Business impact before technology
Risk work starts where services, obligations and decisions are affected.
Matthias Totzauer · Executive Cybersecurity
Security executive with more than 15 years of experience at the intersection of leadership, regulation, IT/OT architecture and operational delivery.
Executive profile
Matthias Totzauer works with boards, executives, and IT, security and operations leaders when security decisions must be made under time pressure, regulatory pressure or during complex transformation.
His approach combines an executive-ready risk picture with the technical substance required for realistic target states, transitions and priorities. The dialogue remains personal; accountability is not delegated to an anonymous delivery team.
Working principles
Risk work starts where services, obligations and decisions are affected.
A clear owner and a defensible decision are more valuable than a long action register.
Technical relationships are explored to the level required for an accountable decision.
Engagements build leadership and delivery capability that remains in the organisation.
Qualifications
Certified Information Systems Security Professional
Certified Information Security Manager
Information Security Management
Business Continuity Management
The Lead Auditor certifications document personal competence. ITCST does not provide independent certification or conformity audits.
Next step
Define the security need without obligation, or discuss the situation directly with Matthias Totzauer.