
pedro C.
Security Architect @ Planet
About
Information Security leader with end-to-end accountability for Cyber Defense, IT and OT/ICS Security, Security Architecture, and Cyber Risk (GRC) in multinational and regulated environments. I focus on reducing organizational attack surface by assessing external exposure, identity attack paths, vulnerabilities, and operational dependencies from an adversarial perspective, translating threat intelligence into risk-based, business-relevant decisions. I partner closely with executive leadership, IT, engineering, and operations to align cybersecurity with business objectives, strengthening resilience, availability, and safety while enabling growth. My approach embeds security as a capability and resilience enabler, not a blocker. My work is anchored in European and international security frameworks and regulations, including NIST CSF, ISO/IEC 27001 (ISMS), NIS2, and IEC 62443, with a strong focus on critical infrastructure, industrial environments, and OT/ICS systems. 🔹 Core expertise Cyber Defence & Security Architecture Target-state architectures, secure-by-design, Zero Trust, identity-centric security, network segmentation Attack Surface & Exposure Management External footprint discovery, vulnerability prioritization, identity pathways, risk-based remediation IT / OT / ICS Security & Resilience Industrial network segmentation, critical asset protection, operational continuity, safety-aware controls Cyber Risk, Governance & Compliance (GRC) Risk assessments, regulatory alignment, third-party and supply-chain risk, audit readiness Executive & Board Communication Security posture reporting, risk trends, KPIs/KRIs, investment and prioritization support Leadership & Cross-Functional Collaboration Trusted advisor to senior management, delivery across IT, engineering, operations, and vendors Threat-Driven / Adversarial Mindset Threat intelligence, incident response, detection & response strategy, continuous improvement
Portugal
Porto
Information Technology & Services
ISO Standards, Information Security Management, Cyber-security, Strategic Roadmaps, Governance, Risk Management, and Compliance (GRC), Leadership, Strategy, Cyber Threat Intelligence (CTI), Security, Cybersecurity, Train Employees, Security Training, Security Risk, Security Incident Management, Microsoft Surface, Regulatory Compliance, IT Audit, NIST 800-53, Mitigation Strategies, Computer Science
Experience

OT Information Security Manager
Ovar
Define, maintain, and govern the OT Security Policy, aligned with the overarching ISMS, establishing security objectives, roles, responsibilities, accountability, and policy lifecycle management across industrial environments Develop and enforce OT cybersecurity standards and control baselines aligned with IEC 62443 and NIST Cybersecurity Framework (CSF) 2.0, translating policy requirements into measurable, auditable, and risk-based controls Alignment with NIS2 for the OT/ICS scope Create and maintain OT security guidelines, procedures, and operating instructions to ensure consistent policy implementation while accommodating site-specific operational, safety, and availability requirements Integrate OT cybersecurity risk management practices into policy and standards, ensuring continuous risk identification, assessment, treatment, and compliance with applicable regulatory and industry obligations Design, deliver, and continuously improve OT-focused security awareness programs and role-based training initiatives tailored to operational roles, engineering staff, and third-party access Review, enhance, and enforce network segmentation in alignment with the Purdue Enterprise Reference Architecture, including zoning and conduits, to reduce attack surface and limit lateral movement Define and govern OT-specific endpoint protection controls designed for OT/ICS environments, including allowlisting, integrity monitoring, anti-malware where feasible, secure configuration, and compensating controls for legacy or safety-critical systems, ensuring protection without impacting availability or safety Establish and integrate OT-specific cyber threat intelligence capabilities to identify relevant threats, vulnerabilities, and attack techniques, supporting proactive risk mitigation and informed response

Information Security Officer
Porto, Portugal
Ensure high level of Information Security compliance for a regulated market IAM Governance Identity Zero Trust Strategy Privileged Access Management IdP Hardening SOC Use Cases - Identity scope Cyber Crisis Coordination & Table Top Exercises Swift Customer Security Controls Framework Integration of Security into Projects - Risk Assessment Security by Design Threat Modeling Network Security ISO27001/2 Controls NIST Cybersecurity Framework NIST SP 800-53 Rev. 5 CIS Critical Security Controls CIS, AWS and Microsoft Benchmarks MITRE ATT&CK™ framework Zero Trust Strategy SWIFT Security Controls Framework NIS 1&2 Directive DORA EBIOS for Risk Assessment ISO 27005:2018 - IS risk management ISO 31000: Risk Management NIST Risk Management Framework

Cyber Security Officer Deputy
Madrid, Spain & Aveiro, Portugal
Control Design, Implementation, and Monitoring with NIST CSF, ISO 27001 & CIS Critical Security Controls MITRE ATT&CK™ framework CIS Critical Security Controls v8 Vulnerability Management Risk Assessment on Projects (EBIOS, ISO 27005/31000) M&A Information Security Follow-up Zero Trust Strategy User Awareness Training & Influencer Automation w/ Powershell & Python SAST/DAST Analysis/Assessment Security Awareness Program (focus on dedicated webinars, phishing campaigns, newsletters)
pedro C.'s Contact Information
Phone
Find the Right Leads
Find Verified Contact Data
What LeadContact does well
Find verified emails, phone numbers, and decision-makers with 98% accuracy.
Find Leads
Find the right people by company, role, industry, location, and more.
925M+ professional profiles

Find Emails
Access verified email addresses for your target contacts.
657M+ emails

Find Phone Numbers
Get cross-validated phone data from multiple top sources.
239M+ phone numbers

More Accurate. Lower Cost.
Find contact data in 1 tool with 98% accuracy
LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.
Great conversations start with the right contact.
It’s time to find yours.

![Volkswagen Group Digital Solutions [Portugal]](/_next/image?url=https%3A%2F%2Fcos.leadcontact.ai%2FcompanyLogo%2Fvolkswagen-group-digital-solutions-portugal.jpeg&w=3840&q=75)




