Dirk Pelzer

Consulting Engineer

Bad Wörishofen, Germany

Experience

May 2025 - Jul 2025
3 months
Paris, France
Remote

Senior Security Architect

Managed Service Provider Paris, Luxembourg

Project: Design and implementation of a StoreSafe architecture

Activities: Creating an architecture document for implementing a clustered encryption solution based on Bloombase StoreSafe in an IBM Power environment with Red Hat Linux, NFS, KMIP, Bloombase StoreSafe, Entrust KeyControl, PKI, and AES-256 Creating an integration guide for installing and configuring the solution Creating an operations guide for running the solution Coordinating with business units Aligning and coordinating support activities with the vendors IBM and Bloombase Supporting the installation and configuration of the solution

Jan 2025 - Present
7 months
Bonn, Germany
Remote

Senior System Architect and Project Manager

Logistics

Project: Data center renewal with transition of the existing environment

Activities: Defining the project charter including setting project goals and tasks Creating a project plan with schedules, milestones, and resource requirements Calculating the business case Preparing the scope of services for the tender documents for the managed service providers Evaluating the MSP offers Identifying potential risks and developing risk mitigation measures Creating a cost and resource plan Coordinating with the PMO and steering committee Preparing regular project status reports Regularly reporting to management and other stakeholders on project progress Creating and maintaining all project-related documentation, including plans, reports, and minutes Conducting daily meetings and status meetings with the project participants

Jan 2025 - Apr 2025
4 months
Augsburg, Germany
Remote

Senior System Architect

Medium-sized textile company

Project: Migration of data center systems from onsite to a hosted server environment at Hetzner

Activities: Gathering customer requirements for building the target environment Comparing different technical solutions in terms of cost and benefit Creating an evaluation/decision matrix Setting up a Hyper-V test environment based on Windows Server 2022 and Hetzner AXServer Configuring virtual switches with NAT functionality Deploying and configuring a site-to-site IPsec VPN from the corporate site to the Hetzner data center using pfSense Hardening the Windows OS according to CIS standards Provisioning test VMs in the Hetzner environment Migrating existing VMs from the old environment to the target environment Conducting performance and usability tests Setting up and testing backups

Jun 2024 - Dec 2024
7 months
Frankfurt, Germany
Remote

Senior Security Engineer

Bank

Project: Migration of an enterprise key management solution for Bloombase StoreSafe storage encryption

Activities: Installing and configuring a test and development environment with virtual machines for Thales KeySecure, Utimaco ESKM, and Bloombase StoreSafe Connecting the key managers to StoreSafe using OpenSSL keystore and certificate exchange Extracting keys from KeySecure via KMIP using Curl and KMIP/XML code Developing a PowerShell script for key migration via KMIP/XML and REST API into the ESKM Documentation Implementation

May 2024 - Dec 2024
8 months
Bonn, Germany
Remote

System Architect and Project Manager

Logistics

Project: Leading with a hands-on approach the consolidation of Active Directory and file servers

Activities: Defining the project concept including goals, benefits, and risks Preparing the project charter including setting project objectives and tasks Creating a project plan with work packages and milestones Creating a cost and resource plan Coordinating with the PMO and steering committee Preparing regular project status reports Conducting daily meetings and status meetings with the project participants Handling Active Directory topics (GPOs, roles and permissions, LAPS, AD security) for the project Supporting escalations Writing the project final report

Sep 2022 - Apr 2024
1 year 8 months
Bonn, Germany
Remote

System Architect

Logistics

Project: Improving the virtual infrastructure for a logistics service provider in Bonn with about 500 systems

