Cloud Security Architect & Consultant | AWS · GCP | Security Engineering | ISO/IEC 27001 Lead Auditor
- Verfügbarkeit einsehen
- 0 Referenzen
- 100‐125€/Stunde
- Duisburg
- auf Anfrage
- de | en | fr
- 14.08.2026
Kurzvorstellung
Geschäftsdaten
Qualifikationen
Projekt‐ & Berufserfahrung
9/2025 – offen
Tätigkeitsbeschreibung
• Lead the technical security function across three group companies, providing technical direction, mentoring security engineers, defining the security roadmap, and driving priorities across Cloud Security, Application Security and Security Operations
• Own group-wide security architecture and engineering standards, establishing reference architectures, security guardrails, Secure-by-Design practices, threat modeling and architecture reviews across cloud and application environments
• Partner with the CISO and executive leadership on security strategy, enterprise risk management, regulatory requirements and strategic security initiatives
• Own end-to-end vulnerability management across cloud and application layers, from risk-based prioritization and remediation tracking through verification and audit-ready evidence
• Architect and evolve cloud-native security platforms with automated preventive controls, centralized detection and response capabilities, and scalable security engineering practices, including AI-assisted security workflows
• Drive ISMS maturity and regulatory readiness in alignment with ISO 27001 and DORA, translating risk and regulatory requirements into scalable technical and organizational controls
Cyber Security, Information Systems Manager
8/2023 – 8/2025
Tätigkeitsbeschreibung
• Built the company’s cloud security program from scratch as the first dedicated security engineer, establishing security strategy, architecture, governance and operational capabilities
• Architected and implemented a secure-by-default AWS landing zone, introducing least privilege, centralized identity, federated SSO, organization-wide SCPs, RBAC and automated policy enforcement.
• Designed and operationalized AWS-native detection and response capabilities using GuardDuty, Security Hub, WAF, CloudTrail and KMS, establishing centralized security visibility and alerting
• Hardened the Microsoft 365 environment across Defender XDR, Intune, endpoint protection, MFA, SSO and Conditional Access
• Embedded Secure SDLC practices into engineering workflows, integrating SAST, SCA, secret scanning and automated compliance gates into CI/CD pipelines
• Co-designed the enterprise ISMS and drove technical audit readiness for ISO 27001 and DORA, covering security controls, documentation, evidence collection, penetration testing and internal/external audits
• Enabled engineering teams to adopt Secure-by-Design practices through hands-on security coaching, secure code reviews and architecture consultations
Cloud Spezialist, Cyber Security Engineer, Cyber Security
4/2021 – 8/2023
Tätigkeitsbeschreibung
Led cloud security architecture, security transformation and governance initiatives for enterprise organizations across financial services, healthcare, telecommunications and e-commerce, combining strategic advisory with hands-on security engineering.
Selected consulting engagements:
• GCP Security Architecture — Top European E-Commerce Retailer: Defined enterprise security standards, cloud architecture patterns and governance models; engineered serverless security controls to detect non-compliant resources and enforce security policies in real time
• Cloud Security Governance — Major European Telecommunications Provider: Improved vulnerability management through process optimization, stakeholder engagement and shift-left security practices; advised on cloud security governance and Secure-by-Design approaches
• IPO Security Readiness — Global Digital Commerce Company: Led cloud and SaaS security readiness activities supporting a US IPO audit; conducted GCP security assessments and established logging, monitoring and security hardening foundations
• Cloud Migration & PKI — Global Reinsurance Group: Migrated unmanaged GCP environments into an enterprise-ready architecture with centralized IAM and organizational controls; designed a cross-account AWS proxy architecture for private PKI communication using Infrastructure as Code
• Security Automation & SIEM — Enterprise Healthcare & Manufacturing Clients: Led SIEM enhancement in a regulated healthcare environment and architected an automated AWS security assessment framework using Python, Lambda and Infrastructure as Code.
Cloud Spezialist, Cyber Security Engineer, Cyber Security
Zertifikate
PECB
Amazon Web Services (AWS)
Google Cloud
HashiCorp Certified
Ausbildung
WINGS-Fernstudium
Wismar
Über mich
Deep expertise in ISO 27001, DORA compliance, DevSecOps, and security operations — enabling organizations to scale securely without sacrificing speed
Persönliche Daten
- Deutsch (Muttersprache)
- Englisch (Fließend)
- Französisch (Gut)
- Europäische Union
Kontaktdaten
Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.
Jetzt Mitglied werden
