Dr. Sebastian Schmerl

VP Security Services EMEA - our passion is to cyber secure our customers.

Erfurt, Thuringia, Germany

About

My skills: Visionary, out-of-the-box, and integrated thinking, highly innovative, with a strong background in cybersecurity, incident response, data analytics. My expertise: -Creating strong international Security Operation Delivery units -Team and thought leadership -Cybersecurity consultancy and portfolio management -Security Operations Centers (SOCs) -Securing Industrial Control Systems (OT/ICS/SCADA) -Data analytics for cybersecurity and predictive maintenance -Innovative solution management, business development, and research & innovation for cybersecurity products, solutions, and services

Experience

  • Vice President, Technology Security Services at Arctic Wolf
    2026 - Present · 7 mos

    - Lead large-scale 24×7 SOC operations and security advisory delivery across EMEA - Regional operational performance, customer outcomes, and service delivery excellence - Drive global technology strategy in partnership with Product & Engineering - AI leader: shape R&D vision and AI-enabled transformation for security services - Build and grow a high-performing security organization

  • Arctic Wolf (4 yrs 1 mo)
    • RVP - Security Services - EMEA
      2022 - 2025 · 3 yrs

      Responsible for running first class multi-site, multi-national, multi-language Security Operation Services in the EMEA region. We provide Security Operations Tailored to various Industry Sectors: - Managed Detection and Response - Managed Risk - Managed Security Awareness - Incident Response - Cloud Detection and Response - Cloud Security Posture Management

    • Director Security Services EMEA
      2021 - 2022 · 1 yr

      Leading the EMEA cybersecurity operations, which includes intelligence, detection, and responses for all kinds of security incidents, risks and threats. With the Arctic Wolf EMEA team we provides cutting edge 24/7 SOC – Security Operations Center Services delivered from Germany for the entire EMEA region, which includes the following: - Managed Detection and Response (Protect, Detect, Respond, and Recover from advanced threats) - Managed Risk (Discover, Benchmark, and Harden the environment against cyber threats) - Managed Cloud Monitoring (Identify, Monitor, Simplify and Secure cloud infrastructures and services) - Managed Security Awareness (Prepare employees to stop social engineering attacks)

  • Head of Cyber Defence and Industrial Security at Computacenter AG & Co oHG
    2015 - 2021 · 6 yrs

    Responsible as solution manager for the cyber defense services for large-scale IT, OT/production and cloud environments and corresponding data analytics topics at Computacenter. This includes the definition of consulting services and selection of product portfolios, technology stacks as well as pre-sales, knowledge leader, consulting head and trusted advisor for advanced and sophisticated projects in these three domains. Consulting on C-level as well as technical level. Team and budget responsible for cyber defense, industrial security and data analytics projects. Cyber defence: Setup and operation of security operations center (SOC), cyber defense center (CDC). Definition of processes, organizations, rolls and technology stacks (SIEM, SOAR, EDR, TI-Feeds, TIP) required to run SOCs/CDCs. Setup and maintenance of typical SOC services: real-time situation awareness pictures, risk based protection, incident response and threat intelligence (TI). Industrial security: Risk assessments, definition and implementation of holistic protection and monitoring concepts (continuous prevention, detection and response) for industrial production environments for e.g. car manufacturing, chemical production as well as energy distribution and transmission environments. Data analytics: ML/AI and statistical methods detection of attackers, fraud, compliance violations, malicious insiders as well as optimizing security controls by analyzing log-data, incidents and control effectiveness. Data analytics for anomaly detection and risk based alarming.

  • AGT International (3 yrs 1 mo)
    • Head of Cyber-Security - Critical Infrastructures
      2012 - 2015 · 3 yrs

      Responsible for the cyber security solutions and consulting services for critical infrastructures. Head of the cyber security consulting, pen-test and risk assessment team. In charge of cyber security strategy development for customers as well as business-case modelling for cyber security protection. Alignment of cyber security with physical security in order to provide holistic security concepts and strategies to customers.

    • Cyber-Security Expert
      2012 - 2012 · Less than a year

      Project management for cyber-security and information security products and projects. Risk assessment for in-house as well as customer business operations and installations. Specifications of mitigations against advanced persistent threats in the sector of critical infrastructures and public security. Furthermore, suggestion and installation of cyber-security measures and controls for industrial control systems and hardening of systems. Product management in reactive IT-Security, Intrusion Detection and Data Leakage Protection. Business case and product portfolio development for cyber-security products.

    • Pre-Sales / Solution Manager - Cyber Security
      2012 - 2012 · Less than a year

      Researching, planning and defining methods, approaches and services for Security Operation Centers (SOC), Industrial Control Systems and related products to enable continuous Information Risk Management based on situation awareness, early warning, threat intelligence and decision making support for the protection and resilience of critical infrastructures (CIP). Management of innovation projects and strategic alignment of research and development.

  • Senior Researcher - Cyber Security at AGT International
    2011 - 2011 · Less than a year

    Research in Cyber-Security, Open Source Intelligence and Threat intelligence. Innovation and out of the box thinking research for new products and business ideas in the field of cyber-security. Furthermore, risk assessments and product security as well as security source code analysis for huge software platforms and projects.