Recommended expert

Max Chernousov

Cyber Security, Audit, GRC

Max Chernousov
Amstelveen, Netherlands

Experience

Jan 2024 - Present
2 years 2 months

Cyber Security, Audit, GRC

Freelance

  • Various projects with Wolters Kluwer (Security IT Audit) and Nebius AI (SOC 2, ISO 27001 and SOX controls implementation).
Jan 2022 - Jan 2024
2 years 1 month

Head of Cyber Security

Gorillas / Getir NL

  • Information Security strategy development aligned with the company's goals and the unicorn’s risk appetite.

  • Contributing to higher evaluation of the company targeting investment rounds and IPO. Participation in Tech Due Diligence.

  • Performing risk-based assessments and controls implementation (GDPR, ISO 27002:2022). Development of internal security processes, policies and procedures (ISO 27001, NIST 800-53, CIS 8).

Jan 2021 - Dec 2021
1 year

Information Security Officer

Mollie

  • Information security governance and security operations implementation for the fast-growing fintech scale-up (300->800).

  • PCI DSS, PSD2, KYC and GDPR compliance activities.

  • IT & Security Risk assessment according to the DNB requirements.

  • Reporting on threats, security gaps and risk response plans.

Jan 2020 - Dec 2020
1 year

IT Risk & Security Lead

SBM Offshore

  • Leading transformation in IT supporting implementation of a solid IT internal control framework for internal and external audits.
Jan 2019 - Dec 2019
1 year

Group Senior Manager Internal Control - Digital and Technology

VEON

  • Internal control strategy, implementation and testing (SOX, IT).

  • Oracle Fusion internal control implementation (FCPA, SOX and anti-bribery and corruption controls).

  • Internal control reporting to the Board (Risk & Audit Committee).

  • Third-party SOC reporting evaluation (Oracle, Ericsson, Amdocs), including SOC 1/2, ISO 27001, ISO 27017, ISO 27018.

  • Cyber-security risks and controls advisory and project work.

  • Management self assessment (Internal SOX certification).

Aug 2016 - Dec 2018
2 years 5 months

Manager - Risk Advisory

Deloitte

  • Leading an IT SOX audit at the largest national telecom holding (100M subscribers); responsible for revenue and IT processes assessment.

  • Cyber risk assessments, internal policies development based on ISO 27001/27002 and COBIT5 frameworks; M&A Due Diligence (cybersecurity and IT part) and development of an IT & cyber security roadmap for IPO.

  • Internal audit advisory (Banking, FinTech, TMT).

  • Mentored and developed 10 team members, helping them to grow to the next level (grades from Intern to Assistant Manager).

May 2014 - Aug 2016
2 years 4 months

Internal IT Auditor

Megafon

  • Conducted risk-based IT audits to provide reasonable assurance to management on risks affecting company goals.

  • Ensured effective follow-up and remediation of issues and deviations.

  • Improved efficiency through process optimization.

  • Performed fraud investigation and management consulting.

  • Advised management on building internal control systems.

  • Analyzed current financial and business activities.

Sep 2013 - May 2014
9 months
Remote

Service Delivery Lead

Hewlett-Packard

  • Supervised first and second line technical support teams (30 FTE) for 2000+ office and remote users.

  • Supported server-side hardware and infrastructure software (HP ProLiant bare metal, 3Par, Microsoft, Symantec).

  • Configured, maintained and monitored on-premises infrastructure (VMware).

  • Implemented HP ITSM standards.

Sep 2004 - Sep 2013
9 years 1 month

Deputy CIO

Management Academy

  • Supported and maintained 30 servers (Windows Server 2003/2008, Gentoo Linux).

  • Designed and implemented a fail-over VMware 3.5 cluster.

  • Managed a fleet of 350 PCs, terminals and over 2000 active users.

  • Administered LAN/WAN networking and Linux-based networking services (OSPF, BIND, Apache, MySQL, PHP, Nginx, Samba, iptables, proxy).

  • Maintained telecommunication infrastructure, including switches, routers and VoIP.

