Skip to main content
🇩🇪GDPR-compliant
Find proven cybersecurity talent with a

CompTIA Security+

certification in Frankfurt in minutes from 15,000 CVs with the power of AI

Security+, the CompTIA entry-level security certification, points to practical skills in threat awareness, risk response, identity and access basics, and secure network operations. Get fast, precise matching with vetted freelancers holding this certification.

Meet FRATCH CompTIA Security+ in Frankfurt, DE

Verified expert

Firas Jradi

View profile

IT Governance & IT Compliance Expert

Friedberg
Firas Jradi

Last position:

Interim Management Group Head of IT Governance & IAM at French-German Private Bank

  • Head of the group-wide, international, and cross-functional IT Governance & IAM department within the central IT division of a large French-German private banking group. Disciplinary management of around 30 employees at five different locations within the group (Frankfurt, Paris, Tunis, Saarbrücken, Düsseldorf). Head of IT committees and key role in direct communication with management, the supervisory board, external stakeholders, and regulators.
  • Definition and establishment of a state-of-the-art IT strategy process and related IT governance structures for the group's IT department with more than 600 employees (testified by the German Federal Financial Supervisory Authority and the ACPR) and successful process run.
  • Establishment of a new future-oriented process framework for IT and necessary governance structures (process squads) for the continuous improvement of IT processes with regard to new regulatory requirements (including DORA, EU AI Act, etc.).
  • Establishment of stringent processes to close a historical backlog of findings (> 100 IT findings, 40 overdue findings in 2022) from internal and external auditors (WP, ACPR, BaFin). Successful reduction of stock of overdue findings to 0 at the end of 2025.
  • Supporting more than 20 IT audits per year and establishment of regulatory monitoring processes. Introduction of ServiceNow to revolutionize regulatory change and IT compliance processes with advanced AI functionalities.
  • Realignment of IT control processes in conjunction with the newly established ICT risk function under DORA and the three lines of defense concept using the TopEase GRC solution.
  • Reduction of the application landscape, by systematically analysing the purpose with application and business owners, identifying duplicates while implementing a One-Tool Strategy throughout the group. Successful reduction of one third of the application landscape within the CMDB.
  • Onboarding of all group applications into One Identity's group-wide IAM solution, as well as operation and further development of the solution in connection with segregation of duties (SoD), role-based access management (RBAC), etc.
Verified expert

Dustin Dehez

View profile

Regulatory Risk Executive | Risk Governance & 2nd LoD in Banking | EU AI Act, DORA, MaRisk, NFR | CEO Secori Advisors GmbH

Bad Homburg
Dustin Dehez

Last position:

External consultant at Deutsche Leasing

2nd LoD/Change the Bank (CtB)

  • CtB: External consultant and workstream lead for rectifying findings by BaFin following a special IT audit in the 2nd LoD, management of the work package for revising the ICT Risk Management & ICT Asset Classification in accordance with DORA Chapter 2, the processes for structural analysis, protection requirements, and control assessments (4 FTEs).
Verified expert

Robert Francia

View profile

Interim Project Manager

Kriftel
Robert Francia

Last position:

Interim Project Manager at IT services company of a regional energy supplier

  • Delivery of various end-customer projects in server and network infrastructure on time, in quality, and within budget.
  • Project 1: Firewall renewal, replacement of an ASA firewall with a Fortinet firewall at an automotive supplier.
  • Project 2: Migration of file services from dedicated servers at 5 branch locations into a central managed file service, including DHCP, directory, and print services, as well as decommissioning of the old domain controllers.
  • Project 3: Renewal of the network infrastructure at the headquarters and branch locations of a logistics company and transition of the LAN, WLAN, and firewall environments into a managed network service.
  • Project 4: Network renewal, replacement of the core and access switches at the headquarters of a medical technology company and transition into a managed network service.
  • Project 5: Firewall renewal, replacement of an ASA firewall with a Fortinet firewall for a city.
  • Environment: ASA and Fortinet firewalls, Cisco network components, ITSM Heat/Ivanti, Confluence.
Verified expert

