DE | EN
← Back to overview

IT Security Manager (GRC)

The candidate has more than 18 years of experience in IT audit, governance risk and compliance, cybersecurity and cloud security. He led global GRC programs, developed I…

Usually within 24h (business days).
Anonymised profile – details after NDA/on request.
IT Security Manager (GRC)

Executive snapshot

  • Experience: 18 Jahre Erfahrung in IT Audit, Governance Risk and Compliance, Cybersecurity, Cloud Security, Data Governance und ITSM
  • Seniority: Senior GRC Specialist, Senior IT Auditor, Senior Information Security Manager
  • Work mode: Möglich
  • Availability: Nach Absprache
  • Region: Deutschland / EU
  • Focus: Governance Risk and Compliance, IT Audit, Cybersecurity, Data Governance

At a glance

Profile ID
DP-18921
Role
GRC Manager, IT Auditor, Information Security Manager, Compliance Lead, Risk Manager, Cloud Security Governance Specialist, Data Governance Specialist, ITSM Lead, Cybersecurity Governance Specialist
Seniority
Senior GRC Specialist, Senior IT Auditor, Senior Information Security Manager
Experience
18 Jahre Erfahrung in IT Audit, Governance Risk and Compliance, Cybersecurity, Cloud Security, Data Governance und ITSM
Work mode
Möglich
Availability
Nach Absprache
Region
Deutschland / EU
Languages
Englisch: C1, Deutsch: A2
Engagement models
Festanstellung, Freiberuflich
Indicative rate
Nach Absprache

Short profile

The candidate has more than 18 years of experience in IT audit, governance risk and compliance, cybersecurity and cloud security. He led global GRC programs, developed IT governance frameworks and ensured compliance across regulated industries including finance, healthcare, automotive and critical infrastructure. His expertise spans ISO standards, BSI Grundschutz, KRITIS, TISAX, DORA, GDPR, HIPAA and multiple regulatory frameworks. He has strong technical depth in cloud security, ITSM, data governance, vulnerability management and incident response. He worked with major international organizations and delivered mature audit and risk management programs with strategic impact.

Focus (domains)

Governance Risk and ComplianceIT AuditCybersecurityData GovernanceCloud SecurityITSMRisk ManagementCompliance ManagementThird Party Risk ManagementVulnerability ManagementIncident ResponseNetwork SecurityData ProtectionEmbedded Security Standards

Core skills

IT GRC StrategyAudit ManagementRisk AssessmentISO FrameworksBSI GrundschutzKRITISData GovernanceITSMCloud Security AWS Azure GCPVulnerability ManagementIncident ResponseIAMDLPData ClassificationPenetration Testing FundamentalsNetwork Security ArchitectureRegulatory CompliancePolicy DevelopmentForensic AnalysisSecure System Design

Tools & technologies

Alyne GRCRSA ArcherMetricStreamServiceNow GRCSAP GRCNessusSplunkQRadarQualysAvettaMicrosoft 365 SecurityAzure PurviewAWS Security ToolsGCP Security ToolsTableauPower BIInformaticaDatabricksSnowflake

Track record & project highlights

Developed and implemented a comprehensive IT GRC framework for global enterprise environments. Source: Developed and implemented a comprehensive IT GRC framework Performed risk assessments for data center and cloud platforms including Azure and AWS. Ensured compliance with GDPR DORA MaRisk ISO 27001 and BSI Grundschutz. Coordinated internal and external IT audits ensuring audit readiness and process maturity. Reduced organizational risk exposure through advanced security controls and monitoring. Led global ITSM and cybersecurity compliance programs in regulated industries. Implemented automotive cybersecurity requirements including ISO 21434 and TISAX. Led vulnerability management SAM and ITSM disciplines. Improved audit reporting accuracy through evidence management automation. Advised product teams on regulatory requirements across the product lifecycle.
Interested? We can share details quickly (NDA-ready) — just request the profile.