Skip to main content

      I am a partner in the Security Consulting division of KPMG. I advise you and your company not only with my many years of experience, but above all with innovative approaches.

      Cyber security, privacy and risk assessment of new technologies - this is my focus for the continuous development of organizations, processes and people. After all, only those who are fully aware of their cyber risks can take advantage of the opportunities offered by digital transformation.

      With comprehensive analyses and precise measures, I provide targeted advice on protection against industrial espionage, ransomware and DDoS attacks - without losing sight of the costs and benefits.

      After completing my doctorate at Justus Liebig University Giessen on the topic of IT compliance in corporate governance, I am now responsible for the topics of "Cyber Security Strategy, Governance and Risk" and "Privacy Management" at KPMG and am active as a guest lecturer and speaker.

      I have recently worked on the following projects:

      Recording and evaluation of current security maturity and capability levels of companies and continuous development of cybersecurity capabilities as part of transformation programs
      Management consulting for the strategic alignment of cybersecurity in the context of technological developments and changing threat situations ("agile security")
      Establishment of transparent and business-driven cyber risk management methods with a focus on quantitative cyber risk management
      Introduction of security technologies and processes with a focus on vulnerability management, incident management, SIEM, security operations, red teaming and security awareness
      Establishment of management systems based on ISO 27001, NIST and/or BSI IT baseline protection
      Evaluation and improvement of technical and organizational measures in the area of data protection / privacy

      1. Area Of Expertise

        Advisory

        Industries

        Cyber security

        services

        Family businesses and SMEs

        IT Attestation

        IT Risk Consulting

        IT Management

        IT risks and controls

        International markets

        National markets

        Risk management

        Technology

      2. Education & Qualification

        CISA - Certified Information Systems Auditor (ISACA, 2015)

        ITGCP - IT Governance & Compliance Practitioner (ISACA, 2014)

        Certified data protection officer, specialist knowledge in accordance with Section 4f (2) BDSG (FFD, 2013)

        ISO/IEC 27001 Certified Lead Implementer (IBITGQ/IT Gov. Institute, 2012), ISO/IEC 27001 Lead Auditor (KPMG, 2010)

        Dr. rer. pol. (Justus-Liebig-University Giessen, 2012), Diplom-Kaufmann (Justus-Liebig-University Giessen, 2006)

      3. Accreditations

        Lecturer and member of the Advisory Board of the IT-GRC Master's program, Open Competence Center for Cyber Security (C3S), http://www.open-c3s.de

        Various activities as a lecturer in the field of information security, cyber security and IT compliance

        Member of numerous expert groups, including the Information Security Forum (ISF) and ISACA