Mario Pucko

View profile

Senior IT Project Manager / Program Lead – Network Strategy 2030

Frankfurt am Main
Mario Pucko

Last position:

Senior IT Project Manager / Program Lead – Network Strategy 2030 at ALDB GmbH

  • Holistic responsibility for modernizing and expanding federal networks and upgrading critical data center and telecom infrastructure in the high-security agency environment of BDBOS
  • Planning and management of the expansion of national BOS network infrastructure in the VS-NfD/KRITIS environment with technical decision authority at the architecture and component level (Cisco, Layer 2/3, WAN redundancy)
  • Planning, tendering (EVB-IT/UVgO) and oversight of the upgrade of security-critical telecom infrastructure for emergency call 110/112 (ACD)
  • Capacity planning, rack integration, structured cabling, power supply, cooling concept (CRAC/In-Row) and DCIM monitoring for data center expansion
  • Building the IT department from scratch: structures, governance, processes, team recruiting, vendor selection and long-term IT strategy
  • Planning and managing infrastructure and application migrations: migration strategies, batch planning, hypercare stabilization and rollback concepts
  • Creating vendor-neutral specifications (telecom systems, signature solutions) according to EVB-IT and UVgO; contract award and vendor management
  • Setting up a secure IT environment according to BSI basic protection, ISO 27001 and VS-NfD; developing IT security concepts and CMDB analyses
  • Hands-on program leadership: decision papers for management and steering committees, risk management, reporting and change request control
Verified expert

Parthiban Mohanraj

View profile

Quality Assurance Engineer

Bad Homburg vor der Höhe
Parthiban Mohanraj

Last position:

Quality Assurance Engineer at Hanon Systems GmbH

  • Define the QA strategy and plan for the above mentioned OEMs project.

  • Identify applicable processes, methods, and standards to be followed (eg, GS_95014, KGAS, ISO/IEC 15504, ISO 26262, ISO 21434, etc.).

  • Plan reviews, audits, and assessments as per the strategy.

  • Check whether the project follows defined processes (System, software, mechanical, hardware, testing, change, configuration, problem, risk etc.) as per strategy.

  • Provide QA support to software process: software requirement analysis, software architectural design, software detailed design and unit construction, software unit verification, software component verification and integration verification, software verification processes.

  • Monitor compliance with organization-wide and project-specific standards.

  • Verify that deviations are documented and escalated.

  • Review work products (requirements, design docs, test cases, code, reports (MISRA, C0, C1, coding standards), etc.).

  • Check compliance with standards, templates, and checklists.

  • Ensure that bi-directional traceability exists (e.g., requirements ↔ design ↔ tests).

  • Give objective evidence (not influenced by delivery pressure) during assessments.

  • Identify non-conformances (process not followed, missing approvals, wrong standard).

  • Report deviations and track them until closure.

  • Verify that corrective actions are implemented (5why, Ishikawa, 8D, FMEA, FTA, DFM, DRP, PCC, LLBP, PDCA).

  • Provide QA status reports to management and project stakeholders.

  • Highlight risks related to process non-compliance.

  • Deliver objective evidence for assessments/audits (e.g., ASPICE, ISO/IEC 15504, ISO 26262, ISO 21434, ISO_PAS_8800).

  • Collect and analyze QA findings.

  • Suggest process improvements.

  • Support lessons learned activities.

  • Achieved ASPICE Level 1 and Level 2 for multiple Audi and Mercedes-Benz projects assessments.

Verified expert

Tan Pham

View profile

DevOps & Fullstack Engineer

Hanau
Tan Pham

Last position:

