Information Security, IT Risk, and Compliance Management
Aktualisiert am 25.04.2025
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 01.05.2025
Verfügbar zu: 100%
davon vor Ort: 25%
Informationssicherheit
Risikomanagement
IT-Compliance
ISO 27001
Outsourcing
Transition Management
Vertragsmanagement
IT-Governance
CISSP
IT-Betrieb
Managementberatung
Service-Level-Agreement
Vulnerability
Teamleading
IT-Sicherheitsmanagement
IT-Security
IT-Sicherheitsarchitektur
IT-Sicherheitsnormen

Einsatzorte

Einsatzorte

Sankt Georgen im Schwarzwald (+300km)
Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

6 years 11 months
2017-07 - 2024-05

Service agreements with Allianz Technology for provisioning and managing the virtualized IT environment for over 100,000 end users of Allianz Business Units world-wide.

Allianz Virtual Client (AVC) and Allianz Worldwide Partners (AWP) Account Security Officer / Allianz Account Security Team Lead Informationssicherheit Teamleading Managementberatung ...
Allianz Virtual Client (AVC) and Allianz Worldwide Partners (AWP) Account Security Officer / Allianz Account Security Team Lead

  • Developing and managing the AVC information security management contractual framework in alignment with the ISO 27001 standard
  • Developing and implementing the AVC ISO 27001 compliant Information Security Management System (ISMS) and global account security plan in alignment with the Allianz Group information security and AVC contractual framework
  • Providing the contracted security services
  • Introducing, establishing, and chairing the AVC security governance board with Allianz for all aspects of information security, IT risk, and data privacy management within the AVC service agreements
  • Coordinating and facilitating collaboration with Allianz stakeholders from information security, compliance assurance, and contract management across Europe, America, and Asia-Pacific
  • Continuously assessing and ensuring compliance of DXC service provisioning with the contractual information security and data privacy obligations
  • Conducting annual security awareness campaigns for all DXC account personnel
  • Providing security and contractual advice to DXC bid teams and account senior leadership team for new RfPs from Allianz and AVC service prolongations
  • Leading the global AVC security team with security engineers and security managers from Germany, Spain, Bulgaria, India, and Philippines

N/A
Informationssicherheit Teamleading Managementberatung Vertragsmanagement IT-Governance IT-Compliance DSGVO
Allianz
Munich
1 year 7 months
2016-01 - 2017-07

IT Service Agreement on Workplace, Security, and Service Desk services for Allianz Global Assistance

Security Transformation Lead / Program Manager Security Konzepte Managed Security Services Projektmanagement/Projektleitung ...
Security Transformation Lead / Program Manager

Baseline Security Assessment

Tailoring design of contracted security services to accommodate to client requirements

Integrating contracted security services' infrastructure, software, and management processes into the client?s data centers, networks, and IT service management framework

Guiding technical architects and subject matter experts

Project management
N/A
Security Konzepte Managed Security Services Projektmanagement/Projektleitung Teamleading Anforderungsanalyse IT Transformation
Allianz
Munich
7 months
2016-10 - 2017-04

Outsourcing of IT-Operations of ERGO data center infrastructure

Security Transition Lead / Program Manager Transition Management Vertragsmanagement Anforderungsanalyse ...
Security Transition Lead / Program Manager

  • Assessment of client security posture incl. security remediation plan
  • Development and documentation of security concept
  • Development and enforcement of security awareness and data privacy trainings
  • Knowledge transfer and hand-over of client Anti-Malware operations and management to remote DXC team in Asturias
  • Definition, development, and implementation of Security Key Performance Indicators (KPIs) and Security Reporting
  • Establishment of the security governance between ERGO and DXC 

N/A
Transition Management Vertragsmanagement Anforderungsanalyse Service-Level-Agreement IT-Governance Security Konzepte security awareness managed security services
ERGO
Düsseldorf
3 years 11 months
2012-08 - 2016-06

IT outsourcing of Bombardier Transportation

Global Account Security Manager Managed Security Services Endpoint Encryption Endpoint Protection ...
Global Account Security Manager

