msg security advisors
Cyber security in business & society.
Join us in promoting information security in companies and organizations and become part of msg security advisors!
In our msg security advisors unit, we use innovative and solution-oriented consulting to increase the resilience of our customers' processes, infrastructures and systems, thereby creating professional information security for excellent organizations.
We take a comprehensive approach to cyber security and provide support at all levels: When it comes to cyber security and data protection, we set standards with our expertise - whether in strategy, conception or operational and methodical implementation. For example, we are looking for specialists who can contribute to the implementation of our clients' data protection management systems. Challenges such as cyber defense and security incident management are solved by our cyber security team.
Our expertise also focuses on IT risk and compliance management.
These and many other tasks and development opportunities await you with us.
We are msg security advisors - get to know us!
What is your main task?
My current focus is on information security and data protection consulting in public administration. In this context, I support our customers in the implementation, planning and further development of information security management systems (ISMS) and in the creation of security and data protection concepts in accordance with current laws, norms and standards (BSI IT-Grundschutz, §8a (3) BSIG, GDPR and standard data protection model).
What do you particularly like about your work?
What I find particularly exciting about my work is the constantly changing requirements for security and for our customers. In addition to new technologies, the legal and regulatory framework is also constantly changing. The parallel work in different projects and roles (from project management to external information security officer) also means that the work is always varied.
What does a typical working day look like for you?
My typical working week usually starts in my home office. I like to spend a day at our location during the week to exchange ideas - within the team or across business unit boundaries. In public administration, many projects are now handled remotely. In addition to regular meetings, there are also many ad-hoc meetings to coordinate with colleagues or to answer customer inquiries at short notice regarding various security-specific topics. So every week looks different.
What is your main task?
On the one hand, I deal with the development or optimization of information security management systems, cyber security management systems compliant with ISO 21434 or with GDPR-compliant processes at the customer. I also advise our customers on security architecture and the implementation of security measures in processes (IAM, software development, DevOps, etc.) or specific IT products. I find the insights into the eMobility environment, vehicle technologies of the future and other interesting specialist areas outside of information security very interesting.
Which technology excites you the most and why?
New technologies are the most appealing to me, as you can play a formative role in shaping them and the solutions are not already in the drawer.
It's a challenge to always stay on the ball, but working in teams that deal with new technologies is exactly what I enjoy the most. I usually meet colleagues and customers in this environment who are on my wavelength.
Why did you decide to work in consulting with a focus on information security?
In contrast to an IT position with a customer, IT consulting gives me much more variety and insights into a wide range of industries and, as part of my job, I can also ask questions that have always interested me about the industry. The wide range of contacts you can make and the different perspectives on the same subject area through discussions with different people at different management levels also give me important insights that I would otherwise not be able to gain.
What is your main task?
I advise and support our customers on the topics of data protection, compliance and information security. Thanks to my many years of experience as a project manager, I also lead teams within customer projects. I am very familiar with the public sector thanks to my history in the German Armed Forces (twelve years as a regular soldier in the IT sector). I can also put my experience from this time to good use in the areas of leadership, crisis management, project management and international exercises. What particularly appeals to me about my area of responsibility is advising customers from a wide range of industries (e.g. public sector, banking, insurance, consumer products, automotive, healthcare) and the diversity of topics depending on the customer situation.
How did you come to msg?
Through a fellow student and very good friend of many years. He knew that I was looking for something new and made the contact within msg. Five months later, we worked together for a year on a customer project in Munich and drove the Europe-wide data center consolidation forward.
Why did you decide to work for msg security advisors?
Even during my time in the German Armed Forces, the topic of information security was omnipresent and I was in regular contact with those responsible for information security. Thanks to my many years of experience in operational IT operations and the associated experience of knowing “where the shoe often pinches”, I can well understand the concerns of customers and their IT departments. After leaving the army, I spent several years as a project manager, where my knowledge of information security was always helpful. That's why I decided to make the change again and focus on information security.
Our most important methods & technologies
- IT baseline protection
- ISO 27001
- TISAX
- BAIT / VAIT
- GAMP
- Certification preparation and support
- DSGVO, BDSG, LSG
- ISO 27701
- Data protection and security in cloud services (possibly “in the cloud”)
- Standard data protection model
- Deletion concepts according to DIN 66398
- Security analyses and penetration tests
- Secure software development
- Cyber security architectures
- CERT services and forensics
- IoT and Industry 4.0
- Managing risks in the cloud
- Dealing with IT failure risks / emergency management / BCM
- External risk managers / IT security managers
- ISO 31000
- Electronic processes and procedures
- Electronic identities, trust services and SSI
- Secure archiving and storage
- Industry-specific compliance (BAIT, VAIT, B3S)
- ISO 19600 / ISO 37301
Topics that move us
We are interested in the question of how we can lead companies and organizations in all sectors to greater information security. Would you like a deeper insight? Here you will find an overview of current topics:
msg security advisors in figures
150
40
21
300.000
12
1.180