DevOps Engineer in the DevOps Team at Rise-World

  • Implementation of specified DevOps solutions to automate infrastructure (Terraform, Bicep, CloudFormation, Ansible) on-premises datacenter (Ovirt, Proxmox, Ceph Cluster, MinIO) and private cloud.
  • Administration, configuration and implementation of CI/CD DevOps pipelines (GitLab, GitFlow) to support development process (Artifactory, Prometheus, Istio, service mesh, Helm Chart, OpenShift (Red Hat Enterprise) / Kubernetes cluster), Red Hat Satellite.
  • Administration, setup, monitoring and patching of Linux infrastructure based on Red Hat Enterprise for Dev, Test and QA.
  • Use of Scrum and Kanban methods.
  • Administration, configuration and implementation of security standards for deploying on Dev, Test, QA and Prod stages of the new ePA applications.
  • Development of new plugins and add-ons needed on current infrastructure.
  • Database support.
  • Data analytics support (Python, Spark, Pandas, Power BI, Splunk Enterprise).
  • Implementation of best practices for DevSecOps and BizDevOps using GitOps (ArgoCD), Streamlit framework, Semaphore Ansible UI.
  • Configuration and testing of iperf, uperf, sysbench using benchmark-operator for external source data and IoT/MDM devices, creating reports via ELK / OpenSearch.
  • Building a new Databricks platform to collect and analyze big data from different sources and IoT devices into Hadoop framework (Python, Pandas, PySpark, Power BI, Apache Airflow).
  • Building backend data aggregation and processing to automate configuration deployment between different OpenShift clusters and big data framework (Python, Pandas, PySpark, Apache Spark, PostgreSQL, Django 2, Ansible Automation, Jira JSM).
  • Building a new ML pipeline platform using Kubeflow, TensorFlow, KServe.
  • Data extraction, transformation and loading from different data sources including structured and unstructured data to analytic DWH / big data cluster using Python, Pandas, Polars, Power BI, Django backend and PostgreSQL.
  • Setup of new DevOps Test and QA HashiCorp Vault cluster for PKI and IAM.
  • Configuration and testing of automated patching based on CVSS score, SIEM-integrated CVEs.
  • Use of Nexpose and InsightVM to scan vulnerability events in network, host, container and application.
  • Design and implementation of secure and scalable AWS architectures including VPC, EC2, S3, RDS and Route53 and similar setups on Azure and GCP.
  • Automated system provisioning and deployment using CloudFormation templates.
  • Configuration of IAM roles, policies and permissions to ensure secure access control.
  • Patch management, backup automation and disaster recovery setup on AWS infrastructure.
  • Monitoring and optimization of system performance using AWS CloudWatch and AWS Trusted Advisor.
  • Support of VMware services (vSphere, Aria, Horizon) and the virtual desktop environment.
  • Development and maintenance of CI/CD pipelines using Jenkins, GitLab CI/CD and AWS CodePipeline with interface to Nutanix.
  • Configuration of AWS CloudWatch to monitor application performance and system events.
  • Planning and execution of migration of on-premises applications to AWS cloud platforms.
  • Deployment of containerized applications using Docker and Kubernetes in AWS environments.
  • Deployment of internal software packages between availability zones using AWS CodeDeploy.
  • Building and deploying ML models using Scikit-learn, XGBoost and Spark MLlib including hyperparameter tuning, model evaluation and production deployment.
Verified expert

Najat Diamante

View profile

Data Protection Officer, Auditor and ICT Risk Control Function

Großkrotzenburg
Najat Diamante

Last position:

Freelance Consultant Microsoft Purview at Bechtlee IT-Systemhaus

  • Design and global rollout of sensitivity labels (confidentiality labels) for automated classification and encryption of business-critical data.
  • Definition and rollout of Data Loss Prevention (DLP) policies to protect IP and personal data across endpoints, Exchange, SharePoint, Teams, and non-Microsoft clouds.
  • Setup of Insider Risk Management policies to detect and contain excessive data leaks and risky user behavior.
  • Implementation of GDPR and retention requirements through automated retention policies and structured records management.
  • Technical support for legal teams in internal and external investigations using eDiscovery (Standard/Premium) and Content Search.
  • Continuous improvement of the security and compliance level by reviewing the Microsoft Compliance Manager and closing gaps (regulations such as ISO 27001, NIS-2)
Verified expert

Thomas Hartung

View profile

Project Manager & Tender Manager

Frankfurt am Main
Thomas Hartung

Last position:

