Interim Security Architect / CISO: product & supply-chain security, CI/CD hardening, ISO 27001, NIS2, DORA, EU AI Act. 36 yrs, ex-Ericsson R&D.
Aktualisiert am 26.08.2026
Profil
Freiberufler / Selbstständiger
Remote-Arbeit
Verfügbar ab: 26.08.2026
Verfügbar zu: 100%
davon vor Ort: 100%
IT-Sicherheitsarchitektur
Informationssicherheit
IT-Security
ISO 27001
NIS
Digital Operational Resilience Act
EU AI Act
GDPR
Threat Modeling
Incident Response
CI/CD Security
SBOM
Code signing
cloud security
zero trust
Rust
Python
Linux
Telecmmunications
Fintech
English
Muttersprache
Swedish
C1
Spanish
B1
German
Grundkenntnisse

Einsatzorte

Einsatzorte

Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

8 months
2026-01 - now

Founded an AI infrastructure and security studio

Founder & Principal Architect
Founder & Principal Architect
  • Founded an AI infrastructure and security studio; architect and lead across a portfolio of shipped products spanning generative AI, content provenance, and observability.
  • Architected a distributed security and observability platform (Rust) featuring cryptographic identity (Ed25519 / DID), tamper-evident append-only audit logging, and OpenTelemetry-compatible instrumentation.
  • Designed and shipped a content-provenance and authenticity verification tool implementing the C2PA standard, cryptographic attestation, and neural watermarking, operating fully offline.
  • Rapid 0-to-1 delivery: took multiple products from concept to shipped prototype and release, including a commercial generative-audio application and an autonomous broadcast system running continuously since 2025
Available upon request
6 years 8 months
2019-04 - 2025-11

product security global telecommunications and R&D product portfolio

Product Development Leader
Product Development Leader

  • Led product security across Ericsson's global telecommunications and R&D product portfolio, including two generativeAI products, embedding security into the product development lifecycle (shift-left).
  • Founded and led the Security Masters Network as Ericsson's first Security Champion: a company-wide security training and certification program with a scope of roughly 10,000 (about 10% of the 100,000-person global workforce). Directly built and led a network of 500 to 1,000 Security Masters, alongside Principals and peer Champions.
  • Orchestrated cross-functional collaboration across product management, product security, engineering, and operations to harden 5G and infrastructure product security posture.
  • Earlier scope in the role: senior security architecture across R&D IT environments, systems, network, and product architecture, incident handling, and root cause analysis

R&D IT Security Champion
Ericsson
3 years 11 months
2021-07 - 2025-05

Board-level information and technical security

Co-Founder & Board Director (Security Advisory)
Co-Founder & Board Director (Security Advisory)
  • Board-level information and technical security advisor for two early-stage companies, guiding security posture and technical direction alongside founders and engineering
6 years 4 months
2012-12 - 2019-03

led the data-privacy and compliance program and a technical forensic investigation

CISO / Chief Security Architect & Enterprise Architect (Consultant)
CISO / Chief Security Architect & Enterprise Architect (Consultant)
  • Brought in as senior security and enterprise architect across Scandinavian fintech, payments, and aviation, through HiQ's Information Security and Cashless Society practice.
  • SAS (Scandinavian Airlines): GDPR Project Manager and Enterprise Architect; led the data-privacy and compliance program and a technical forensic investigation across operational and business infrastructure, with architecture recommendations to cut cost and improve efficiency.
  • Swish: security consultant during the scale-up of Sweden's national real-time payment standard.
  • TishaPay: Chief Security Architect and Security Product Owner; owned the security model, policy, and product requirements for a high-growth fintech.
  • Ericsson (via HiQ): Subject Matter Expert and Co-Architect for DNS, Time Services, and IPv6 at the Global ICT Center (Bind9, Infoblox, NTP/PTP)
HiQ
1 year 8 months
2007-03 - 2008-10

Scaled IT and network operations

Director
Director
  • Scaled IT and network operations from a single five-agent office to coverage of nearly half the United States during hypergrowth; recruited, staffed, and led the IT and Network Operations teams

  • Drove Redfin com delivery to sub-25ms page loads for North American users; maintained continuity through multiple incidents, including a data center fire, with minimal downtime

Data Center Operations & IT
Redfin

Aus- und Weiterbildung

Aus- und Weiterbildung

1992?1995:
New Technologies in Communication
Temple University


Further Training and Certificates:

