freiberufler Cyber Security Architect auf freelance.de

Cyber Security Architect

zuletzt online vor wenigen Tagen
  • 130€/Stunde
  • 86938 Schondorf am Ammersee
  • DACH-Region
  • de  |  en
  • 13.01.2025

Kurzvorstellung

Mit meiner langjahrigen Berufserfahrung berate ich international agierende Unternehmen - darunter DAX-Vertreter - bei Design und Einführung einer Zero Trust Architecture mit Schwerpunkt Microsoft Cloud Technologien.

Qualifikationen

  • Azure Active Directory
  • B2B Identity Management
  • Enterprise Mobility Management
  • Hybrid Identity Management
  • Identity & Access Management
  • Infrastructure Design & Strategy
  • Microsoft Office 3654 J.
  • Projektmanagement (IT)4 J.

Projekt‐ & Berufserfahrung

Lead Architect
Kundenname anonymisiert, Herzogenaurach
4/2017 – 12/2019 (2 Jahre, 9 Monate)
Konsumgüterindustrie
Tätigkeitszeitraum

4/2017 – 12/2019

Tätigkeitsbeschreibung

found in reference description 0
Lead architect for design and build of Office 365 / modern app cloud security; design of new IAM strategy based on Microsoft Identity platform
Client: international manufacturer of sports articles with HQ in Herzogenaurach (DAX)
- Design, PoC and introduction for multi-vendor conditional access for trusted managed devices to Office 365 (40.000 users: corporate iOS, macOS and Windows 7/10 devices) based on VMware Identity Manager, ADFS, Azure AD Premium, SCCM/GPO, JAMF Pro and VMware Workspace ONE UEM  user story presented on Microsoft Identity Customer Onsite Event London, 2019
- Development of global IAM roadmap & strategy (“IAM solution guide”) based on Microsoft Identity platform: design and piloting of secure app integration blueprints, includes secure and VPN-free access to on-prem web services
- Development of B2B strategy (access for external users to corporate apps) and support of Microsoft Teams PoC
- Design and preparation of global Azure MFA user enrollment (40.000 users)
- Strategy development of secure IAM for retail users on shared iOS devices
- Customer representation in regularly Microsoft Identity Onsite Events in London with the Microsoft Identity engineering team lead by Alex Simons

- Design, implementation and introduction of password less “MobileSSO” for Office 365 and other cloud services based on VMware Workspace ONE (Identity Manager) for corporate iOS devices (30.000 devices); pilot of “MobileSSO” for Android Enterprise
- Solution design and integration of Azure MFA for Citrix Web Frontend, Atlassian Jira/Confluence and other web-based services (secured by F5 BigIP)
- Design and implementation of MobileSSO for legacy Kerberos-based on-premises web services based on F5 BigIP APM
- Design and PoC of conditional access for macOS based on JAMF/Intune integration/Azure AD Premium
- PoC of Azure AD based SAML-Integration of Atlassian tools (Crowd, Jira and Confluence) incl. B2B support
- Design and PoC of Android Enterprise for corporate devices / BYOD, managed by VMware WSONE UEM
- PoC security key authentication to Azure AD (FIDO2, incl. Hybrid Azure AD Join)
- Design strategy to eliminate legacy auth to Office 365 services, build reports to monitor progress (Azure Log Analytics, Power BI)

Eingesetzte Qualifikationen

Projektmanagement (IT), System Architektur, Microsoft Office 365

Lead Architect
Kundenname anonymisiert, München
3/2015 – 3/2017 (2 Jahre, 1 Monat)
Versicherungen
Tätigkeitszeitraum

3/2015 – 3/2017

Tätigkeitsbeschreibung

Lead Architect for design and build of international Enterprise Mobility Services “powered by AirWatch”
Client: Insurance, international, HQ Munich (DAX)
- Analyze mobile use cases and operation models (COBO/COPE/BYOD)
- Evaluate mobile platforms iOS, Android und Windows 10 Mobile for use cases
- Develop evaluation criterias and shortlist EMM solution
- Installation PoCs with VMware AirWatch, Good Dynamics and Citrix XenMobile
- Design & implementation of AirWatch system for 40.000 iOS devices
- Security concepts COBO/COPE/BYOD for iOS, Android & W10M
- Design of S/MIME gateway (in cooperation with VMware), implementation of automatic deployment and management of user certificates through self-service portal
- Implementation of certificate-based authentication to Exchange 2007/2013 ActiveSync (KCD)
- Implementation of cert-based SSO to Intranet services
- Mobile access to VDI (Citrix XenApps)
- Design of load balanced environment/HA (sizing for 40.000 devices)
- Design of AirWatch migration to new datacenter
- data leakage prevention concept for mobile usage of Office 365
- Performing AirWatch upgrades up to version 9.0.1 and training of international operations team
- Blueprint of MobileSSO for iOS based on VMware Identity Manager

Eingesetzte Qualifikationen

Projektmanagement (IT), System Architektur, Vmware, Microsoft Office 365

Ausbildung

Communication Science, main focus: online media subsidiary subjects: Computer science, Marketing and
Magister Artium
1997
München

Über mich

Since more than 30 years, P. M. works as independent consultant. As lead architect his project history covers design and introduction of complex enterprise endpoint management systems for large international companies. In recent years he has branched out into developing cloud security strategies for DAX companies and institutes in several sectors (financial, insurance, technology, sporting goods manufacturing) - enterprises facing the challenges of secure identity and access management in a hybrid application landscape whilst enabling collaboration with other companies from a modern digital workplace. This leads to quite some practical experiences in designing and building Zero Trust architectures with his clients in the context of M365 and Microsoft Entra ID (formerly "Azure AD") to be ready for future. P. M. is member of the Microsoft Identity Advisors with direct contact to the product group.

Holding a master’s degree in communication and computer sciences, he excels at presenting concepts and strategies to different stake holders covering all technical and management levels. His presentations and documentations reflect his profound experience developed during his time as author for numerous IT publications. Successful modern strategies and comprehensive solutions require not only an interdisciplinary perspective towards standards and potentially applicable products but also interface work between participating IT departments like security, modern workplace & client management, identity management, cloud services, app development, network and end-user support to successfully establish an accepted solution. His extensive and long-standing project experience enables P. M. to master these tasks.

To draw hands-on experience from latest technology, P. M. operates a hybrid solution lab with parts in Azure and a German datacenter. The lab is utilized for projects to develop and “PoC” the integration of hybrid solutions in the areas of cloud security, identity and access management (IAM) as well as unified endpoint management (Window, macOS, iOS & Android).

Weitere Kenntnisse

Microsoft 365, Microsoft Entra ID, Microsoft Identity Platform, PIM, Identity Governance, Enterprise Mobility Managment, iOS, Android Enterprise, Windows, macOS, IAM, IGA, MFA, Conditional Access, Microsoft Intune, Microsoft Teams, Compliance

Persönliche Daten

Sprache
  • Deutsch (Muttersprache)
  • Englisch (Fließend)
Reisebereitschaft
DACH-Region
Arbeitserlaubnis
  • Europäische Union
Home-Office
bevorzugt
Profilaufrufe
2728
Alter
56
Berufserfahrung
34 Jahre (seit 01/1991)
Projektleitung
10 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden