You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Can Y.CY

Can Y.

Senior Security Consultant | CRA & NIS2 | vCISO

€1,200/day
Frankfurt am Main, DE
8-15 years

Average response time: 1 hour

Freelancer profile translated to English.
Back to original language

About Can

As an experienced information security expert, I support companies in establishing a resilient and compliant security architecture. My focus is on combining strategic governance (ISO 27001, Risk Management) with operational excellence (SOC setup, Incident Response).

My Focus Areas:

NIS2, CRA, EU AI Act, ISO27001: Ensuring the correct implementation of regulatory requirements

Interim Management:Taking on leadership responsibility (CISO / Head of) and managing security teams.

Governance & Compliance:Preparing for and supporting ISO 27001 audits as a certified Lead Auditor.

Security Architecture:Implementing Zero Trust strategies and Cloud Security (Azure).

SOC & Threat Defense:Building internal/external SOC structures and SIEM transitions (e.g., QRadar to Sentinel).

Certifications: CISSP, ISO 27001 Lead Auditor, AZ-500.
  • German

    Native or bilingual

  • English

    Fluent

Can work on-site
Frankfurt am Main (up to 50km)

Experience

  • TECHEM ENERGY SERVICES GMBH
    Head of IT Security
    January 2025 - April 2026 (1 year and 3 months)
    Strategic overall management of corporate-wide information security with a clear focus on governance, risk, and security objectives. Responsibility for the setup, management, and further development of governance, risk, and security structures. Leadership and development of the IT Security, SOC, and Identity Management departments. Alignment of the security organization with corporate goals, regulatory requirements, and technological frameworks. Management of the ISMS and definition of standards, guidelines, and decision-making bases. Advising management on security-relevant decisions and strategic initiatives.
    • Line budget responsibility for €2.5 million / year
    • Project budget responsibility for ~ €800 k / year
    • Responsibility for 6 employees (direct reports)
    • Establishment of a company-wide security culture with clear embedding of information security in organizational and decision-making processes
    • Building scalable security structures through the establishment of an Identity and Access Management team and the introduction of a Zero Trust architecture
    • Increasing operational effectiveness through the implementation of several strategic security initiatives and an efficiency improvement of existing threat intelligence and analysis processes by 35%
  • Techem
    Project: Zero Trust Architecture & Strategy
    December 2024 - April 2026 (1 year and 4 months)
    • Planning and gradual implementation of a Zero Trust environment for securing hybrid infrastructures
    • Focus on Identity Management (IAM), micro-segmentation, and Conditional Access
    Cybersecurity Digital Transformation Interim Management Project Management Zero Trust
  • Techem
    Project: SIEM Transition & SOC Setup (QRadar to MS Sentinel)
    February 2024 - May 2025 (1 year and 3 months)
    • Migration of the existing SIEM system from IBM QRadar to Microsoft Sentinel
    • Setup and operational management of a Security Operations Center (SOC) including Incident Response processes
    SIEM IT Security Cybersecurity Microsoft Sentinel Qradar

Recommendations

Be the first to recommend Can

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • CISSP - Certified Information Systems Security Professional
    CISSP - Certified Information Systems Security Professional
  • ISO/IEC 27001 Lead Auditor
    PECB
    2024
    ISO/IEC 27001 Lead Auditor

Certifications

  • CISSP
    ISC2
    2026

Skill set

Categories