
Certified Information Systems Security Professionals (CISSP)
in Austria matched in minutes from over 15,000 CVs with the power of AISecure your enterprise architecture, establish resilient governance frameworks, and protect cloud assets. Connect with vetted cybersecurity leaders ready to safeguard your systems.
Meet FRATCH Certified Information Systems Security Professionals (CISSP) in Austria
Jerry B.
Last position:
Owner at DIGIPM Consulting e.U.
From 02/2023 to 05/2024: IT interim manager within an international construction chemicals group headquartered in Germany as Global TSA Manager in a carve-out project responsible for the IT workstream.
End-to-end management of an international IT carve-out and TSA program, including transition of five service providers, governance and operating structures, service continuity, provider performance, SLA/KPI and cost management, SIAM and supplier management, security services, operational readiness, and transition into stable operations.
From 06/2024: IT consulting in project management and IT service management areas, providing PM/PMO coaching and support.
Herbert F.
Last position:
Pentest Center of Excellence - Strategy & Implementation at Cybersecurity & IT Risk Managed Services
- Built board/management business-case scenarios; assessed services, vendors, contracts and financials; defined target operating model, service catalogue, organization, processes and tooling.
- Implemented near-shore CoE in Romania and supported rollout to an international insurance group
René Z.
Last position:
DevSecOps & Kubernetes Engineer (Freelance) at mgm technology partners GmbH
Development of a Custom Jenkins Shared Library (Groovy)
Integration of security checks in CI/CD pipeline (Shift-Left Approach)
Automated vulnerability scanning and remediation workflows
GitOps-based deployments with ArgoCD
Semantic versioning automation with Git integration
Container lifecycle management (Build/Scan/Tag/Push)
ArgoCD webhook integration for event-driven deployments
Complete cluster automation with Ansible
Bare-metal Kubernetes installation from scratch
High-availability control plane setup
Unified deployment system for multi-application orchestration
Configuration management according to NIST SP 800-128
Host security: Linux hardening, SELinux/AppArmor
Network security: NetworkPolicies, micro-segmentation
Application security: RBAC, Pod Security Standards
Data security: Encryption at rest and in transit
Defense-in-depth principles
Certificate management with cert-manager
Secrets management with External Secrets Operator connected to Vault
Infrastructure monitoring with Checkmk
Prometheus/Grafana monitoring stack
Security event detection and logging
Automated health checks and incident response procedures
MetalLB load balancing for bare-metal
Nginx ingress controller with SSL passthrough
NetworkPolicies for security zones
Rook-Ceph distributed storage, CNI configuration (Weave Net)
Container & orchestration: Kubernetes (bare-metal), Docker, Helm
CI/CD & GitOps: Jenkins (Custom Shared Library), ArgoCD, Groovy
Automation: Ansible, Bash, Python
Security: nftables, RBAC, NetworkPolicies, cert-manager, Vault, Sealed Secrets
Monitoring: Checkmk, Prometheus, Grafana
Storage & networking: Rook-Ceph, MetalLB, Nginx Ingress, Calico
Collaboration: Jira, Confluence
OS: Debian, Ubuntu
Sascha L.
Last position:
CEO at SEComply
- Founder & creator of a cutting-edge Governance, Risk & Compliance SaaS solution.
- Developing and executing business development strategies to identify new opportunities and expand market presence.
- Providing information security consulting services.
- Specializing in governance, risk, and compliance (GRC) topics such as risk management, ISO 27005, ISO 27001, NIS 2, DORA, PCI DSS, EU-GDPR, and more.
- Past projects:
- Kyndryl Austria GmbH: delivered IAM blueprint, conducted risk assessments, developed transformation strategy and roadmap for client projects, and provided support in pre-sales activities to align solutions with client needs.
- Cashpoint Sportwetten GmbH: conducted ISO 27001:2022 gap analysis, enhanced ISMS processes, updated security training, aligned with ISO 27001:2022 standards, and improved vulnerability management practices through regular assessments and remediation planning.
- Hornbach Baumarkt AG: supported the CISO in achieving ISO 27001 compliance, implementing a secure software development lifecycle (SDLC), strengthening vulnerability management practices, and enhancing risk management frameworks.
- MHP Management- und IT-Beratung GmbH: created and reviewed security concepts aligned with ISO 27001 standards.
- Stromnetz Berlin GmbH: developed a comprehensive security concept based on ISO 27001 requirements.
- dmTech GmbH: conducted IT security training for employees, fostering awareness and adherence to security best practices.
- Finanz Informatik GmbH: managed PCI DSS-related tasks, including compliance assessments and control implementations.
- TIPS Messtechnik GmbH: conducted NIS2 gap analysis, developed a comprehensive compliance roadmap, and provided supportive actions to address identified gaps and ensure alignment with regulatory requirements.
Rene S.
Last position:
Head of Digital Services & IT at reet systems gmbh / THEOPHIL Holding GmbH
- Overall responsibility for IT, software development, and digital services of the company for brands such as Rosenberger, Rosehill, Burger King Austria (approx. 70 companies)
- Built the holding's lakehouse and data analytics platform
- Established and led the software development and IT department
- Established and led the operation (cloud-native AWS) of the B2B platform
- Connected IoT systems and developed models for predictive maintenance and production planning, data lake/lakehouse, and BI
- Preparation for ISO 27001 information security certification
- Technologies: Cloud, AWS, Java, Cypress, Angular, Python, Go
Lukas K.
Last position:
Chief Information Security Officer (CISO) at eurofunk Kappacher GmbH
- leading and developing information security team
- responsible for security decisions in customer projects (in sensitive public sector)
- ensuring that sophisticated compliance requirements are adequately met
Discover over 15,000 top freelancers
Certified Information Systems Security Professionals (CISSP) statistics
Aggregated from the professional profiles of matched freelancers.
Experience
21 years

