Andreas Jüngel

Head of Information Security

Berlin Metropolitan Area

About

With a solid background exceeding 20 years in cybersecurity, I am the Cybersecurity Transformation Lead Manager at Alstom, focusing on bridging IT and product security to safeguard company assets. My mission resonates with Alstom's commitment to excellence, as I instill robust cybersecurity practices into the core of our operations. My expertise in managing multimillion-euro projects and fostering cybersecurity awareness positions me to contribute substantial value to the organization. My role as the Cybersecurity Transformation Lead Manager has allowed me to lead a dedicated team in delivering strategic IT security solutions, managing a significant budget, and achieving our security objectives. We've not only enhanced our security posture through rigorous penetration tests and audits but also laid the groundwork for ISMS implementation and ISO 27001 certification, ensuring comprehensive compliance across IT services.

Experience

  • Head of Information Security at Spryker
    Mar 2025 - Present · 1 yr 4 mos

  • Alstom (Full-time · 4 yrs 2 mos)
    • Cybersecurity Transformation Lead Manager
      Jun 2022 - Mar 2025 · 2 yrs 10 mos

      Leading a team of five project managers to successfully deliver IT security solutions with a budget of up to €4 million. Ensured the achievement of IT security objectives within various programs while fostering synergies between IT security and product security initiatives. Championed the corporate cybersecurity awareness program, effectively managing the execution of security awareness activities.

    • Head of Cyber Risk Governance
      Feb 2021 - Mar 2025 · 4 yrs 2 mos

      Managed IT security policies and standards, identifying operational exceptions and mitigating cybersecurity risks. Executed penetration tests and audits to enhance security posture. Led the organization in preparation for ISMS implementation and ISO 27001 certification. Defined and established a comprehensive security services portfolio, ensuring compliance among IT service providers.

  • Head of CSIRT at BOMBARDIER
    May 2015 - Feb 2021 · 5 yrs 10 mos

    Oversaw the management of the outsourced Security Operation Center to enhance security monitoring and response capabilities. Led the Computer Security Incident Response Team (CSIRT) to effectively address and mitigate security incidents. Developed and managed security policies, directives, and standards to ensure compliance and best practices. Assessed and managed IT security risks, implementing strategies to safeguard organizational assets. Streamlined operational security processes to improve efficiency and effectiveness across the organization. Directed the Bombardier security awareness program, fostering a culture of security mindfulness among employees.

  • Head of IT Planning and Security at Redknee
    Apr 2013 - Apr 2015 · 2 yrs 1 mo

    Redknee acquires BSS business line from Nokia Siemens Networks. • managed the daily operations of an international team of 13 IT Network and Security specialists in worldwide over 50 projects • consolidated IT Network planning services for products from Business Support Systems (ex-Nokia Siemens Networks) and Redknee, I established unified delivery procedures and a common set of network documentation • created the concept for a tool-based network planning process, I realized a common repository for planning data, in-build consistency checks, client specific representations and seamless integration into the company-wide configuration management system • fostered cooperation of Redknee with the Club R2GS for security standardization in the field of Security Information and Event Management and Security Operation Centers • coordinated cooperation with Hewlett-Packard, Dimensioning Data, EMC², Fujitsu Technology Solutions and F5 to clarify technical aspects of network integration and infrastructure planning • responsible for knowledge management and skill development of the team, I created personal development plans, organized trainings and coached team members to enhance critical competences

  • Head of IT System Integration & IT Security at Nokia Siemens Networks
    Nov 2007 - Apr 2013 · 5 yrs 6 mos

    • developed the organizational and operative structure of IT System Integration & IT Security • managed the transitions from centralized management of local teams, via a regional setup with a global support office to a distributed team responsible for all operative functions • led a team of 15 colleagues responsible for network engineering, service management, competence management, customer maintenance support, quality management and IT Security • implemented guidelines for network design, network dimensioning and planning of infrastructure deployment in customer projects • implemented guidelines for IT Security in customer projects working in close cooperation with product security management to productize new security features • developed a knowledge management framework for IT System Integration & IT Security, I introduced and moderated a Wiki as a collaboration platform and initiated a user community for knowledge sharing • published a monthly newsletter to keep all members of the community informed and engaged on IT System Integration & IT Security topics