Michael Lenz
Identity & PAM Architect
Experience
Identity & PAM Architect
BfArM
- Implementation of CyberArk OnPremise
- BSI basic protection (high protection needs)
- Breaking Class Strategy
- IdP / Identity Strategy / PIM
- Technologies: PAM, CyberArk OnPremise, KeyCloak
PAM Cloud-Migration
Aareal Bank
- Support for program management
- Migration Legacy -> CyberArk Cloud Platform
- Design PAM & Audit Process
- Vendor Management (Contract, Budget, Change Management)
- Technologies: PAM, CyberArk Cloud + OnPremise
IAM Cloud-Migration
Deutsche Bank
- Support for program management
- Migration Legacy -> Google Cloud Platform
- Design IAM, PAM & Audit processes
- Vendor Management (Contract, Budget, Change Management)
- Technologies: IAM, PAM, One Identity, CyberArk, Forgerock
PAM Consultant (Feasibility Study)
Landesbank Baden-Wüttemberg
- Current/Target analysis of PAM infrastructure
- Conducting and implementing a risk analysis
- Preparation of the PAM tender
- Creation of a feasibility study and preparation of executive presentation
- Technologies: Privileged Access Management; CyberArk
One Identity Implementer / Error Analysis
TÜV Süd AG
- Analysis of SAP connection to One Identity
- Error corrections in processes & interfaces
- Consultation in the area of Identity & Access processes
- Technologies: One Identity Manager v9, SQL Management Studio, SAP
IAM Consultant
BASF SE
- Current/Target analysis of IAM infrastructure
- Preparation of the IAM tender
- Support for project teams with IAM process know-how
- Setup of test environments on a Kubernetes cluster solution
- Technologies: Azure, Docker, One Identity v8 in Docker
IT Consultant / MIM Migration
Metro Digital GmbH
- Development of a migration plan (120k users / 5 continents)
- Development of intelligent time control for synchronizations
- Consultation and development of Identity & Access Management logics
- Implementation of new Management Agents
- Performance optimization
- Migration from LIM to MIM (Windows Server 2019)
- Technologies: LIM; MIM, MS SQL; Oracle; AD; LDAP; Windows Server 2019; AzureAD
IAM Consultant / Product Owner IAM
Hamburg Commercial Bank
- Creation of the role design strategy to ensure compliance with regulatory requirements (MAS BAIT)
- Process and report automation for compliance monitoring (ISMS)
- Responsible for the implementation of Identity & Access Management
- Optimization of role distribution and access processes
- Implementation of cloud interface (connection to PAM / CyberArk)
- Overall project management IAM & product ownership
- Technologies: ISO27001; ISMS; LDAP; AD; WEB-SSO; Dell One Identity; MS SQL; SoX; MAS; Azure AD; SAP HANA; CyberArk
BSI / ISO27001 Lead Implementer
Public Sector
- Implementation of ISMS based on BSI basic protection (200-x)
- Design of processes and operational monitoring
- ISMS audit preparation
- Technologies: ISMS; BSI 200-2; Security concept; ISO27001; Risk analysis; BASIS-Check; Taskforce; Azure
IAM Consultant
Public Sector
- Ensuring technical operation of identity and access management systems
- Setup of the OneIdentity IM Suite (IIS, SQL, concept, etc.)
- Compliance with BSI basic protection 200-x
- Management & adjustment of the IAM system + interfaces (IIS; SQL; AD/LDS; etc.)
- Maintenance of Microsoft Identity Management interface (MIM/FIM)
- Technologies: ISO27001; OneIdentity; MIM; AD/LDS; IIS; Windows Server 2016; Loadbalancer; Kerberos; Certificate Management; BSI
Consultant for Security Management / Manager for Regulatory Issues
Deutsche Bank AG
- Definition of compliance KPIs to ensure group governance (ISO, SoX, MAS, etc.)
- Process and report automation in the area of compliance monitoring (ISMS)
- Coordination of regulatory requirements in the financial sector
- International communication with regulators of the financial industry for requirements analysis and technical implementation in IT systems in accordance with regulatory requirements
- Data analysis in conformity with Cey Controls
- Technologies: ISO27001; ISMS; LDAP; AD; WEB-SSO; Dell One Identity; Aveksa; Oracle; SoX; MAS; AzureAD
Industries Experience
See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.
Experienced in Banking and Finance (6 years), Government and Administration (4.5 years), Professional Services (2.5 years), Information Technology (2 years), and Chemical (1 year).
Business Areas Experience
The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.
Experienced in Information Technology (12 years), Audit (3 years), Project Management (2.5 years), Quality Assurance (2 years), and Procurement (1.5 years).
Skills
Implementation Of Identity And Access Management Systems
Compliance & Security Monitoring (Iso27001 & Bsi 200-x)
International And Agile Project Management (Prince2)
Automation Of Processes And Security Monitoring
Member Of Isaca Chapter Germany
Standard: Iso27001 Lead Implementer 9 Years +++
Standard: Iso27017, Iso27022 4 Years +++
Standard: Bsi Basic Protection 5 Years +++
Standard: Prince2 9 Years +++
Standard: Itilv3 14 Years +++
Standard: Isms 9 Years +++
Standard: Ethical Hacker 5 Years ++
Standard: Marisk (+ Bait) 7 Years +++
Software: One Identity Manager 8 Years +++
Software: Aveksa 4 Years ++
Software: Safeguard 1 Year ++
Software: Cyberark 6 Years +++
Software: Keycloak 3 Years ++
Software: Compliance Monitor 8 Years +++
Software: Omada 3 Years ++
Software: Ibm Security Iam 3 Years +
Software: Office365 11 Years +++
Software: Jira/confluence 9 Years ++
Server: Iis Server 7 Years +++
Server: Ms Sql Server 6 Years +++
Server: Load Balancer 5 Years ++
Server: Ad / Adlds / Azure 7 Years ++
Server: Mim / Fim / Lim 7 Years ++
Scripting: Vba 11 Years +++
Scripting: Sql 6 Years +++
Scripting: .Net C# 4 Years ++
Languages
Certifications & licenses
BSI basic protection
Ethical Hacker
ISMS
ISO27001 Lead Implementer
ISO27017
ISO27022
ITILv3
Prince2
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Michael based?
What languages does Michael speak?
How many years of experience does Michael have?
What roles would Michael be best suited for?
What is Michael's latest experience?
What companies has Michael worked for in recent years?
Which industries is Michael most experienced in?
Which business areas is Michael most experienced in?
Which industries has Michael worked in recently?
Which business areas has Michael worked in recently?
Does Michael have any certificates?
What is the availability of Michael?
What is the rate of Michael?
How to hire Michael?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Identity & PAM Architect
Nearby freelancers
Professionals working in or nearby Grünwald, Germany