Head of Department
Python
Active 2 days ago
+31 (0) 655951925
Invite to interview
Message
Download CVCV
Overview
Technical skills
Timeline
Roles
Overview
Cybersecurity executive with CISO and security assurance leadership experience across global audit and compliance programs. Experienced in security governance, enterprise risk management, ISO 27001 and SOC 2 initiatives, and GDPR alignment, with a focus on incident response and operational resilience. Background includes building ISMS and security operations, driving DevSecOps and secure SDLC practices, and leading audit and security teams.
Technical skills
Python
DevOps
AWS• 9y+
Cybersecurity
OWASP SAMM• 15y+
Qualys Cloud Platform• 9y+
GDPR• 6y+
ISO 27001• 4y+
SOC 2• 4y+
Timeline
Chief Information Security Officer (CISO)
•
Executive
Mambu
•
Full-Time
Led Mambu’s global IT security audit and assurance function with reporting to the CFO and Management Board. Oversaw global internal and customer audits and managed external certifications including ISO 27001 and SOC 1/2. Aligned audit outcomes with enterprise risk priorities and supported M&A by integrating security requirements into business strategy and product roadmap.
ISO 27001
SOC 2
Senior Manager, Security & Audit Services (EMEA)
•
Lead
Amazon Web Services
•
Full-Time
Managed third-party and customer audit engagements for highly regulated industries. Ensured compliance across frameworks including ISO 27001 and SOC 2 and handled compliance blockers affecting customer contracts. Improved audit operations by scaling processes and evidence management while reducing audit friction through customer engagement.
ISO 27001
SOC 2since 2022
Chief Information Security Officer (CISO)
•
Executive
Leaseweb
•
Full-Time
Led the security strategy for offices across six countries, ensuring alignment with GDPR and related compliance requirements. Delivered security roadmaps covering people, cloud, business and infrastructure while strengthening security awareness and operational resilience. Facilitated the ISO 27001 certification process and coordinated with legal and IT teams to implement compliance-focused controls.
GDPR
ISO 27001since 2022
Global CISO
•
Middle
Kinly
•
Full-Time
Owned global security posture and strategy, including policy development, vendor risk management, compliance programs, and security training initiatives. Provided regular updates to the CIO and executive team and supported regulatory audits with maturity dashboards. Strengthened security awareness through training and improved user behavior to reduce organizational risk.
GDPRsince 2020
Security Domain Architect / BISO
•
Lead
RTL
•
Full-Time
Served in a dual role covering strategic security architecture and operational security governance. Drove DevSecOps transformation and implemented secure SDLC practices, plus vulnerability management and monitoring capabilities. Coordinated ISMS-aligned policies, risk assessments, incident response, and audit procedures across the enterprise in collaboration with RTL Group and Bertelsmann.
Chief Information Security Officer (CISO)
•
Executive
OLX
•
Full-Time
Built ISMS and security operations during a full cloud migration to AWS. Performed business impact analysis, conducted risk assessments, and produced mitigation plans. Implemented security awareness programs, DevSecOps practices, and vulnerability management using Qualys, while coordinating with IT teams to embed security into system architecture and standardize sensitive-data handling.
AWS
Qualys Cloud Platform
CISO & Security Architect
•
Lead
Atos
•
Full-Time
Built a complete security infrastructure from scratch for the Rio 2016 Olympic Games and led a 12-person team. Conducted audits across 36 venues and coordinated incident response activities with federal agencies to maintain secure operations around the clock. Developed an ISMS and a disaster recovery plan for business continuity and implemented frameworks for access control to sensitive systems.
Senior Manager, Forensic Technology & Discovery
•
Lead
Ernst & Young
•
Full-Time
Led a 25-member LATAM-wide team focused on fraud investigations and digital forensics. Delivered cybersecurity engagements including penetration testing, malware analysis, and forensic reporting across multiple industries. Managed delivery and project activities, negotiated contracts, and mentored junior managers to support continuous learning.
Senior Security Expert
•
Senior
Petrobras
•
Full-Time
Directed Secure SDLC implementation using SAMM and reduced project costs while enabling large-scale developer training. Managed a penetration testing team and developed ISMS policies. Launched company-wide security awareness initiatives to improve developer and organizational security practices.
OWASP SAMM
Security Instructor & Consultant
•
Executive
4Linux
•
Full-Time
Designed and delivered training on penetration testing, system hardening, and digital forensics. Led consulting engagements for security assessments, malware analysis, and technical audits serving both private and government sectors. Created teaching materials and lesson plans, assessed student progress, and used hands-on activities to improve learning outcomes.
Universidade do Estado do Rio de Janeiro (UERJ)
Bachelor's Degree •
Computer Science