  • Representing DXC Cyber to the account on all matters of information security and compliance
  • Interpreting and adhering to contractual obligations with regards to information security, security service provisioning, compliance assurance, and audits
  • Reviewing and approving from a security point of view all provided solutions delivered to the customer
  • Defining, maintaining, and improving security processes and security metrics in collaboration with client IT and security managers
  • Providing Managed Security Services such as Security Information and Event Management (SIEM), Vulnerability Assessment, Technical Compliance, and Entitlement Reporting Services through an offshore account security team
  • Providing Network Intrusion Detection and Prevention and Managed Encryption Services through leveraged America-based Security Services team
  • Providing Disaster Recovery Services for the client?s core business applications
  • Instructing and overseeing security compliance of other service centers as they deliver to the customer, e.g., Anti-Malware Protection, Security Patching, Firewall Ruleset Management
  • Supporting the Service Delivery Executive on security service delivery and security operational matters, and advising the Account General Manager on security and compliance matters affecting the account
  • Meeting the contractually agreed security key performance indicators (KPIs)
  • Managing security incidents
  • Managing external security vendors, security hard- and software procurements, licenses, and vendor support
  • Leading and managing a global team with security engineers and security and compliance managers in Canada, India, the UK, and the US

RSA Envision Symantec Control Compliance Suite McAfee Foundstone McAfee VirusScan ePolicy Orchestrator McAfee Intrushield Checkpoint Full Disk Encryption
Managed Security Services Endpoint Encryption Endpoint Protection Informationssicherheit Sicherheitsmanagement Teamleading IT-Compliance Managementberatung Service-Level-Agreement
Bombardier Transportation
Berlin

Aus- und Weiterbildung

Aus- und Weiterbildung

13 years
2012-05 - now

Certified Information Systems Security Professional

CISSP, (ISC)2
CISSP
(ISC)2
15 years 5 months
2009-12 - now

Certified Information Security Manager

CISM, ISACA
CISM
ISACA
7 years 3 months
1983-10 - 1990-12

University Degree in Mathematics, Physics, and Computer Science

Diploma, University of Freibug im Breisgau (Germany)
Diploma
University of Freibug im Breisgau (Germany)

Position

Position

Senior Manager Account Delivery

Einsatzorte

Einsatzorte

Sankt Georgen im Schwarzwald (+300km)
Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

6 years 11 months
2017-07 - 2024-05

Service agreements with Allianz Technology for provisioning and managing the virtualized IT environment for over 100,000 end users of Allianz Business Units world-wide.

Allianz Virtual Client (AVC) and Allianz Worldwide Partners (AWP) Account Security Officer / Allianz Account Security Team Lead Informationssicherheit Teamleading Managementberatung ...
Allianz Virtual Client (AVC) and Allianz Worldwide Partners (AWP) Account Security Officer / Allianz Account Security Team Lead

  • Developing and managing the AVC information security management contractual framework in alignment with the ISO 27001 standard
  • Developing and implementing the AVC ISO 27001 compliant Information Security Management System (ISMS) and global account security plan in alignment with the Allianz Group information security and AVC contractual framework
  • Providing the contracted security services
  • Introducing, establishing, and chairing the AVC security governance board with Allianz for all aspects of information security, IT risk, and data privacy management within the AVC service agreements
  • Coordinating and facilitating collaboration with Allianz stakeholders from information security, compliance assurance, and contract management across Europe, America, and Asia-Pacific
  • Continuously assessing and ensuring compliance of DXC service provisioning with the contractual information security and data privacy obligations
  • Conducting annual security awareness campaigns for all DXC account personnel
  • Providing security and contractual advice to DXC bid teams and account senior leadership team for new RfPs from Allianz and AVC service prolongations
  • Leading the global AVC security team with security engineers and security managers from Germany, Spain, Bulgaria, India, and Philippines

N/A
Informationssicherheit Teamleading Managementberatung Vertragsmanagement IT-Governance IT-Compliance DSGVO
Allianz
Munich
1 year 7 months
2016-01 - 2017-07

IT Service Agreement on Workplace, Security, and Service Desk services for Allianz Global Assistance

Security Transformation Lead / Program Manager Security Konzepte Managed Security Services Projektmanagement/Projektleitung ...
Security Transformation Lead / Program Manager

Baseline Security Assessment

Tailoring design of contracted security services to accommodate to client requirements

Integrating contracted security services' infrastructure, software, and management processes into the client?s data centers, networks, and IT service management framework

Guiding technical architects and subject matter experts

Project management
N/A
Security Konzepte Managed Security Services Projektmanagement/Projektleitung Teamleading Anforderungsanalyse IT Transformation
Allianz
Munich
7 months
2016-10 - 2017-04

Outsourcing of IT-Operations of ERGO data center infrastructure

Security Transition Lead / Program Manager Transition Management Vertragsmanagement Anforderungsanalyse ...
Security Transition Lead / Program Manager

  • Assessment of client security posture incl. security remediation plan
  • Development and documentation of security concept
  • Development and enforcement of security awareness and data privacy trainings
  • Knowledge transfer and hand-over of client Anti-Malware operations and management to remote DXC team in Asturias
  • Definition, development, and implementation of Security Key Performance Indicators (KPIs) and Security Reporting
  • Establishment of the security governance between ERGO and DXC 

N/A
Transition Management Vertragsmanagement Anforderungsanalyse Service-Level-Agreement IT-Governance Security Konzepte security awareness managed security services
ERGO
Düsseldorf
3 years 11 months
2012-08 - 2016-06

IT outsourcing of Bombardier Transportation

Global Account Security Manager Managed Security Services Endpoint Encryption Endpoint Protection ...
Global Account Security Manager

  • Representing DXC Cyber to the account on all matters of information security and compliance
  • Interpreting and adhering to contractual obligations with regards to information security, security service provisioning, compliance assurance, and audits
  • Reviewing and approving from a security point of view all provided solutions delivered to the customer
  • Defining, maintaining, and improving security processes and security metrics in collaboration with client IT and security managers
  • Providing Managed Security Services such as Security Information and Event Management (SIEM), Vulnerability Assessment, Technical Compliance, and Entitlement Reporting Services through an offshore account security team
  • Providing Network Intrusion Detection and Prevention and Managed Encryption Services through leveraged America-based Security Services team
  • Providing Disaster Recovery Services for the client?s core business applications
  • Instructing and overseeing security compliance of other service centers as they deliver to the customer, e.g., Anti-Malware Protection, Security Patching, Firewall Ruleset Management
  • Supporting the Service Delivery Executive on security service delivery and security operational matters, and advising the Account General Manager on security and compliance matters affecting the account
  • Meeting the contractually agreed security key performance indicators (KPIs)
  • Managing security incidents
  • Managing external security vendors, security hard- and software procurements, licenses, and vendor support
  • Leading and managing a global team with security engineers and security and compliance managers in Canada, India, the UK, and the US

RSA Envision Symantec Control Compliance Suite McAfee Foundstone McAfee VirusScan ePolicy Orchestrator McAfee Intrushield Checkpoint Full Disk Encryption
Managed Security Services Endpoint Encryption Endpoint Protection Informationssicherheit Sicherheitsmanagement Teamleading IT-Compliance Managementberatung Service-Level-Agreement
Bombardier Transportation
Berlin

Aus- und Weiterbildung

Aus- und Weiterbildung

13 years
2012-05 - now

Certified Information Systems Security Professional

CISSP, (ISC)2
CISSP
(ISC)2
15 years 5 months
2009-12 - now

Certified Information Security Manager

CISM, ISACA
CISM
ISACA
7 years 3 months
1983-10 - 1990-12

University Degree in Mathematics, Physics, and Computer Science

Diploma, University of Freibug im Breisgau (Germany)
Diploma
University of Freibug im Breisgau (Germany)

Position

Position

Senior Manager Account Delivery

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.