You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
Mauro P.MP

Mauro P.

Head of Information Security

€900/day
Berlin, DE
15+ years

Average response time: 1 hour

About Mauro

Strategic cybersecurity leader with 16+ years of international experience across fintech, e commerce, and cloud platforms. I support companies in defining and strengthening their security strategy, governance, and risk management in complex and regulated environments.
I bring a proven track record of building and scaling security capabilities, embedding security into product development, and improving control effectiveness across cloud and SaaS ecosystems. I have extensive experience working under board level oversight, supporting audits, and driving measurable security maturity.
My expertise includes:
Security strategy and operating model design
Risk management and regulatory alignment
Security control frameworks and audit readiness
Cloud and SaaS security
Security Operations and threat detection
Strong experience with DORA, PCI DSS, ISO 27001, GDPR, and NIS2.
I typically work with companies that need senior support to structure their security function, close audit gaps, or improve detection and response capabilities.
  • Spanish

    Native or bilingual

  • English

    Fluent

  • German

    Basic

  • Portuguese

    Basic

Can work on-site
Berlin (up to 50km)

Experience

  • Zalando Payments
    Head of Information Security.
    February 2025 - Today (1 year and 4 months)
    Germany
    Leading all aspects of information security for the Zalando Payments platform, including strategy, governance, and risk management, reporting to the Chief Risk Officer.
    Key Responsibilities:
    • Own the enterprise information security strategy and operating model, ensuring alignment with board expectations for risk management, auditability, and resilience in a large scale payments environment.
    • Partner with product and engineering teams to integrate secure design, threat modeling, and DevSecOps controls across the payment product lifecycle.
    • Act as the executive accountable leader for the organization’s security posture, responsible for risk management and reporting to the board on KPIs, incidents, and control effectiveness.
    • Accountable for the design and effectiveness of security controls aligned with DORA, PCI DSS, and ISO 27001, providing board level assurance on compliance status and residual risk.


    Key Achievements:
    • Built a unified security controls framework mapping PCI, GDPR, DORA and ISO requirements, enabling automated evidence collection and consistent audit readiness.
    DORA Security operations Cyber security strategy PCI DSS ISO 27001
  • Zalando
    Head of Security Operations & Engineering.
    TECH
    January 2024 - Today (2 years and 5 months)
    Germany
    • Strategic Leadership: Driving the evolution of security operations to align with Zalando's business objectives and regulatory requirements, fostering a proactive and resilient security posture. Managing €5M cost center budgets and forecasts for personnel and operational expenses.
    • Cloud Infrastructure Security Engineering: Overseeing the development and implementation of scalable security controls across cloud environments, ensuring robust protection for critical infrastructure and workloads.
    • Offensive Security: Enhancing the organization's threat exposure management through penetration testing, vulnerability assessment, and secure code reviews, creating a risk-aware culture.
    • SOC: Strengthening threat detection, incident response, and threat hunting capabilities through the adoption of cutting-edge tools, techniques, and continuous improvement of use case lifecycle management.
    Security operations Threat Detection SOC Security Incident Response AI Security
  • Delivery Hero,
    Director of Security Operations.
    January 2022 - December 2023 (1 year and 11 months)
    Germany
    Built and scaled global Security Operations across Cloud Security, CSIRT, SOC, and Threat Intelligence, operating under a 24/7 Follow-the-Sun model across Germany, Argentina, and Singapore. Achieved automation at scale: executed 280K jobs, saving 64K hours and $2M in costs; cut failure rates by 51% and vulnerability remediation from 90 to 30 days.
    Led the Application Security and Incident Response functions, implementing SAST/DAST programs globally and establishing a 24/7 CSIRT. Introduced orchestration and automation, achieving a 0.56 automation ratio and enhancing incident response scalability.
    AWS Security Splunk SIEM Security Incident Response Cyber security strategy

Recommendations

Be the first to recommend Mauro

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • Master of Business Administration (MBA)
    UADE
    2020
    Master of Business Administration (MBA)
  • Postgraduate in Information Security
    University of Buenos Aires
    2010
    Postgraduate in Information Security

Categories