Péter Szigetvári
Principal Information Security & GRC Leader CISSP CGRC
Experience
Enterprise GRC & Information Security Architect
Liebherr IT Services
- Defined enterprise GRC platform strategy, NIST-aligned use-case architecture, and led the platform RFP and decision governance resulting in the selection of ServiceNow IRM and the implementation partner.
- Established the global GRC application blueprint, governance model, and implementation guardrails.
- Acted as Security & GRC Product Owner, aligning governance processes with IT, security, and risk stakeholders under a unified security governance model.
- Positioned the GRC platform as a foundational component of the broader digital transformation program.
Senior GRC Advisor
Richter Gedeon Nyrt.
- Engaged on a short-term project-rescue mandate to realign a stalled NIS2 compliance program and restore delivery momentum.
- Diagnosed conceptual and sequencing gaps, restructured the implementation roadmap, and re-established executive sponsorship.
- Simplified control design and documentation approach to accelerate supervisory readiness without expanding budget or scope.
Governance, Risk & Compliance Workstream Lead
Hydro GBS
- Directed policy and control architecture aligned with NIS2, CIS Controls, and TISAX.
- Created a traceability matrix linking enterprise IT standards to regulatory obligations.
- Advised security architecture and audit teams on control integration and certification readiness.
Governance, Risk & Compliance & Information Security Executive
Wizz Air
- Acted as lead advisor for enterprise-level governance and resilience transformation.
- Implemented LogicGate GRC platform automating cyber-risk and third-party-risk workflows.
- Designed FAIR-based quantitative-risk models supporting board-level decision-making.
- Built integrated Business Continuity and IT Service Continuity framework aligned with EASA and UK CAA.
Information Security Manager
Aegon Corporate Centre
- Directed remediation of De Nederlandsche Bank audit findings on IAM and IT controls.
- Led identity and access management program delivery and corporate security testing coordination globally.
Aegon Hungary / Intrum / Financial Sector Projects
- Delivered BCM maturity audits and regulatory-compliance roadmaps for financial institutions.
Supply Chain Continuity Manager
Bosch – Siemens Hausgeräte GmbH
- Built and institutionalized a supplier continuity assurance model covering 40 strategic electronics manufacturers across Europe and Asia.
- Designed ISO 22301/27031-based risk and resilience assessment methodology to evaluate supplier readiness and response maturity.
- Implemented early-warning and incident-management framework reducing supply-chain disruption.
Head of GRC Consulting Division
EuroOne Ltd.
- Deployed RSA Archer automation for risk and continuity programs; directed SOC PoC for oil & gas client.
Information Security & Business Continuity Consultant
European Commission
- Institutionalised continuity and resilience practices across multi-site operations.
- Built ISO 22301 and ISO 27001 frameworks for four data centres and cross-border coordination.
- Introduced digital-supply-chain-resilience exercises and incident-simulation capability.
Senior BCM Consultant / Partner
Controll-IT GmbH
- Implemented ISO-aligned BCM/ITSCM frameworks for Lufthansa Systems, Aegon Hungary, and GE Money Bank.
- Deployed Alive-IT BCM software at Belgian Post.
Industries Experience
See where this freelancer has spent most of their professional time. Longer bars indicate deeper hands-on experience, while shorter ones reflect targeted or project-based work.
Experienced in Professional Services (6 years), Aerospace and Defense (3.5 years), Government and Administration (3 years), Banking and Finance (2 years), Manufacturing (2 years), and Energy (2 years).
Business Areas Experience
The graph below provides a cumulative view of the freelancer's experience across multiple business areas, calculated from completed and active engagements. It highlights the areas where the freelancer has most frequently contributed to planning, execution, and delivery of business outcomes.
Experienced in Information Technology (15 years), Project Management (7 years), Legal (3.5 years), Operations (3 years), Audit (2.5 years), and Supply Chain Management (2 years).
Summary
Principal Information Security & GRC Leader with 15 years of international experience helping organisations design, stabilise, and run effective security, governance, and resilience programmes in regulated and technology-driven environments.
I work closely with executive teams, often at Head-of-GRC scope, to establish clear governance models and security frameworks when permanent leadership capacity is evolving or constrained. My focus is on bridging executive intent with operational reality and turning regulatory pressure into security outcomes the business can sustainably operate.
My work centres on building ISO-based management systems (ISMS, BCM) alongside NIST-aligned risk and control frameworks (RMF, CSF), integrating cyber risk, resilience, and Third-Party Risk Management (TPRM) into a coherent governance ecosystem. I have hands-on experience delivering against current EU regulatory obligations, particularly NIS2 and DORA, and supporting organisations with Cyber Resilience Act (CRA) readiness for digital supply-chain and product-security risk.
Skills
- Bridge Leadership: Align Board, It, And Business So Risk Governance Drives Real Decisions—not Paperwork.
- Program Recovery: Rescue Stalled Initiatives By Clarifying Scope, Rebuilding Control Architecture, And Restoring Delivery Momentum.
- Enablement: Turn Expert Knowledge Into Repeatable Frameworks, Templates, And Training Assets.
- Regulatory Alignment: Convert Evolving Eu And Uk Regulations (Nis2, Cra, Dora, Economic Crime Act) And Global Standard (Pci-dss) Into Actionable Internal Policies.
- Resilience Architecture: Unite Bia, Bcm, Itscm, Tprm, And Risk Management Into One Operational Model For Measurable Resilience.
Security & Grc Leadership
- Information & Product Security
- Isms
- Lod1 Ownership
- Board-level Governance
Regulatory & Standards Alignment
- Nis2
- Cra
- Eu Ai Act
- Nist Rmf / Csf
- Iso 27001 / 22301
- Soc2
- Tisax
Cyber, Product & Resilience Security
- Security Architecture
- Product & Cloud Risk
- Threat Modelling
- Continuity & Crisis Management
Platforms & Quantitative Risk
- Servicenow Irm
- Logicgate
- Rsa Archer
- Risklens
Leadership & Delivery
- Executive Leadership
- Policy Architecture
- Board Reporting
Languages
Education
University of Miskolc
BSc, Electric Engineering with Telecommunication Specialization · Electric Engineering with Telecommunication · Miskolc, Hungary
Certifications & licenses
Certified Information Systems Security Professional (CISSP)
(ISC)2
Certified In Governance, Risk And Compliance (CGRC)
(ISC)2
Open FAIR™ Foundation
FAIR™ Institute
Project Management Professional (PMP)®
Project Management Institute
Associate Membership Of The BCI
Business Continuity Institute
Profile
Frequently asked questions
Do you have questions? Here you can find further information.
Where is Péter based?
What languages does Péter speak?
How many years of experience does Péter have?
What roles would Péter be best suited for?
What is Péter's latest experience?
What companies has Péter worked for in recent years?
Which industries is Péter most experienced in?
Which business areas is Péter most experienced in?
Which industries has Péter worked in recently?
Which business areas has Péter worked in recently?
What is Péter's education?
Does Péter have any certificates?
What is the availability of Péter?
What is the rate of Péter?
How to hire Péter?
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Enterprise GRC & Information Security Architect
Nearby freelancers
Professionals working in or nearby Monor, Hungary