Activities: Planning, designing, and further developing the network and data center infrastructure Ensuring highly available data center operations, especially the Hyper-V virtualization environments Administering the network, server landscape, and central storage systems Advising business units on the architecture for delivering new services Coordinating and managing service providers during projects and incidents Creating an as-is analysis of the existing patch management process Developing and implementing a new Windows patch management concept for headquarters and regional hubs via WSUS (clients and servers) Aligning with product owners and management on the patch management process implementation (finding time windows, rolling out patches in waves at different times for different stages, performing tests, etc.) Designing group policies for antivirus with Microsoft Defender Deploying and configuring new and existing VMs with SCVMM Supporting configuration and troubleshooting in the Veeam Backup area Third-level support for Active Directory, Azure AD, Hyper-V, VMM, Windows operating systems, HPE ProLiant servers, and HPE 3PAR storage Customizing SCOM monitoring (configuring overrides for management packs, setting up and adjusting subscriptions, etc.) Administering and migrating Windows print servers Supporting risk analyses and creating a measures catalog according to BSI IT Baseline Protection, ISMS documentation, and ISO 27001/27002 Implementing security monitoring for Active Directory (adding/removing users from highly privileged groups, clearing security event logs) Supporting the selection (cloud vs. on-premises) of cryptographic measures (HSM) for a multi-tier Microsoft PKI to protect private keys Maintaining firewall rules in the Sophos firewall Assessing and remediating vulnerabilities with CrowdStrike Falcon (EDR/XDR) Building and commissioning a CheckMK infrastructure based on Ubuntu Server to replace a SCOM environment including rolling out CheckMK agents Developing PowerShell scripts to automate processes and extend/adjust CheckMK monitoring Introducing LAPS (Local Administrator Password Solution) Analyzing and fixing Active Directory vulnerabilities with Ping Castle

Technologies used: Active Directory, Azure AD, Azure AD Connect, EDR and XDR with CrowdStrike Falcon, Hyper-V, System Center Virtual Machine Manager (SCVMM) 2016, System Center Operations Manager (SCOM) 2016, Windows patch management (with WSUS, Cluster-Aware Updating (CAU), and Microsoft System Center Configuration Manager (SCCM)), Windows 7/10/11, Windows Server 2012 R2/2016/2019/2022, Ubuntu Server, Fibre Channel SAN, HPE ProLiant servers, HPE iLO, HPE 3PAR storage, HPE OneView Management, Dell PowerEdge servers, PKI, DFS, Microsoft Defender, Sophos UTM9, Veeam Backup & Replication 12, Thales DPOD and Thales Luna HSM, CheckMK monitoring, Ping Castle

Jan 1998 - Present
27 years 7 months

Consulting Engineer

Self-employed

Jan 1997 - Dec 1998
2 years
Aschheim, Germany

Systems Engineer in Engineering for ProLiant Server and Storage Systems

Compaq Computer EMEA BV

Jan 1996 - Dec 1997
2 years
Germany

Software Engineer for Application and System Architecture

IZB Soft GmbH & Co. KG

Jan 1993 - Dec 1996
4 years

Support and Escalation Engineer for Windows and Systems Management Server

Microsoft GmbH and Microsoft Corp

Summary

I have more than 25 years of experience as an engineering consultant with a strong background in systems, software, and hardware. I have worked with reputable companies like Microsoft and Compaq, ensuring I stay on top of the latest technological trends. My expertise is backed by a diploma from the Technische Universität München and a variety of industry certifications in Microsoft, VMware, and SafeNet.

I bring real-world knowledge to every challenge, applying practical solutions in IT infrastructure and system management. I focus on delivering practical, reliable value in both complex and everyday technical environments.

Languages

German
Native
English
Advanced

Education

Technical University of Munich

Diploma in Engineering (Univ.) · Electrical Engineering and Information Technology · Munich, Germany

Certifications & licenses

BDSF Certified Expert

Microsoft Certified IT Professional Windows 2008/2012

Microsoft

Microsoft Certified Network Product Specialist Windows 2008/2012

Microsoft

Microsoft Certified Product Specialist Windows 2008/2012

Microsoft

Microsoft Certified Professional Systems Management Server

Microsoft

Microsoft Certified Solutions Asscociate Windows 2008/2012(Exam 417: Upgrading Your Skills to MCSA Windows Server 2012 - Credly)

Microsoft

Microsoft Certified Technolgy Specialist Windows 2008/2012

Microsoft

Microsoft Partner

SafeNet StorageSecure Certified Engineer

SafeNet

VMware Partner Professional Solution Provider

VMware

VMware Sales Professional

VMware

VMware Technical Sales Professional

VMware

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions