Executive snapshot
- Experience: 16 Jahre
- Seniority: Senior
- Work mode: Nicht angegeben
- Availability: Verfügbar ab 01. August 2026
- Region: Deutschland / EU
- Focus: Energy, Regulated Markets, Cloud Environments, IT Infrastructure
At a glance
Profile ID
DP-18275
Role
Technical Profile
Seniority
Senior
Experience
16 Jahre
Work mode
Nicht angegeben
Availability
Verfügbar ab 01. August 2026
Region
Deutschland / EU
Languages
German: C2, English: C2
Engagement models
Festanstellung
Indicative rate
Nicht angegeben
Short profile
Experienced IT Security Manager and GRC Leader with 16 years of experience in delivering enterprise security, risk, and compliance programs in globally regulated markets. Expertise in leading GRC programs, implementing ISO 27001/27701 control frameworks, managing SIEM-based monitoring programs, and vulnerability lifecycle management. Responsible for ISMS implementation from policy to audit completion, as well as leading IT security projects in cloud and infrastructure environments. Proficient in developing security concepts and policies, and supporting ISO 27001 and TISAX compliance.
Focus (domains)
EnergyRegulated MarketsCloud EnvironmentsIT InfrastructureSecurityManagement
Core skills
GRCInformation SecurityEnterprise SecurityRisk ManagementCompliance ProgramsISO 27001ISO 27701SIEM-based MonitoringVulnerability ManagementISMS ImplementationIncident ResponseEndpoint SecurityDLPCloud SecurityThird-Party Risk ManagementSecurity ConceptsTISAX ComplianceStakeholder Management
Tools & technologies
SIEMCybersecuritySecurity
Track record & project highlights
Leading GRC programs across 170+ accounts in 5 regulated markets; Implementing ISO 27001/27701 control frameworks; Managing SIEM-based monitoring programs; Vulnerability lifecycle management; Leading ISMS implementation from policy to audit completion; Leading IT security projects in cloud and infrastructure environments; Developing security concepts and policies; Supporting ISO 27001 and TISAX compliance; Coordinating with external service providers; Executing incident response processes.