secureskies
secureskies/Company

Security not described.
Owned.

A boutique consultancy that sits across from management as an equal and restricts itself to a few fields — cloud, identity, governance, programme and project leadership. We do not merely describe security there, we own and deliver it. The incident should never happen; if it does, management knows whom to call. Secureskies takes on few engagements and clients at a time — each with a senior owner from the first conversation to the handover.

01 · Stance

Client focus
is a way of working.

Not a mission statement — three rules for how we scope, staff and end an engagement. We state them in every first conversation, not least because they sometimes mean we decline.

Rule 01

We take on what we can actually do.

Cloud environments on AWS and Azure, identity, cyber governance. If your need sits outside that, we say so early and point you to someone better suited. The restriction is the reason we have depth in these fields.

Rule 02

We work inside the team, not beside it.

Anyone brought in has to take effect where the work is stuck — in the project team, in the stream, in the steering committee. Whoever holds the first conversation leads the engagement and is back at the table for the handover. That is why we take on few engagements and clients at a time.

Rule 03

We have to make the difference for the client.

We were brought in so that something runs differently than it would without us: a decision gets made, a cutover holds, a programme succeeds, engineering and delivery know-how is added. Our measure is the result that stays with you.

Henning Schulze, managing director, Secureskies GmbH

Henning Schulze

Managing director · senior programme manager · MBA

Henning Schulze has worked in IT infrastructure since 2009 — after qualifying as an IT specialist in systems integration, first as a systems engineer and lead architect at a Hamburg IT systems house, for Citrix environments serving more than 3,000 users: VDI, SSO, terminal services.

Programme responsibility followed from 2012: at Panasonic Europe the M&A integration of three automotive subsidiaries across EMEA — a €3.7m budget, 12–18 FTE, 3,000 endpoints, coordination between Hamburg and Osaka. Then a new data centre with full migration of 150 physical servers and 900 VMs in 14 months and a greenfield infrastructure in the Middle East in nine months; the Open University MBA in parallel. From 2017 at Hamburg’s largest e-commerce company the large infrastructure and security programmes: the incident remediation after a cyber attack across more than 1,000 servers with a €4m budget, 30+ FTE, six streams and the krbtgt reset, the O365 rollout for 7,000 users and the Microsoft 365 pilot for the group with a decision paper for the board.

From 2021 to 2025 at Rackspace Germany: AWS insourcing for a top-5 container shipping line with 73 production workloads, building the AWS operations team in India with 23 roles and 600+ hours of knowledge transfer; multi-cloud security for private banks and a lottery with PKI, security dashboard and IR playbooks. Since 2026, programme lead for the global AD consolidation at a world market leader in construction machinery — alongside managing Secureskies GmbH.

Secureskies GmbH was founded in 2023 to offer clients and partners technical expertise and leadership capability in large programmes and projects. Those positions built the Hamburg network of mid-sized companies, auditors and private banks that Secureskies works with today.

EducationMBAIT specialist, systems integration · Open University, UK 2017
MethodPRINCE2 / PMPAWS & Azure Architecture
SectorsLogistics · e-commerce · finance · bankingAutomotive · healthcare
LanguagesGerman · English

At Hamburg’s largest e-commerce company we saw what an active compromise does to a company — and what management is missing in that moment.

More than 1,000 servers were affected. Remediation ran fifteen months, across six streams with over thirty people: Active Directory secured on the ESAE tiering model, privileged access workstations for every domain admin, 300 DMZ servers hardened, 600 mailboxes moved to the cloud, and finally the krbtgt reset against golden and silver tickets — the moment where one mistake would have reopened the entire infrastructure.

The technical questions were solvable. The rest was harder. Who explains to the board which risk is still open today? Who decides which stream takes priority when operations and security contradict each other? Who keeps providers, insurers, regulators and your own organisation pointed the same way? That was no longer an engineering task. That was leadership under uncertainty.

That is where Secureskies GmbH came from. A boutique consultancy that sits across from management as an equal, restricts itself to the fields where it makes the difference and delivers value — cloud, identity, governance, programme and project leadership — and does not merely describe security there but owns and delivers it. The incident should never happen. If it does, management should know whom to call.

01

Incident remediation after a severe cyber attack.

E-commerce group · 2020–2021

Hardening of 1,000+ servers, AD security on the ESAE tiering model, PAW rollout, Exchange migration and execution of the krbtgt reset. Six streams, reporting line to VP, CISO, CIO, CDO.

€4mBudget
30+FTE · 15 months
1,000+servers hardened
15kAD users
ESAE tieringPAWkrbtgt resetActive DirectoryServer hardeningDMZExchange OnlineIncident remediation6 streamsC-level reporting line
02

AWS insourcing: managed service built in-house and handed over.

Container shipping line · top 5 worldwide · 2022–2025

Complete transition of externally operated AWS workloads into an in-house operating model: governance framework, 73 production workloads, AWS operations team built in India with 23 roles, 600+ hours of structured knowledge transfer.

€1.5mFixed budget
73workloads
23roles filled
600 hknowledge transfer
AWSInsourcingLanding zoneGovernance frameworkFMO / RACICI/CDOps team IndiaKnowledge transferKT workshopsOperations handover
03

Multi-cloud security for regulated financial institutions.

Private banks · lottery · 2021–2024

PKI architecture, security metrics for management dashboards, incident response playbooks and migration from data centre to cloud across AWS and Azure.

€2m+Programme
10–15FTE
2cloud platforms
200applications planned
PKIAWSAzureMulti-cloudLanding zonesSecurity dashboardIR playbooksData centre migrationPrivate banksLottery
04

Global Active Directory consolidation and high-security development network.

Construction machinery manufacturer · world market leader · since 2026

Programme leadership for the migration and consolidation of the global AD domains and for building a new high-security network for development. Governance, steering committee, risk control, international rollout.

€3mBudget
15FTE
Globalgroup rollout
Tier 0identity architecture
Active DirectoryAD consolidationTier 0IdentityHigh-security networkDevelopmentGovernanceSteerCoRisk controlGlobal rollout
05

M&A integration of three subsidiaries in EMEA.

Electronics group · automotive · 2012–2015

Post-merger IT integration: 3,000 endpoints, VoIP for 1,200 users, VPN harmonisation for 2,500 users. Coordination between Hamburg and Osaka.

€3.7mTotal
3subsidiaries integrated
M&APost-mergerCarve-inEMEA3 subsidiariesEndpointsVoIPVPNHamburg–OsakaAutomotive
Track Record · 01

Incident remediation after a severe cyber attack.

Role
Senior strategic project manager, overall lead of the remediation
Period
2020–2021 (2017–2021)
Client
E-commerce group, Hamburg
Budget
€4m
Team
30+ FTE in six streams over 15 months
Scope
1,000+ servers hardened, 300 of them DMZ servers; Active Directory with 15,000 users secured on the ESAE tiering model; privileged access workstations for every domain admin; 600 mailboxes migrated to Exchange Online; krbtgt reset against golden and silver tickets
Reporting line
VP, CISO, CIO, CDO
Outcome
Remediation completed in 15 months; infrastructure back under the company’s control after the reset
ESAE tieringPAWkrbtgt resetActive DirectoryServer hardeningDMZExchange OnlineIncident remediation6 streamsC-level reporting line
Track Record · 02

AWS insourcing: managed service built in-house and handed over.

Role
Senior project & programme manager (Rackspace Germany)
Period
2022–2025
Client
Container shipping line, top 5 worldwide
Budget
€1.5m fixed price
Team
23 roles filled, AWS operations team built in India
Scope
73 production workloads moved from external operation into an in-house operating model; governance framework, future mode of operation with RACI, CI/CD; 600+ hours of knowledge transfer in 25+ workshops
Reporting line
VP and CIO
Outcome
Operations handed over completely to the in-house team
AWSInsourcingLanding zoneGovernance frameworkFMO / RACICI/CDOps team IndiaKnowledge transferKT workshopsOperations handover
Track Record · 03

Multi-cloud security for regulated financial institutions.

Role
Programme manager (Rackspace Germany)
Period
2021–2024
Client
Private banks and a lottery
Budget
€2m+
Team
10–15 FTE
Scope
PKI architecture; security metrics for management dashboards; incident response playbooks; multi-cloud landing zones; migration from data centre to cloud across AWS and Azure, around 200 applications planned
Reporting line
VP and CIO
Outcome
Security architecture and reporting built for regulated institutions
PKIAWSAzureMulti-cloudLanding zonesSecurity dashboardIR playbooksData centre migrationPrivate banksLottery
Track Record · 04

Global Active Directory consolidation and high-security development network.

Role
Programme lead
Period
since 2026, ongoing
Client
World market leader in construction machinery
Budget
€3m
Team
15 FTE
Scope
Migration and consolidation of the global AD domains; a high-security network for development; governance, risk control, international rollout
Reporting line
Steering committee
Outcome
Programme in progress
Active DirectoryAD consolidationTier 0IdentityHigh-security networkDevelopmentGovernanceSteerCoRisk controlGlobal rollout
Track Record · 05

M&A integration of three subsidiaries in EMEA.

Role
Project manager, IT infrastructure (Panasonic Europe)
Period
2012–2015
Client
Electronics group, automotive division
Budget
€3.7m
Team
12–18 FTE
Scope
Post-merger IT integration of three subsidiaries across EMEA: 3,000 endpoints, VoIP for 1,200 users, VPN harmonisation for 2,500 users; coordination between Hamburg and Osaka
Reporting line
Group IT Europe
Outcome
Three subsidiaries integrated into group IT
M&APost-mergerCarve-inEMEA3 subsidiariesEndpointsVoIPVPNHamburg–OsakaAutomotive