Position duration
3.8 years

Positions per freelancer
9

Top business areas
Information Technology, Operations, Product Development

Top industries
Information Technology, Manufacturing, Professional Services

Certification focus areas
Information Technology, Project Management, Audit
Bachelor's degree or higher
83%
Master's degree or higher
83%

Certifications per freelancer
8

Most common languages
German, English, Arabic

Speak two or more languages
100%
Based on our profile pool as of 22 Sep 2026.
Daily rate distribution
The chart shows how the daily rates of experts holding this certification in Austria are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows the share of experts charging within that range.
Average rates for Certified Information Systems Security Professionals (CISSP) in Austria
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 22 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Certified Information Systems Security Professionals (CISSP) experts industry focus
See which industries our matched freelancers work in most often — every figure is calculated live from the freelancers on FRATCH.
- Information Technology (100%)
- Manufacturing (83%)
- Professional Services (67%)
- Education (50%)
- Banking and Finance (50%)
- Food and Beverage (33%)
- Healthcare (33%)
- Insurance (33%)
Please note that freelancers can work across multiple industries, so percentages overlap.
About the certification
What the CISSP credential represents
The Certified Information Systems Security Professional credential, issued by ISC2, is an advanced benchmark for information security leadership. It confirms an expert's competence in designing, building, and managing secure business environments. Professionals who earn this designation demonstrate mastery across technical controls, organizational governance, and regulatory requirements.
Core knowledge domains validated by ISC2
The qualification requires thorough competence across eight unified security domains:
- Security and Risk Management including compliance, governance, and business continuity
- Asset Security covering data classification, handling requirements, and privacy
- Security Architecture and Engineering spanning zero trust, cryptography, and system vulnerabilities
- Communication and Network Security addressing infrastructure controls and perimeter defense
- Identity and Access Management handling authentication mechanisms and authorization policies
- Security Assessment and Testing focused on vulnerability analysis and audit strategies
- Security Operations covering incident response, digital forensics, and operational resilience
- Software Development Security integrating security into the engineering lifecycle
Typical professional background
Holders of the credential typically operate as Chief Information Security Officers, cybersecurity architects, security managers, or principal risk advisors. They bridge the gap between technical operations and executive strategy. Organizations engaging these experts gain leaders capable of translating business objectives into defensible security architectures.
Relevance for organizations in Austria
Enterprises operating in Austria navigate strict European data privacy standards alongside sector-specific digital resilience mandates. Certified Information Systems Security Professionals guide Austrian institutions through compliance audits, risk posture assessments, and incident prevention frameworks. They integrate smoothly into multilingual environments, delivering advisory services either on-site in major Austrian commercial centers or through hybrid arrangements.
High-impact project scenarios
Organizations seek these independent security specialists during decisive phases:
- Designing enterprise cloud migrations with end-to-end encryption and boundary controls
- Developing operational resilience programs aligned with European cybersecurity directives
- Establishing incident management processes to contain active enterprise threats
- Auditing third-party supply chain risks and technical supplier dependencies
Assurance for hiring teams
Engaging a credentialed security specialist ensures direct access to verified expertise backed by substantial field practice. Candidates must fulfill cumulative work requirements across multiple security disciplines before earning the title. Their adherence to a strict professional code of ethics provides organizations with dependable, high-integrity governance.
Frequently asked questions
Key details about Certified Information Systems Security Professionals (CISSP), drawn from the questions we get asked most.
Holding the CISSP confirms that an expert possesses comprehensive cybersecurity knowledge across both technical and executive domains. It verifies that the professional understands enterprise risk mitigation, system architecture, identity governance, and operational resilience. For companies, it signals that the specialist can design and direct an entire enterprise security strategy.
While credentials like CEH focus heavily on hands-on penetration testing and CISA emphasizes audit execution, the Certified Information Systems Security Professional qualification centers on strategic security management and architecture. It prepares specialists to oversee security programs as a whole rather than focusing solely on individual operational tasks. Organizations typically rely on these experts to align technical defenses with business priorities.
Candidates pursuing the CISSP must demonstrate extensive practical security experience across at least two domains defined by ISC2. Those without sufficient field background can take the examination to become an Associate of ISC2 while earning the remaining practice requirements. In addition, an active credential holder must formally endorse each candidate to verify their professional history.
Maintaining an active CISSP requires completing continuing professional education credits over a recurring multi-year cycle. These credits reflect ongoing learning, technical contributions, industry conferences, and advanced research. Holders must also pay annual maintenance dues and consistently adhere to the professional code of ethics.
Companies in Austria face strict regulatory scrutiny regarding critical infrastructure protection and European privacy mandates. A freelance Certified Information Systems Security Professional helps local teams establish compliant architectures and defensible operational safeguards. Their background enables them to advise executive teams in German or English while aligning with both national guidelines and EU frameworks.
Most projects led by a CISSP accommodate remote collaboration, particularly during policy drafting, architecture reviews, and risk modeling. An on-site presence in Austria may be requested for physical security assessments, sensitive forensic investigations, or high-level board presentations. Teams frequently establish a hybrid rhythm that matches the operational sensitivity of the project.
The expertise verified by the CISSP is especially critical in heavily regulated sectors such as banking, insurance, healthcare, public administration, and industrial manufacturing. Any industry processing confidential customer records or maintaining critical operations benefits from their architectural oversight. These sectors require defense strategies capable of passing rigorous international security evaluations.
During cloud adoption, a Certified Information Systems Security Professional evaluates identity controls, data sovereignty risks, and boundary architectures across service models. They ensure that identity access policies, cryptographic key ownership, and operational monitoring stay resilient throughout the transition. Their guidance keeps organizations protected against misconfigurations and unauthorized exposure during infrastructure modernizations.
The average hourly rate for freelancers with Certified Information Systems Security Professionals (CISSP) in Austria is 129 €, which corresponds to a daily rate of about 1,035 € based on an 8-hour working day.
Of the freelancers with Certified Information Systems Security Professionals (CISSP) in Austria, 83% hold at least a Bachelor's degree and 83% hold at least a Master's degree.
On average, freelancers with Certified Information Systems Security Professionals (CISSP) in Austria have 21 years of professional experience, with a single engagement typically lasting around 3.8 years.
The most common languages among freelancers with Certified Information Systems Security Professionals (CISSP) in Austria are German (100%), English (100%), and Arabic (17%).
The most common industries among freelancers with Certified Information Systems Security Professionals (CISSP) in Austria are Information Technology (100%), Manufacturing (83%), and Professional Services (67%).
The most common business areas among freelancers with Certified Information Systems Security Professionals (CISSP) in Austria are Information Technology (100%), Operations (50%), and Product Development (50%).
FRATCH Certified Information Systems Security Professionals (CISSP) main locations
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Countries:
- Germany
- Austria
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!
