Director overseeing Cybersecurity Services and site development in Germany for CFGI. Lead Cybersecurity Advisory while implementing frameworks and managing client advisory services.
Responsibilities
Establish and further develop the Cybersecurity Advisory practice at CFGI Germany and contribute to the strategic development of the site
Develop and implement cybersecurity process, risk and control frameworks for our clients, aligned with applicable laws, standards and best practices
Perform risk analyses, maturity assessments and compliance readiness assessments (including cybersecurity and data privacy)
Define, test and audit controls according to internal audit frameworks as well as relevant legal or regulatory requirements
Advise clients on the implementation and optimization of cybersecurity policies, standards and procedures
Design and implement cybersecurity awareness and training programs
Oversee the implementation and operation of security tools, technologies and processes
Develop and report cybersecurity metrics and reports for various management levels up to the Audit Committee and Board
Provide governance services to monitor cybersecurity functions (e.g., risk, vulnerability and incident management)
Establish and implement risk management practices including policies, procedures and risk registers
Support the implementation of GRC tools and lead third-party risk management (TPRM) processes
Provide advice on cybersecurity and data protection regulations in the German and European legal context (e.g., NIS2, GDPR)
Requirements
University degree in business administration, computer science, engineering, information systems or a comparable field
At least 10 years of professional experience in cybersecurity, including several years in a leadership role or in consulting
Strong knowledge of relevant standards and frameworks (e.g., NIST CSF, CIS, ISO 27001, PCI DSS, HIPAA, CMMC, SOX, GDPR, CCPA)
Extensive knowledge of the German and European regulatory landscape in cybersecurity and data protection
Experience in project management, governance and risk management
Certifications such as CISSP, CISM or comparable qualifications are a plus
Excellent communication skills, intercultural competence and leadership experience in working with multidisciplinary teams
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.
Security Engineer contributing to security initiatives for incident management platform at Rootly. Collaborating cross - functionally to ensure reliable and scalable security solutions.
Lead Senior Information System Security Manager (ISSM) for Boeing's cybersecurity programs. Focus on implementing compliance for DFARS/NIST and managing a large portfolio for CUI.
Técnico de Segurança do Trabalho supporting Segurança, Meio Ambiente e Saúde in submarinas operations for Petrobras in Macaé/RJ. Contribuir para ambientes de trabalho seguros e cumprimento de normas.
Senior Information Security Analyst focused on Blue Team/CSIRT at PagBank. Engaging in cybersecurity incident response and advanced security solutions support.