Project Manager & Tender Manager at GEA Group AG

  • Implemented an access control solution and prepared tender documents for a visitor management system.
  • As project manager, I was responsible for the successful rollout of a cloud-based access control system for two sites with around 4,000 employees.
  • Accountable for the successful execution of the project.
  • Created and aligned project plans and status reports with all stakeholders.
  • Prepared/coordinated an initial effort or cost estimate and related planning for operational services implementation.
  • Identified interfaces.
  • Ensured budget and schedule compliance.
  • As tender manager / demand manager, the following specific tasks were my responsibility:
  • Analyzing potential suppliers.
  • Gathering requirements.
  • Creating and aligning the requirements catalog.
  • Developing an evaluation matrix.
  • Preparing the tender documents.
Verified expert

Mouad Oulad M’hand

View profile

Project Management Consultant

Frankfurt
Mouad Oulad M’hand

Last position:

Project Management Consultant at Joynext GmbH

  • Planning and controlling qualification tests and the delivery of software components (SWC)
  • Consulting and support in stakeholder management
  • Checking work packages for compliance with ISO 29119
  • Single Point of Contact (SPOC) for the Porsche and Bentley brands
  • Regular reporting to the customer and internal management
  • Tools / processes: KPM, Azure DevOps, JIRA, Confluence, MS Project, ISO 26262
Verified expert

Andreas Ilias

View profile

Senior Cybersecurity Governance & ISMS Consultant

Frankfurt am Main
Andreas Ilias

Last position:

Cybersecurity Specialist Assessor at Bundesnetzagentur

  • Recognition of national notified bodies
  • Preparation of cybersecurity competency reports
  • EU Radio Equipment Directive
Verified expert

Marco Trautmann

View profile

Chief Financial Officer & ExCo Member

Bad Soden am Taunus
Marco Trautmann

Last position:

Chief Financial Officer & ExCo Member at Senacor Technologies AG

  • Led assessment and preparation for finance and business management transformation including roll-out of SAP S/4 HANA Cloud, Public Edition.
  • Enhanced financial and project reporting by streamlining tools and introducing a management dashboard.
  • Introduced opportunity management reporting as part of business operations activities.
  • Prepared annual financial statements (HGB).
  • Directed annual budget development and aligned it with the ExCo.
Verified expert

Markus Marschollek

View profile

Project Manager / Senior Consultant (multiple projects)

Frankfurt am Main
Markus Marschollek

Last position:

Project Manager / Senior Consultant (multiple projects) at gkv informatik

  • Project manager controlling the update to ISO 27001:2022 (certification from ISO 27002:2013 to ISO 27002:2022) including gap analysis, project planning, preparation of internal and external audits, and creation and maintenance of required documentation.
  • Coordination of adjusting existing measures and implementing new measures according to the new standard’s requirements, as well as continuous monitoring and adjustment of these measures.
  • Regular reporting to management on progress and risks.
  • Senior consultant supporting audit reviews with a focus on critical infrastructures (KRITIS), including resolving findings, creating and updating evidence documents, and amending provider contracts.
  • Senior consultant reviewing all deliverables and responsibilities of the IT provider according to the existing contract: identification of over 1500 deliverables & obligations (D&O), setup of a D&O tracker (claim register), and joint expert review with service owners for various service descriptions (e.g. IT service management, workplace and print services, application and desktop services, endpoint management, email including archiving, file services, software packaging, certification, distribution).
  • Senior consultant adjusting service scopes in existing service descriptions to enable end-to-end service responsibility of the provider, including identification and analysis of use cases, process analysis and optimization (incident, problem, change), as well as recording and documenting all software products in LeanIX and documenting the contract change.
  • Focused services: managed software service, application and desktop service, workplace and print services, web server service, container service, M365, SAP/Oscare, output management systems (OMS), telephony and omnichannel management service.
  • Project manager steering a benchmark based on the existing IT contract, including coordination of the entire benchmark process between the benchmarker, IT provider and client, review of benchmark results, and preparation and conduct of price negotiations with the IT provider.
Verified expert

Fabrizio Di Carlo

View profile

Managing Director

Frankfurt
Fabrizio Di Carlo

Last position:

Managing Director at ContrailRisks Germany

  • Founded and lead a cybersecurity advisory firm focused on virtual CISO services for financial, SaaS, and critical infrastructure clients.
  • Advise executive teams on cyber risk, regulatory compliance (DORA, NIS2, ISO 27001), and incident preparedness.
  • Built and executed security programs from scratch, driving measurable maturity improvements.
  • Delivered tailored risk assessments, policies, and cloud security guidance (AWS, Azure).
  • Scaled the business through client acquisition, partnerships (Vanta, AWS, etc), and a network of senior consultants.
Verified expert

Muaadh Abo-Al Rejal

View profile

Product Lead, System Development – Active Sound System (EV)

Darmstadt
Muaadh Abo-Al Rejal

Last position:

Product Lead, System Development – Active Sound System (EV) at CARIAD, Volkswagen Group

  • Systems & Requirements Engineering: Requirements elicitation, traceability, and change management across the V-model
  • System-level responsibility for Active Sound and AVAS functions within hybrid and electric vehicle programs
  • Definition, refinement, and maintenance of system and software requirements with strong focus on AVAS regulatory compliance
  • Management of development backlog and user stories within SAFe PI cadence, ensuring clear acceptance criteria
  • Analysis and assessment of change requests, including impact on system behavior and delivery timelines
  • System interface between software development, vehicle integration, testing, and homologation stakeholders
  • Coordination of system, software, and vehicle-level testing, including support of homologation-relevant validation activities
  • Support of feature releases and integration across multiple vehicle platforms and variants
  • Development and delivery aligned with ASPICE Level 2 processes and internal quality standards, including system and vehicle-level validation, test drive support, and homologation-relevant activities
  • Ensuring functional safety (ISO 26262) and automotive cybersecurity (ISO 21434) compliance within system development contexts
  • Compliance with ASPICE processes, EuroNCAP requirements, and vehicle-level regulatory and homologation constraints

Discover over 15,000 top freelancers

CompTIA Security+ statistics

Aggregated from the professional profiles of matched freelancers.

Experience

21 years (Germany: 22 years)

Position duration

2 years (Germany: 3.1 years)

Positions per freelancer

15 (Germany: 14)

Top business areas

Information Technology, Project Management, Operations

Top industries

Information Technology, Banking and Finance, Professional Services

Certification focus areas

Information Technology, Project Management, Quality Assurance

Bachelor's degree or higher

96% (Germany: 88%)

Master's degree or higher

58% (Germany: 53%)

Doctorate

4% (Germany: 9%)

Certifications per freelancer

8 (Germany: 9)

Most common languages

English, German, French

Speak two or more languages

100% (Germany: 97%)

Based on our profile pool as of 30 Aug 2026.

Daily rate distribution

0 3 6 9 12
<€480 €640-​800 €800-​960 €960-​1120 €1120-​1280 €1280+

The chart shows how the daily rates of freelancers holding this certification in Frankfurt, DE are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.

Average rates for CompTIA Security+ in Frankfurt, DE

Rates are based on recent contracts and do not include FRATCH margin.

1000
750
500
250
Rate comparison chart
Daily rate avg. 912 €
Germany avg. 885 €

The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.

1000
750
500
250
Rate comparison chart
Median rate 920 €
Germany median 880 €

The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.

Calculated based on our freelancers’ daily rates as of 30 Aug 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.

About the certification

What Security+ proves

CompTIA Security+ shows that a freelancer understands the core security concepts used in day-to-day IT work. It is a broad, vendor-neutral certification for people who need to spot risk, support secure systems, and work safely across networks, endpoints, and cloud-connected environments.

Core skills

  • Identify common threats, attacks, and vulnerabilities
  • Apply basic risk management and incident response steps
  • Use identity, access, and authentication controls
  • Support secure network and system configuration
  • Recognize security issues in cloud, mobile, and hybrid setups
  • Follow governance, policy, and compliance requirements

Typical holders

Security+ is often held by junior to mid-level security professionals, support engineers, system administrators, and consultants moving into cybersecurity. It is also common among freelancers who help companies strengthen baseline security, review controls, or support internal IT teams that need extra security coverage.

Why it matters in Frankfurt

In Frankfurt, Security+ can be a useful signal for companies that want help with security-minded IT work in finance, enterprise infrastructure, logistics, and regulated environments. It helps when a freelancer must collaborate on-site with internal teams or work remotely with clear process discipline and solid security language.

