Károly Aczél-NIS2 & Risk Strategy Consultant

Check rate
Experience
NIS2 & Risk Strategy Consultant
RRC power solutions GmbH
- Developed a compliant information security management system (ISMS)
- Advanced a modern risk management framework based on NIST for NIS2 compliance
Governance and Data Compliance Head
Steigenberger Hotels GmbH
- Implemented a governance framework for hotels in Middle East, Western Europe, and Africa
- Focused on regulatory compliance including GDPR
- Established ISO 27001-compliant information security management system (ISMS)
- Built a modern risk management system
- Ensured tax compliance and cross-country IT governance
- Addressed PCI DSS requirements
Interim Head of Global IT Security Awareness and Communication
Amer Sports Group
- Led and managed the global cybersecurity awareness program
- Served as global communication officer for the cybersecurity awareness program aligned with ISO 27001
Risk Handling & Information Security Consultant
EWE Tel GmbH
- Conducted risk analyses to identify gaps across three legal entities
- Documented and mapped processes and set up strategic risk management
- Developed a training concept and enabled employees to meet risk management standards and regulatory requirements
- Worked with standards NIS2, ISO 27001, ISO 9001, ISO 50001
Risk Management Consultant
ivv – Informationsverarbeitung für Versicherungen
- Audited internal processes for regulatory compliance
- Identified and defined mitigation measures for non-compliant processes
- Focused on NIS2 and DORA compliance
Senior Project Manager Cybersecurity
RWE AG
- Implemented the cybersecurity strategy for two of five business units (Renewables – OPEA & OFF)
- Aligned with KRITIS, NIS2, NIST, and ISO 27001 standards and frameworks
- Led the Renewables team and managed budget and project planning
- Handled risk management and project management
- Provided employee training and served as liaison for Renewables within the RWE Group
ISO 27001 Certification Consultant
Sensirion Connected Solutions AG
- Supported the ISO 27001 certification process
- Developed policies, statement of applicability, documentation, and risk matrix
- Defined processes and conducted employee training
CISO, Head Risk & Compliance
Bär & Karrer AG
Built and operated an information security unit to achieve ISO 27001 objectives
Developed and maintained security documentation, security policies, and GDPR leadership
Managed information security projects and external service providers
Planned and conducted internal audits, supported customer and certification audits
Coordinated and delivered security awareness training
Developed, implemented, and reviewed risk strategy and risk-related policies
Integrated policies into processes, workflows, and systems
Monitored risk parameters and ensured measures for risk reduction
Directed compliance strategy and enhanced compliance systems
Risk & Integrity and Controlling Manager
ZZ Vermögensberatung (Schweiz) AG
- Established, implemented, and continuously monitored risk management per FINMA requirements for three funds
- Acted as stakeholder contact for banks, authorities, and board of directors
- Prepared quarterly risk reports for management, board, and banks
- Prepared application for asset manager license (KAG, FINMA)
- Introduced an investment compliance system (MIG 21) and compliance processes including policies and regulations
- Conducted regular compliance training and managed internal and external training programs
- Performed strategic controlling for group companies (hotels, clinic, real estate)
- Developed, monitored, and consolidated monthly reporting for group companies
- Delivered quarterly and annual strategic guidance and group financial statements
Financial Analyst
P&R Equipment and Finance Corp.
- Identified, analyzed, and managed risks using quantitative approaches
- Reviewed monthly and quarterly financial statements and results
- Prepared, analyzed, and commented on income statements, balance sheets, and contribution margin reports
- Designed, implemented, and maintained group controlling for investment pools
- Enhanced reporting and key performance indicator systems
- Managed budgeting and forecasting including liquidity management
- Produced controlling and management reports
Capital Market Sales
Bank Reuschel
Capital Market Sales
Deutsche Bank
Investment Manager
Invision Private Equity
Trade & Marketing
Small Business Administration
Investment Controller
TDF Ecotech AG
Industry experience
See where this freelancer has spent most of their professional time.
Experienced in Professional Services, Banking and Finance, Government and Administration, Energy, Tourism, and Sport.
Business area experience
See which departments and functions this freelancer has contributed to most.
Experienced in Finance, Information Technology, Audit, Project Management, Accounting, and Investments and M&A.
Summary
- Industry-wide recognized expert in information security (ISO 27001 / NIS2 / DORA / KRITIS / (B,K,V)-AIT and risk management)
- Many years of leadership experience as CISO & Head of Risk and Compliance for various companies in Switzerland & Germany
- Holder of certificates in ISO 27001 & Auditor, CISM, AI Security, Compliance & Risk, MBA (Finance)
- A leader with strong entrepreneurial and business thinking and acting, multilingual communicator
Skills
- Standards: Iso 27001, Nis2, Dora, (B)(K)(V)Ait, Bsi It-Grundschutz, Kritis, Nist, Kag (Finma), Iso 9001
- Accounting/Reporting: Ifrs, Hgb, Us-Gaap, Sox, Offshore Tax Law
- It: Very Good Knowledge Of Bloomberg, Mig 21, Sage, Rimo R4, Sap R/3 (Co), Ms Word, Excel (Vba, Macro), Powerpoint, Project, Outlook, Lotus Notes, Sw-Office, Citrix, Mesonic, Paragon, Mac Os
- Strong Willingness To Learn And Perform
- High Degree Of Self-Initiative
- Detail-Oriented, Precise, And Committed Working Style
- Excellent Communication Skills
Languages
Education
Pacific States University
Master of Business Administration, specialization in Finance · Business Administration · Los Angeles, United States
Fachhochschule Rosenheim
Diploma in Business Administration (FH), specialization in Controlling, Taxation & Auditing · Business Administration · Rosenheim, Germany
University of Hertfordshire
Erasmus exchange student · Hatfield, United Kingdom
Certifications & licenses
Certified AI eMail Security Specialist
CISM
Cyber Crime & Digital Forensics
Forentec GmbH, CH
Cyber Threats
Swiss Infosec, CH
ISO / IEC 27001 Foundation
Digicomp Academy AG, CH
Statistics
Experience
Global experience
Expertise
Qualifications
Profile
Frequently asked questions
Have questions? Find more information here.
Károly is based in Zug, Switzerland and can operate in on-site, hybrid, and remote work models.
Károly speaks the following languages: German (Native), English (Advanced), Hungarian (Advanced).
Károly has at least 19 years of experience. During this time, Károly has worked in at least 14 different roles and for 15 different companies. The average length of individual experience is 1 year and 3 months. Note that Károly may not have shared all experience and actually has more experience.
Based on recent experience, Károly would be well-suited for roles such as: NIS2 & Risk Strategy Consultant, Governance and Data Compliance Head, Interim Head of Global IT Security Awareness and Communication.
Károly's most recent position is NIS2 & Risk Strategy Consultant at RRC power solutions GmbH.
In recent years, Károly has worked for RRC power solutions GmbH, Steigenberger Hotels GmbH, Amer Sports Group, EWE Tel GmbH, and ivv – Informationsverarbeitung für Versicherungen.
Károly is most experienced in industries like Professional Services, Banking and Finance, and Government and Administration. Károly also has some experience in Energy, Tourism, and Sport.
Károly is most experienced in business areas like Finance, Information Technology, and Accounting. Károly also has some experience in Project Management, Audit, and Investments and M&A.
Károly has recently worked in industries like Professional Services, Energy, and Tourism.
Károly has recently worked in business areas like Information Technology, Project Management, and Audit.
Károly holds a Master in Business Administration from Pacific States University and a Bachelor in Business Administration from Fachhochschule Rosenheim.
Károly has 5 certificates. Among them, these include: Certified AI eMail Security Specialist, CISM, and Cyber Crime & Digital Forensics.
The availability of Károly needs to be confirmed.
Daily rate distribution
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 6 Sep 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
Similar freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a NIS2 & Risk Strategy Consultant
Nearby freelancers
Professionals working in or nearby Zug, Switzerland
