Entwickler/IT Security Specialist
- Verfügbarkeit einsehen
- 1 Referenz
- auf Anfrage
- 69115 Heidelberg
- Weltweit
- de | en
- 26.03.2026
- Contract ready
Kurzvorstellung
Auszug Referenzen (1)
"Herr M. ist ein Top-Experte für IT-Sicherheit und Penetration Testing"
1/2015 – 9/2018
Tätigkeitsbeschreibung
Achieving and maintaining PCI/DSS Certification, Project Management incl. Planning & Scoping, Risk Management, Improve
Cybersecurity Maturity Level, Network & Infrastructure Penetration Testing, Mobile Penetration Testing, Web Application Penetration Testing, Incident Management & Log Analysis and Advicer.
Certified Ethical Hacker (CEH), Pci DSS
Geschäftsdaten
Qualifikationen
Projekt‐ & Berufserfahrung
10/2018 – 3/2021
TätigkeitsbeschreibungLead Mobile Security, Service Cloud, Customer Identity Management, Third party apps
Eingesetzte QualifikationenSalesforce.Com, Cyber Security, Security Operations Center (SOC), Sicherheit von Webanwendungen, Android Entwicklung, iOS Entwicklung, Mobile Application Development, Cloud (allg.), Cloud Computing
1/2015 – 9/2018
Tätigkeitsbeschreibung
Achieving and maintaining PCI/DSS Certification, Project Management incl. Planning & Scoping, Risk Management, Improve
Cybersecurity Maturity Level, Network & Infrastructure Penetration Testing, Mobile Penetration Testing, Web Application Penetration Testing, Incident Management & Log Analysis and Advicer.
Certified Ethical Hacker (CEH), Pci DSS
Zertifikate
Über mich
My experience has positioned me at the intersection of technical offensive security and executive compliance. I’ve guided some of the world's most sensitive organizations, including providing application security testing for a Global Intergovernmental Organization (like the UNHCR) and performing deep source code audits and penetration tests for a Central Bank. During my tenure as the Global Lead for Mobile Application Security at a major technology company (like Salesforce) , I was responsible for securing millions of users, managing complex incident handling with SOC/SIEM, and providing the final security sign-off for critical product releases. Furthermore, I directed multi-year projects for international financial institutions, successfully achieving critical standards like PCI DSS/ISO Certification.
Today, as a CTO of a consulting company, my specialization lies in high-demand consulting areas for large corporations, including DAX40-level clients. This encompasses architecting and operationalizing SOCs and delivering full-scope security services across major enterprise platforms and Cloud environments. My work includes defining IT security strategy, establishing robust Threat Modeling , conducting comprehensive Security Audits , and ensuring organizational adherence to GRC standards. I provide the necessary deep technical insight—proven by hands-on experience in Configuration Hardening and Source Code Audit —combined with the executive guidance required to build and operate resilient defense structures.
Weitere Kenntnisse
I have led key projects across major, sensitive sectors, achieving specific security goals through targeted analysis. This includes multiple internal product security audits for a "Big Four" Accounting Company, performing security analysis based on IT compliance frameworks for an International Insurance Company , and conducting application penetration tests for a Central Bank. Whether defining security based on developed network threat models, performing Denial of Service tests to evaluate business continuity, or delivering IT-Security Architecture guidance, my focus remains on achieving measurable security maturity and operational resilience.
Persönliche Daten
- Deutsch (Muttersprache)
- Englisch (Fließend)
- Europäische Union
- Schweiz
Kontaktdaten
Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.
Jetzt Mitglied werden
