freiberufler Cloud Security Architect & Consultant | AWS · GCP | Security Engineering | ISO/IEC 27001 Lead Auditor auf freelance.de

Cloud Security Architect & Consultant | AWS · GCP | Security Engineering | ISO/IEC 27001 Lead Auditor

zuletzt online vor wenigen Stunden
  • 100‐125€/Stunde
  • Duisburg
  • auf Anfrage
  • de  |  en  |  fr
  • 14.08.2026

Kurzvorstellung

Cloud Security Architect & Consultant with 5+ years securing enterprises across fintech, healthcare & telco on AWS & GCP. From CISO advisory and governance to hands-on engineering — ISO 27001 Lead Auditor · DevSecOps · DORA

Geschäftsdaten

 Freiberuflich

Qualifikationen

  • Cloud Spezialist4 J.
  • Cyber Security5 J.
  • Cyber Security Engineer4 J.
  • Information Systems Manager1 J.
  • Informationssicherheit
  • IT-Sicherheitsberater
  • IT Sicherheit (allg.)

Projekt‐ & Berufserfahrung

Senior Cloud Security Engineer | Technical Security Lead (Festanstellung)
Kundenname anonymisiert, Karlsruhe
9/2025 – offen (1 Jahr)
Finanzdienstleister
Tätigkeitszeitraum

9/2025 – offen

Tätigkeitsbeschreibung

• Lead the technical security function across three group companies, providing technical direction, mentoring security engineers, defining the security roadmap, and driving priorities across Cloud Security, Application Security and Security Operations
• Own group-wide security architecture and engineering standards, establishing reference architectures, security guardrails, Secure-by-Design practices, threat modeling and architecture reviews across cloud and application environments
• Partner with the CISO and executive leadership on security strategy, enterprise risk management, regulatory requirements and strategic security initiatives
• Own end-to-end vulnerability management across cloud and application layers, from risk-based prioritization and remediation tracking through verification and audit-ready evidence
• Architect and evolve cloud-native security platforms with automated preventive controls, centralized detection and response capabilities, and scalable security engineering practices, including AI-assisted security workflows
• Drive ISMS maturity and regulatory readiness in alignment with ISO 27001 and DORA, translating risk and regulatory requirements into scalable technical and organizational controls

Eingesetzte Qualifikationen

Cyber Security, Information Systems Manager

Cloud Security Engineer | Founding Security Engineer (Festanstellung)
Kundenname anonymisiert, Karlsruhe
8/2023 – 8/2025 (2 Jahre, 1 Monat)
Finanzdienstleister
Tätigkeitszeitraum

8/2023 – 8/2025

Tätigkeitsbeschreibung

• Built the company’s cloud security program from scratch as the first dedicated security engineer, establishing security strategy, architecture, governance and operational capabilities
• Architected and implemented a secure-by-default AWS landing zone, introducing least privilege, centralized identity, federated SSO, organization-wide SCPs, RBAC and automated policy enforcement.
• Designed and operationalized AWS-native detection and response capabilities using GuardDuty, Security Hub, WAF, CloudTrail and KMS, establishing centralized security visibility and alerting
• Hardened the Microsoft 365 environment across Defender XDR, Intune, endpoint protection, MFA, SSO and Conditional Access
• Embedded Secure SDLC practices into engineering workflows, integrating SAST, SCA, secret scanning and automated compliance gates into CI/CD pipelines
• Co-designed the enterprise ISMS and drove technical audit readiness for ISO 27001 and DORA, covering security controls, documentation, evidence collection, penetration testing and internal/external audits
• Enabled engineering teams to adopt Secure-by-Design practices through hands-on security coaching, secure code reviews and architecture consultations

Eingesetzte Qualifikationen

Cloud Spezialist, Cyber Security Engineer, Cyber Security

Cloud Security Consultant (Festanstellung)
Kundenname anonymisiert, Köln
4/2021 – 8/2023 (2 Jahre, 5 Monate)
Dienstleistungsbranche
Tätigkeitszeitraum

4/2021 – 8/2023

Tätigkeitsbeschreibung

Led cloud security architecture, security transformation and governance initiatives for enterprise organizations across financial services, healthcare, telecommunications and e-commerce, combining strategic advisory with hands-on security engineering.

Selected consulting engagements:

• GCP Security Architecture — Top European E-Commerce Retailer: Defined enterprise security standards, cloud architecture patterns and governance models; engineered serverless security controls to detect non-compliant resources and enforce security policies in real time

• Cloud Security Governance — Major European Telecommunications Provider: Improved vulnerability management through process optimization, stakeholder engagement and shift-left security practices; advised on cloud security governance and Secure-by-Design approaches

• IPO Security Readiness — Global Digital Commerce Company: Led cloud and SaaS security readiness activities supporting a US IPO audit; conducted GCP security assessments and established logging, monitoring and security hardening foundations

• Cloud Migration & PKI — Global Reinsurance Group: Migrated unmanaged GCP environments into an enterprise-ready architecture with centralized IAM and organizational controls; designed a cross-account AWS proxy architecture for private PKI communication using Infrastructure as Code

• Security Automation & SIEM — Enterprise Healthcare & Manufacturing Clients: Led SIEM enhancement in a regulated healthcare environment and architected an automated AWS security assessment framework using Python, Lambda and Infrastructure as Code.

Eingesetzte Qualifikationen

Cloud Spezialist, Cyber Security Engineer, Cyber Security

Zertifikate

ISO/IEC 27001 Lead Auditor
PECB
2026
AWS Certified Security – Specialty
Amazon Web Services (AWS)
2022
Professional Cloud Security Engineer
Google Cloud
2021
Terraform Associate
HashiCorp Certified
2021

Ausbildung

Master
IT-Sicherheit und Forensik
WINGS-Fernstudium
2024
Wismar

Über mich

Cloud Security leader with 5+ years of experience securing highly regulated environments in fintech and enterprise. I build cloud security programs from the ground up — from strategy and architecture to hands-on engineering and audit readiness. Trusted partner to CISOs and C-level stakeholders for translating business risk into actionable security controls across AWS, GCP, and Microsoft 365.
Deep expertise in ISO 27001, DORA compliance, DevSecOps, and security operations — enabling organizations to scale securely without sacrificing speed

Persönliche Daten

Sprache
  • Deutsch (Muttersprache)
  • Englisch (Fließend)
  • Französisch (Gut)
Reisebereitschaft
auf Anfrage
Arbeitserlaubnis
  • Europäische Union
Home-Office
bevorzugt
Profilaufrufe
16
Berufserfahrung
5 Jahre und 4 Monate (seit 04/2021)
Projektleitung
4 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden