Zero Trust Experts in Munich
matched in minutes from over 15,000 CVs with the power of AI.Hire experts who design Zero Trust Architecture, set up ZTNA access, and tighten identity, device, and application controls across hybrid environments. Get fast, precise matching with vetted, available specialists.
Meet FRATCH Experts in Munich, who have recently used Zero Trust
Ljubomir Obrenovic
Last position:
Senior Software Test Engineer at Keil KTM GmbH
Temporary employment
- System black-box integration tests (BBIT, IVVQ): Execution of regression, release, acceptance, and compliance tests for safety-critical brake control units in the rail industry
- Software test application & integration: Runtime configuration of software components and libraries, validation of interfaces, configuration dependencies, and component interactions
- Test automation (FEAT framework): Co-development and further development of an automated test framework for test execution, reporting, and result analysis
- Functional safety (SiL4, FuSi): Ensuring compliance with safety requirements, traceability and coverage, as well as standards compliance according to EN50126/28/29
- Test automation for communication components: Configuration and validation of fieldbus (CAN) and Ethernet-based TCMS data communication interfaces (TRDP and CIP)
- Requirements analysis & shift-left (PTC Windchill ALM): Analysis of software and system artifacts to identify gaps, ambiguities, and redundancies early in the SDLC
- Test design & test case development: Derivation of test conditions, coverage strategies, and implementation of data-driven test cases (DDT), including reusable test data fixtures
- CI/CD & automation (Python, PowerShell, Jenkins, SVN): Automation of build, test, and HIL deployment processes as well as integration into CI/CD pipelines
- Test data & configuration management (XML): Maintenance and adaptation of XML test vectors and system configurations with automated integration into test environments
- Non-functional testing: Execution of performance and load tests to assess stability and system behavior
- Agile development & defect management (JIRA, Confluence): Participation in Scrum teams, test coordination, review of test artifacts, as well as defect tracking and root-cause analysis
- Error analysis & debugging (CANoe, CANalyzer): Analysis of errors and message flows across multiple system layers (application to bus)
- Model-based analysis (UML, Enterprise Architect): Specification of SUT/SOW and support for systematic test control
- Process & test documentation: Creation of integration and test documentation according to internal quality and certification requirements
Tezcan Dilshener
Last position:
Solution Architect / Project Manager at German Football Association
- Overall responsibility for the project lifecycle from scope definition to completion
- Close collaboration with platform teams, IT leaders, and external service providers
- Application of SAFe principles and structured sprint work
- Creation of a migration roadmap with clear milestones
- Monitoring of the lifecycle: onboarding, repository migration, replication of permissions, and system tests
- Visualization of the architecture with PlantUML and Gliffy as well as documentation in Confluence
- Regular status reports and running knowledge transfer sessions
Florian Krebs
Last position:
LAN Planner at Global Network AG
- As-is assessment of the current network infrastructure and its documentation, including on-site inspections
- Independent planning of new distribution and main distribution rooms in the individual district offices (components used, rack layout, connectivity), considering the BSI IT-Grundschutz and InfoSic requirements
- Planning of new copper and fiber optic cabling, including patch panels
- Coordination with building services engineering (TGA) to ensure compliance with relevant on-site requirements
- Development of detailed execution plans and high-level concepts for the rollout of the new infrastructure
- Additional support after the components go live (hypercare phase)
- Regular communication with project management and client stakeholders
Mohamad Dib-Skhni
Last position:
DevOps Engineer & IT-Security-Architect at BMW Group
- Set up Azure Kubernetes clusters (AKS) with network policies, security groups, and RBAC
- Developed Terraform-based infrastructure as code for secure, reproducible deployments in the BMW Azure cloud
- Hardened CI/CD pipelines using Jenkins, SonarQube, Fortify SSC, and Contrast AST
- Integrated SAP BTP/Kyma and ServiceNow GRC
Anton Lorani
Last position:
Freelance Software Developer at Anton Lorani Software&AI Engineering
Rallis Tsetinis
Last position:
Senior Project Manager Datacenter, Cloud, Network and Collocation at Noris Network AG
- Successfully led IT infrastructure projects with budgets up to €10M, including data center migrations and cloud transformations, improving operational efficiency by 30%.
- Managed project specifications, resources, and stakeholder alignment, delivering 95% of projects on time and within budget, ensuring seamless execution.
- Reduced project risks by 40% through proactive risk, cost, and claim management while maintaining 99.9% system uptime and effective C-level communication.
- Optimized team performance by 25% using agile methodologies like Scrum, enhancing service readiness and ensuring a 20% faster go-live for IT solutions.
Stephan Krausenegger
Last position:
Migration Coordination at ITZBund
- Analysis and assessment of government business processes with regard to migration capability
- Definition and preparation of the technical framework conditions in the new master data center
- Development and optimization of migration procedures and processes
- Transformation of existing solutions to new technical standards (technology refresh)
- Coordination of architecture and technical cross-cutting topics
Philipp Schmidt
Last position:
MS365 Consultant/Solution Architect at Self-employed
- Setup and configuration of an M365 tenant on a hybrid basis
- SSO integration of the existing app infrastructure like Metamost, Huhu, etc.
- License consulting, Entra ID initial configuration, MFA, Conditional Access, Privileged Identity Management
- Intune: initial configuration, Windows 11 Autopilot, iPhone AES
- Takeover of the tenant and preparation of a security audit
- Rollout of iPhones with AES (formerly DEP) as COPE (Corporate Owned, Business Enabled)
- Connecting external customers with enhanced security through Conditional Access
- Consulting on cloud-first strategy and migration to a cloud-only business
- Connecting various apps via SSO/SCIM (e.g. Atlassian, Personio, Adobe)
- On-premises AD: security audit and project management for replacing the local AD (migration of file servers, Navision2016, user clients joined to Entra ID)
- Copilot rollout with connection to external data sources and configuration via Intune
- Support for TISAX and ISO27001 preparation
- Setup and hardening of Entra ID, switching MFA to phishing resistant via Conditional Access
- Intune management for Windows and Apple clients, web enrollment switch to AES, introduction of Autopilot, app management, integration of Microsoft Defender
- Building a device baseline for Windows (COBO) and iOS/Android (BYOD)
- Teams/SharePoint Online: access concepts and integration into Teams
- Maintenance and backup of Entra ID and Intune tenants (drift management)
- M365 backup with Veeam
- Extending Conditional Access policies, introduction of Privileged Identity Management with hardware tokens and an on-premises admin tier concept
- Revision of existing GPOs regarding structure, security, and compliance
- Security audit and hardening of on-premises Active Directory and cloud tenant, SAML VPN, PIM introduction
- Support for the HR department in introducing a booking portal and general system engineering administration & security
- Introduction of Conditional Access and passwordless MFA, platform SSO, Defender for macOS/iOS, macOS compliance with Intune, Code2 signature configuration
Discover over 15,000 top freelancers
Statistics of experts using Zero Trust
Aggregated from the professional profiles of matched freelancers.
Experience
24 years (Germany: 21 years)
Position duration
2.1 years (Germany: 2.2 years)
Positions per freelancer
14 (Germany: 15)
Top business areas
Information Technology, Operations, Project Management
Top industries
Information Technology, Banking and Finance, Automotive
Certification focus areas
Information Technology, Project Management, Accounting
Bachelor's degree or higher
67% (Germany: 88%)
Master's degree or higher
33% (Germany: 60%)
Doctorate
17% (Germany: 12%)
Certifications per freelancer
7 (Germany: 9)
Most common languages
German, English, Spanish
Speak two or more languages
100% (Germany: 97%)
Based on our profile pool as of 30 Aug 2026.
Daily rate distribution
The chart shows how the daily rates of freelancers in this technology in Munich are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.
Average rates of experts in Munich using Zero Trust
Rates are based on recent contracts and do not include FRATCH margin.
The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.
The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.
Calculated based on our freelancers’ daily rates as of 30 Aug 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.
About the technology
Zero Trust basics
Zero Trust is a security model that does not trust any user, device, or network path by default. Access is granted only after verification, and it is limited to the exact resource needed. Companies use it to reduce lateral movement, protect internal apps, and secure remote work.
Common projects
- Identity-first access design
- Zero Trust Network Access, or ZTNA
- Segmentation for cloud and on-prem systems
- Policy design for sensitive applications
- Migration from VPN-heavy access models
Tooling and ecosystem
Zero Trust work often spans IAM, MFA, endpoint posture checks, SSO, and policy engines. Strong professionals know how to connect these parts across cloud services, private apps, and security gateways. They also understand how vendors differ in ZTNA, secure web access, and conditional access.
When companies bring in specialists
Teams usually need freelance expertise when access is fragmented, audits expose weak controls, or a VPN no longer fits the way people work. That is common in Munich environments with hybrid offices, regulated operations, and cross-border teams. Specialists help translate policy into working access flows without blocking daily work.
What strong professionals do
A strong Zero Trust specialist starts with identity, device trust, and application criticality. They map who needs access, define least-privilege rules, and test how policies behave under real use. They also document changes clearly so security, infrastructure, and application teams can support them.
Delivery and fit
Zero Trust projects succeed when design, rollout, and adoption stay aligned. The best experts can explain trade-offs in plain language, adjust policies without breaking workflows, and work well with security and platform teams. They bring practical experience with Zero Trust Architecture, ZTNA, and related access controls, not just theory.
Frequently asked questions
The facts hiring teams ask for most often when it comes to Zero Trust.
Zero Trust is used to control access to apps, data, and services based on identity, device state, and policy. It helps replace broad network trust with verified, least-privilege access. That matters when users work from home, from an office in Munich, or across cloud and on-prem systems.
Zero Trust narrows access to specific resources, while a VPN often places a user deeper inside the network. That reduces the risk of lateral movement after a credential is stolen. Many companies still keep VPNs for some cases, but they use ZTNA or conditional access for more precise control.
A strong Zero Trust specialist usually knows IAM, MFA, SSO, endpoint posture checks, segmentation, and policy design. Experience with cloud identity services and secure access gateways is often important too. The best people can also work across security and infrastructure without turning the rollout into a pure tool project.
Many Zero Trust initiatives are a good fit for freelance expertise because they are design-heavy and often time-bounded. A specialist can assess the current state, define the target model, and help with rollout and adoption. Companies often keep internal ownership for policy decisions and bring in outside support for implementation depth.
Zero Trust is the broader security model. ZTNA, or Zero Trust Network Access, is one common way to apply that model for private application access. In practice, companies often discuss both together because ZTNA is one of the most visible parts of a Zero Trust program.
A successful Zero Trust rollout starts with clear priorities: which users, apps, and data paths matter most. Good specialists avoid trying to redesign everything at once and instead build policies that people can actually use. They also test for exceptions, logging, and rollback before broad rollout.
Yes, many Zero Trust projects can be done remotely because most work is policy, architecture, and configuration. On-site time can still help for workshops, stakeholder alignment, or sensitive rollout phases. For Munich-based companies, a mix of remote delivery and occasional in-person sessions is often practical.
Look for someone who can explain the target architecture in plain language and tie it to real access flows. A good Zero Trust expert shows experience with identity, device trust, and application segmentation, not just product names. Ask for examples of rollout decisions, exception handling, and how they worked with security and platform teams.
The average hourly rate of freelancers in Munich, Germany who have used Zero Trust in their recent projects is 97 €, which corresponds to a daily rate of about 776 € based on an 8-hour working day.
Of the freelancers in Munich, Germany who have used Zero Trust in their recent projects, 67% hold at least a Bachelor's degree, 33% hold at least a Master's degree, and 17% hold a doctorate.
On average, freelancers in Munich, Germany who have used Zero Trust in their recent projects have 24 years of professional experience, with a single engagement typically lasting around 2.1 years.
The most common languages among freelancers in Munich, Germany who have used Zero Trust in their recent projects are German (100%), English (100%), and Spanish (25%).
The most common industries among freelancers in Munich, Germany who have used Zero Trust in their recent projects are Information Technology (100%), Banking and Finance (75%), and Automotive (63%).
The most common business areas among freelancers in Munich, Germany who have used Zero Trust in their recent projects are Information Technology (100%), Operations (75%), and Project Management (75%).
Main locations of FRATCH Experts, who have recently used Zero Trust
Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.
Request a free demo
Get in touch with the FRATCH team and we will get back to you within 4 hours.
Would you rather directly get in touch?
We always have the time for a call or email!

Berlin
Cologne
Frankfurt