Head of Cybersecurity Tilkal
I lead the end-to-end information security programme for a B2B SaaS supply-chain traceability platform operating a large European B2B blockchain network. I manage security architecture, customer audit engagement, contractual security requirements, security roadmaps, risk assessments, GDPR compliance, and the ISO/IEC 27001 certification programme.
I operate HashiCorp Vault at scale for dynamic database, AWS, and PKI secrets, using AppRole and Kubernetes authentication, audit logging into the SIEM, Raft high availability, and automated unsealing. I built an internal PKI that automates TLS and mTLS certificate issuance and rotation for Kubernetes microservices through cert-manager.
I deployed and operate the IAM platform using Keycloak and LDAP, providing federation, RBAC, SSO, SAML 2.0, and OIDC across internal and SaaS applications. I harden GKE clusters with RBAC, NetworkPolicies, OPA/Gatekeeper admission controls, Falco runtime detection, and Cosign/Sigstore image signing.
I also own endpoint security across Windows, Linux, and macOS devices, and rolled out HarfangLab EDR across cloud workloads and more than 170 endpoints. I developed SOAR playbooks for automated high-severity alert containment and represent security in enterprise customer audits.