  • AI for Business Leaders, MIT Sloan School of Management
  • Product Security (Level 3) and Enterprise Security (Level 3), Certified
  • AI Security for Product Teams (Lakera)
  • Certified IPv6 (SAGE) CISSP
  • Certified Oracle Fabric Administration / Oracle Virtual Networking, Oracle University

Position

Position

  • Security & Infrastructure Architect
  • Product Security Leader

Kompetenzen

Kompetenzen

Top-Skills

IT-Sicherheitsarchitektur Informationssicherheit IT-Security ISO 27001 NIS Digital Operational Resilience Act EU AI Act GDPR Threat Modeling Incident Response CI/CD Security SBOM Code signing cloud security zero trust Rust Python Linux Telecmmunications Fintech

Produkte / Standards / Erfahrungen / Methoden

Profile:

  • Security and infrastructure architect with 36 years designing, prototyping, and securing foundational systems, repeatedly brought into the room on reputation to solve hard technical problems and hand off working solutions
  • Led product security across a global telecom portfolio at Ericsson and delivered security architecture for national payment and airline systems in Scandinavia
  • Strong 0-to-1 builder: takes ambiguous problems to working prototype fast
  • Adversarial security depth across three decades of offensive and defensive work
  • Comfortable leading from two-person tiger teams to a company-wide security program of roughly 10,000 within a 100,000-person global organization


Core strengths:

  • Architecture & Design: Security Architecture, Systems & Network Architecture, Cloud Architecture, Distributed Systems, Threat Modeling, Enterprise Architecture, 0-to-1 / MVP-to-PoC Prototyping
  • Security Leadership: Product Security, Application Security, DevSecOps, Shift-Left Security, Offensive & Defensive Security, Penetration Testing, Incident Response, Root Cause Analysis, CISO-level Risk Management, Security Program Leadership
  • Infrastructure: Data Center Operations, Network Architecture, DNS, IPv6, NTP/PTP, DWDM, CDN, High Availability, Disaster Recovery
  • Leadership: Technical Strategy, Team Building, Cross-functional Leadership, Board & Security Advisory, Mentoring, from small tiger teams to company-wide programs in a 100,000-person organization
  • Compliance: GDPR, ISO 9001, SAS-70, Statements of Compliance, Data Privacy
  • Prototyping toolset: Rust, Python, C/C++, JavaScript, Perl (rapid prototyping and architecture; cryptographic identity, provenance, and ML-driven security systems)

Einsatzorte

Einsatzorte

Deutschland, Schweiz, Österreich
möglich

Projekte

Projekte

8 months
2026-01 - now

Founded an AI infrastructure and security studio

Founder & Principal Architect
Founder & Principal Architect
  • Founded an AI infrastructure and security studio; architect and lead across a portfolio of shipped products spanning generative AI, content provenance, and observability.
  • Architected a distributed security and observability platform (Rust) featuring cryptographic identity (Ed25519 / DID), tamper-evident append-only audit logging, and OpenTelemetry-compatible instrumentation.
  • Designed and shipped a content-provenance and authenticity verification tool implementing the C2PA standard, cryptographic attestation, and neural watermarking, operating fully offline.
  • Rapid 0-to-1 delivery: took multiple products from concept to shipped prototype and release, including a commercial generative-audio application and an autonomous broadcast system running continuously since 2025
Available upon request
6 years 8 months
2019-04 - 2025-11

product security global telecommunications and R&D product portfolio

Product Development Leader
Product Development Leader

  • Led product security across Ericsson's global telecommunications and R&D product portfolio, including two generativeAI products, embedding security into the product development lifecycle (shift-left).
  • Founded and led the Security Masters Network as Ericsson's first Security Champion: a company-wide security training and certification program with a scope of roughly 10,000 (about 10% of the 100,000-person global workforce). Directly built and led a network of 500 to 1,000 Security Masters, alongside Principals and peer Champions.
  • Orchestrated cross-functional collaboration across product management, product security, engineering, and operations to harden 5G and infrastructure product security posture.
  • Earlier scope in the role: senior security architecture across R&D IT environments, systems, network, and product architecture, incident handling, and root cause analysis

R&D IT Security Champion
Ericsson
3 years 11 months
2021-07 - 2025-05

Board-level information and technical security

Co-Founder & Board Director (Security Advisory)
Co-Founder & Board Director (Security Advisory)
  • Board-level information and technical security advisor for two early-stage companies, guiding security posture and technical direction alongside founders and engineering
6 years 4 months
2012-12 - 2019-03

led the data-privacy and compliance program and a technical forensic investigation

