cisco, Fortinet, Palo Alto, among others, I always design solutions grounded in best practices. For your project, I intend to use my knowledge in network administration (routing, switching, VPNs), security (Cisco ASA, Fortinet , Palo Alto - to name a few), and system administration (both Microsoft and Linux servers) to their full extent. Additionally, my expertise in Active Directory/LDAP & AWS IAM gives me the flexibility to choose and utilize the best stack for you - whether that's aligning controls with GDPR or CCPA or any other privacy requirements. To ensure user-friendliness and straightforward administration by your own team post-delivery, I commit myself to creating comprehensive documentation and facilitating a knowledge handover session. My quick response rate and 24-hour availability will also be at your disposal throughout the project timeline for any inquiries or clarifications required. Allow me the chance to demonstrate why I am the ideal choice for securing your personal data.
$20 USD in 40 days
5.4
5.4

I will approach this engagement by combining data protection principles with practical access control implementation. First, I will map all data flows and identify where personal data is stored, processed, and exposed—establishing a clear inventory and risk baseline. Based on this, I will design and implement role-based access controls (RBAC) to ensure strict “need-to-know” access across all systems. I will integrate strong authentication (MFA) and secure session management (timeouts, token controls), and implement centralized logging to capture every access attempt—who accessed what, when, and from where—with alerting for suspicious activity. All controls will be aligned with General Data Protection Regulation and best practices from ISO 27001 and NIST Cybersecurity Framework, ensuring both compliance and real security effectiveness. Deliverables will include: Clear data flow and access control architecture Implemented RBAC + MFA + session controls Full audit logging and monitoring setup Practical documentation for administration and access lifecycle Handover session and validation testing with real user scenarios With 10+ years in IT audit and security, and certifications including CISA, CRISC, and ISO/IEC 27001:2022 Lead Auditor, I ensure controls are not only implemented—but are auditable, compliant, and sustainable.
$25 USD in 40 days
2.0
2.0

Hourly Rate: $15 2. Headline: Data Entry | Commerce Student 3. Skills: Data Entry, Excel 4. Summary: Fast data entry specialist from India 5. PINK "Save Changes" button
$30 USD in 30 days
0.0
0.0

Nairobi, Kenya
Member since Apr 10, 2026
$10-300 USD
$30-250 USD
₹12500-37500 INR
$30-250 USD
$30-250 USD
$30-250 USD
₹250000-500000 INR
₹1500-12500 INR
$30-250 USD
₹12500-37500 INR
$30-250 USD
₹12500-37500 INR
$250-750 USD
£20-250 GBP
$250-750 USD
$10-30 USD
₹600-601 INR
$250-750 USD
$30-250 USD
$750-1500 USD