Industries Experience

See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.

Experienced in Education (9 years), Telecommunication (5.5 years), Professional Services (4.5 years), Banking and Finance (3.5 years), Information Technology (3 years), and Retail (2 years).

Education
Telecommunication
Professional Services
Banking and Finance
Information Technology
Retail

Business Areas Experience

The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.

Experienced in Information Technology (21.5 years), Operations (9.5 years), Audit (8.5 years), Finance (2.5 years), Quality Assurance (2 years), and Legal (1 year).

Information Technology
Operations
Audit
Finance
Quality Assurance
Legal

Skills

  • Risk Management ★★★★★

  • Audit & Assurance ★★★★★

  • Security Operations ★★★★★

  • Infrastructure Security ★★★★☆

  • Cloud Security ★★★★☆

  • Product Security ★★★★★

  • Iso 27001/2 ★★★★★

  • Soc Aicpa ★★★★★

  • Pci Dss ★★★★☆

  • Gdpr ★★★★☆

  • Pcaob (It Sox) ★★★★★

Languages

English
Advanced
Russian
Advanced
Dutch
Elementary

Education

Oct 2013 - Jun 2015

HSE University

Computer Science · Computer Science · Moskva, Russian Federation

Oct 2003 - Jun 2008

Municipal Management Academy

Management · Management

Certifications & licenses

Certified Information Systems Auditor (CISA)

VEON | Group Senior Manager Internal Control - Certified Information Systems Digital and Technology

Certified Ethical Hacker (CEH)

Certified Internal Auditor (CIA)

Cisco Certified CyberOps Associate

Google Project Management

Profile

Created
Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions

Frequently asked questions

Do you have questions? Here you can find further information.

Where is Max based?

Max is based in Amstelveen, Netherlands and can operate in on-site, hybrid, and remote work models.

What languages does Max speak?

Max speaks the following languages: English (Advanced), Russian (Advanced), Dutch (Elementary).

How many years of experience does Max have?

Max has at least 21 years of experience. During this time, Max has worked in at least 9 different roles and for 9 different companies. The average length of individual experience is 2 years and 5 months. Note that Max may not have shared all experience and actually has more experience.

What roles would Max be best suited for?

Based on recent experience, Max would be well-suited for roles such as: Cyber Security, Audit, GRC, Head of Cyber Security, Information Security Officer.

What is Max's latest experience?

Max's most recent position is Cyber Security, Audit, GRC at Freelance.

What companies has Max worked for in recent years?

In recent years, Max has worked for Freelance, Gorillas / Getir NL, and Mollie.

Which industries is Max most experienced in?

Max is most experienced in industries like Education, Telecommunication, and Professional Services. Max also has some experience in Banking and Finance, Information Technology (IT), and Retail.

Which business areas is Max most experienced in?

Max is most experienced in business areas like Information Technology (IT), Operations, and Audit. Max also has some experience in Finance, Quality Assurance (QA), and Legal and Compliance.

Which industries has Max worked in recently?

Max has recently worked in industries like Information Technology (IT), Professional Services, and Retail.

Which business areas has Max worked in recently?

Max has recently worked in business areas like Information Technology (IT), Audit, and Quality Assurance (QA).

What is Max's education?

Max holds a Master in Computer Science from HSE University and a Bachelor in Management from Municipal Management Academy.

Does Max have any certificates?

Max has 5 certificates. Among them, these include: Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH), and Certified Internal Auditor (CIA).

What is the availability of Max?

Max is immediately available part-time for suitable projects.

What is the rate of Max?

Max's rate depends on the specific project requirements. Please use the Meet button on the profile to schedule a meeting and discuss the details.

How to hire Max?

To hire Max, click the Meet button on the profile to request a meeting and discuss your project needs.

Average rates for similar positions

Rates are based on recent contracts and do not include FRATCH margin.

1200
900
600
300
Market avg: 1010-1170 €
The rates shown represent the typical market range for freelancers in this position based on recent contracts on our platform.
Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.