External CISO, Implementation Consultancy & Project Management
Implementation Consultancy
CyberCompare manages, advises on and supports implementation projects following the procurement of a solution or service. The aim is to ensure a fully coordinated approach - and, for the business, to implement the technical and organisational changes as seamlessly as possible.
"Procured" does not mean "implemented"
The selection process is complete, the contract is in place – and this is precisely where the more labour-intensive part begins. Technical adjustments impact ongoing processes, organisational changes require coordination across departmental boundaries, and it is rare for anyone within the company to have the capacity to manage this on top of their day-to-day work.
This is where we come in:
Procured, but no capacity
The solution has been chosen and the contract is in place. However, there is a lack of internal capacity to manage the roll-out – the team is tied up with day-to-day operations.
Service providers with no counterpart
The supplier is carrying out the work, but on the client’s side there is no one to oversee them, clarify requirements and approve the results.
The roll-out has stalled
The project has been running for months, but it is not moving into live operation. Someone from outside is needed to untangle it.
A technical sparring partner throughout the roll-out
Your in-house team is highly skilled, but capacity constraints mean it cannot cover everything. We act as a technical point of contact and sparring partner, drawing on experience from comparable projects – identifying risks and potential pitfalls, and taking on specific tasks such as aligning existing use cases with the provider’s standards or preparing templates for internal consultation with the works council.
Our approach at CyberCompare
It always begins with the joint definition of objectives, roles and deliverables, and always ends with the handover to routine operations. What happens in between depends on the project – in the case of highly standardised solutions, the implementation can even be carried out entirely under the provider’s guidance.
Defining objectives together
Alignment with the contracted scope
Alignment with the provider
Agreeing the next steps
What to expect
- Implementation or roll-out plan with milestones and responsibilities
- Status reports at agreed intervals, including risks and escalations
- Acceptance criteria for the transition to live operation
- Handover documentation for the internal team
- Optional: Training or awareness materials for the relevant departments
What this means for your team
Ongoing support and a sparring partner with project experience – and relief for your security team by taking on specific technical tasks, such as analysing and consolidating existing use cases.
Transparent pricing
Our fees are calculated on the basis of effort. We estimate the work required to advise on and support the agreed scope. Part of the price reflects the value our experience adds – through direct savings, for example, or a shorter project timeline thanks to proven methodology.
From practice
A large corporate group
Change of tech stack and roll-out of a co-managed SOC. Supported the preparatory work, including liaising with the works council, drafting decision papers, and working closely with the internal security and project management teams. The project ran for over a year.
Our team of hands-on security experts
Experienced operators with deep technical expertise, ready to lead your security initiatives to success
Stev Gödecke
Former CIO at a medium-sized group of companies (>4,000 IT users) • Over 20 years’ experience in network technology • Over 100 successful security projects (including >30 SOC projects, OT, microsegmentation, SASE/SSE)
Dr. Ingo Pansa
Interim CISO at Keenfinity • Lead Architect for Access Management at Mercedes-Benz AG • CPO at Planck Security • Head of Europe’s largest procurement project for cybersecurity services
Lutz Kirsten
Former Head of the In-house SOC at Bausparkasse Schwäbisch Hall (DORA-regulated) • SecOps SIEM/SOAR for the City of Munich • CISSP, IPMA Level D • Co-leader of Europe’s largest SOC procurement project
Tino Brunzel
Interim ISB role in the manufacturing sector (500 employees) • Security Architect at Mercedes-Benz • PwC Risk Assurance (including ISO 27001 audits) • Deloitte Cybersecurity
Niclas Ilg
PhD in Computer Science (thesis on intrusion detection) • NIS2 impact assessments for KRITIS energy suppliers • NDR/SIEM at a major German bank • EDR/SIEM/SOAR at a leading car manufacturer
Dr. Jannis Stemmann
VP Robert Bosch (including Head of Manufacturing) • Senior Engagement Manager at McKinsey • Over 100 security projects • CISSP, GICSP, ISO 27001 Lead Auditor
Our promise to you:
Our promise to you is absolute independence in our consultancy services. We act solely on your behalf.
All information you share with us, as well as our reports, remains confidential and will not be shared with third parties. In our experience, there is no such thing as perfect security – but we protect your data with the same resources as we use to protect our own.
If you are not satisfied with our service, we will not charge you for it. Furthermore, we are open to performance-based fee structures, for example for meeting project milestones on time.
Your initial point of contact
Stev Gödecke
Senior Solution Manager, CyberCompare