CISO / Chief Security Architect & Enterprise Architect (Consultant)
CISO / Chief Security Architect & Enterprise Architect (Consultant)
  • Brought in as senior security and enterprise architect across Scandinavian fintech, payments, and aviation, through HiQ's Information Security and Cashless Society practice.
  • SAS (Scandinavian Airlines): GDPR Project Manager and Enterprise Architect; led the data-privacy and compliance program and a technical forensic investigation across operational and business infrastructure, with architecture recommendations to cut cost and improve efficiency.
  • Swish: security consultant during the scale-up of Sweden's national real-time payment standard.
  • TishaPay: Chief Security Architect and Security Product Owner; owned the security model, policy, and product requirements for a high-growth fintech.
  • Ericsson (via HiQ): Subject Matter Expert and Co-Architect for DNS, Time Services, and IPv6 at the Global ICT Center (Bind9, Infoblox, NTP/PTP)
HiQ
1 year 8 months
2007-03 - 2008-10

Scaled IT and network operations

Director
Director
  • Scaled IT and network operations from a single five-agent office to coverage of nearly half the United States during hypergrowth; recruited, staffed, and led the IT and Network Operations teams

  • Drove Redfin com delivery to sub-25ms page loads for North American users; maintained continuity through multiple incidents, including a data center fire, with minimal downtime

Data Center Operations & IT
Redfin

Aus- und Weiterbildung

Aus- und Weiterbildung

1992?1995:
New Technologies in Communication
Temple University


Further Training and Certificates:

  • AI for Business Leaders, MIT Sloan School of Management
  • Product Security (Level 3) and Enterprise Security (Level 3), Certified
  • AI Security for Product Teams (Lakera)
  • Certified IPv6 (SAGE) CISSP
  • Certified Oracle Fabric Administration / Oracle Virtual Networking, Oracle University

Position

Position

  • Security & Infrastructure Architect
  • Product Security Leader

Kompetenzen

Kompetenzen

Top-Skills

IT-Sicherheitsarchitektur Informationssicherheit IT-Security ISO 27001 NIS Digital Operational Resilience Act EU AI Act GDPR Threat Modeling Incident Response CI/CD Security SBOM Code signing cloud security zero trust Rust Python Linux Telecmmunications Fintech

Produkte / Standards / Erfahrungen / Methoden

Profile:

  • Security and infrastructure architect with 36 years designing, prototyping, and securing foundational systems, repeatedly brought into the room on reputation to solve hard technical problems and hand off working solutions
  • Led product security across a global telecom portfolio at Ericsson and delivered security architecture for national payment and airline systems in Scandinavia
  • Strong 0-to-1 builder: takes ambiguous problems to working prototype fast
  • Adversarial security depth across three decades of offensive and defensive work
  • Comfortable leading from two-person tiger teams to a company-wide security program of roughly 10,000 within a 100,000-person global organization


Core strengths:

  • Architecture & Design: Security Architecture, Systems & Network Architecture, Cloud Architecture, Distributed Systems, Threat Modeling, Enterprise Architecture, 0-to-1 / MVP-to-PoC Prototyping
  • Security Leadership: Product Security, Application Security, DevSecOps, Shift-Left Security, Offensive & Defensive Security, Penetration Testing, Incident Response, Root Cause Analysis, CISO-level Risk Management, Security Program Leadership
  • Infrastructure: Data Center Operations, Network Architecture, DNS, IPv6, NTP/PTP, DWDM, CDN, High Availability, Disaster Recovery
  • Leadership: Technical Strategy, Team Building, Cross-functional Leadership, Board & Security Advisory, Mentoring, from small tiger teams to company-wide programs in a 100,000-person organization
  • Compliance: GDPR, ISO 9001, SAS-70, Statements of Compliance, Data Privacy
  • Prototyping toolset: Rust, Python, C/C++, JavaScript, Perl (rapid prototyping and architecture; cryptographic identity, provenance, and ML-driven security systems)

Vertrauen Sie auf Randstad

Im Bereich Freelancing
Im Bereich Arbeitnehmerüberlassung / Personalvermittlung

Fragen?

Rufen Sie uns an +49 89 500316-300 oder schreiben Sie uns:

Das Freelancer-Portal

Direktester geht's nicht! Ganz einfach Freelancer finden und direkt Kontakt aufnehmen.