What to expect from a Security+ freelancer

A freelancer with this certification should be able to talk clearly about threats, hardening, monitoring, and response without drifting into theory alone. They are usually a good fit for security support tasks, policy-aligned implementation work, and projects where the company needs dependable fundamentals before deeper specialization.

Preparation and renewal

Security+ is designed as a foundational certification, so preparation usually combines security concepts with practical lab work and scenario-based study. CompTIA also expects holders to keep the certification current through its renewal process. For companies, that means the credential is meant to reflect active, up-to-date security knowledge rather than a one-time exam result.

Published on:
FRATCH GPT

FRATCH GPT delivers freelancer proposals with clear reasoning and transparent pricing in minutes, helping your hiring department quickly and compliantly find the best talent.

Give it a try:

Try FRATCH GPT

Frequently asked questions

Curious about CompTIA Security+? Here are the answers that come up again and again.

CompTIA Security+ validates practical baseline knowledge of cybersecurity. It covers threats, vulnerabilities, access control, risk handling, incident basics, and secure operations across common IT environments. For a company, it is a strong sign that the freelancer can work with security fundamentals in a structured way.

Security+ is often considered an entry-level certification, but it is not limited to one job title. Many support engineers, administrators, and consultants hold Security+ because they need security knowledge in daily work. It is especially useful when a role touches both operations and security.

CompTIA Security+ is broader and more foundational than advanced certifications such as CISSP. It focuses on core concepts and practical understanding, while more senior credentials go deeper into architecture, governance, and leadership. Companies often use Security+ as a sign of solid baseline capability, not deep specialization.

Freelancers who support IT operations, infrastructure, help desk security tasks, or junior security work often benefit from Security+. It is a good fit for people who need to show they understand common risks and can follow secure procedures. It also helps when a client expects a vendor-neutral certificate that is widely recognized.

Before studying for CompTIA Security+, it helps to be comfortable with basic networking, operating systems, and common IT terms. The exam is known for practical, scenario-based questions rather than pure memorization. Hands-on exposure to security tools and troubleshooting makes preparation easier.

CompTIA does not frame Security+ as a certification with strict formal prerequisites in the way some advanced credentials do. That said, real-world IT experience or a solid technical foundation makes the material much easier to absorb. Many candidates prepare after working in support, systems, or networking roles.

Security+ is maintained through CompTIA’s continuing education process. That usually means keeping skills current through approved activities rather than treating the credential as permanent. For employers, this is useful because it encourages holders to stay aligned with current security practice.

Security+ matters most in projects that need secure implementation, policy-aware operations, or support for controlled environments. That includes access management, endpoint hardening, incident preparation, and general security improvement work. In Frankfurt, it can be especially relevant for companies that need reliable security fundamentals in regulated or enterprise settings.

The average hourly rate for freelancers with CompTIA Security+ in Frankfurt, DE is 114 €, which corresponds to a daily rate of about 912 € based on an 8-hour working day.

Of the freelancers with CompTIA Security+ in Frankfurt, DE, 96% hold at least a Bachelor's degree, 58% hold at least a Master's degree, and 4% hold a doctorate.

On average, freelancers with CompTIA Security+ in Frankfurt, DE have 21 years of professional experience, with a single engagement typically lasting around 2 years.

The most common languages among freelancers with CompTIA Security+ in Frankfurt, DE are English (100%), German (97%), and French (31%).

The most common industries among freelancers with CompTIA Security+ in Frankfurt, DE are Information Technology (83%), Banking and Finance (72%), and Professional Services (59%).

The most common business areas among freelancers with CompTIA Security+ in Frankfurt, DE are Information Technology (93%), Project Management (83%), and Operations (76%).

FRATCH CompTIA Security+ main locations

Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.

Request a free demo

Get in touch with the FRATCH team and we will get back to you within 4 hours.

Contact form

Would you rather directly get in touch?
We always have the time for a call or email!

FRATCH CEO avatar

Philipp Thomaschewski

FRATCH CEO

LinkedInFRATCH