You're seeing this page as if you were . The main menu is still yours, though. Exit from immersion
David MantockDM

David Mantock

CISO and GRC Expert

£1,200/day
Zurich, CH
15+ years

Average response time: 1 hour

About David

I’m a bilingual (EN/DE) CISO and Board Advisor who turns cybersecurity into a business advantage. I bring 25+ years of leadership in regulated environments—public sector, healthcare/e‑pharmacy, and critical infrastructure—where trust, uptime, and compliance are non‑negotiable. My approach is empathy‑first and outcomes‑driven: align people, make processes repeatable, and deploy technology that empowers delivery.

What I deliver:
• Executive reporting that drives decisions: top risks mapped to actionable controls—no noise, just clarity.
• Certification and market access: ISO 27001 uplift (with 27017/27018), privacy alignment (GDPR/DSG‑CH), and audit readiness that clears the path to revenue (e.g., e‑prescription market entry).
• Culture and execution: Security Champions at scale, humane leadership, and non‑violent communication to shift from “security as friction” to “security as enablement.”
• Incident readiness and response: pragmatic playbooks and post‑incident remediation that reduces time‑to‑control and rebuilds trust with regulators and customers.

How I work:
• Install simple, durable management rhythms—PDCA and risk‑to‑initiative governance.
• Translate controls into effectiveness, and resilience for CEOs and CFOs.
• Focus on measurable outcomes.

Selected outcomes:
• Enabled entry to a €50B e‑prescription market via security certification.
• Extended ISO 27001 with cloud/privacy codes of practice in complex, managed service provider setting.
• Built programs that endure and scale.

Engagement formats:
• Fractional/Interim CISO
• Board and GRC advisory
  • English

    Native or bilingual

  • German

    Fluent

Can work on-site
Zurich (up to 50km)

Experience

  • Tax Administration
    CISO
    August 2025 - Today (10 months)
    Bern - Zürich Strasse, Langenthal, BE, Switzerland
    In this role I am responsible for cybersecurity in the Tax department as well as the Secretariat General of the Finance Department.
    ISO 27001 ISO 9001 artificial intelligence DevSecOps
  • DocMorris AG,
    Group Director of Digital Trust and CISO
    October 2022 - April 2025 (2 years and 6 months)
    Frauenfeld, TG, Switzerland
    DocMorris is one of the largest on-line pharmacies in Europe. And my job was to ensure security and compliance in an environment with very sensitive health data.
    • Develop and maintain enterprise-wide security programs – ISO 27001 , NIST
    • Evaluate, report, and manage security using risk-based approach
    • Incident response and security operations
    • Lead European wide security team (hybrid/remote)
  • SPIE Switzerland AG,
    Chief Information Security Officer and DPO
    February 2018 - September 2022 (4 years and 7 months)
    Bern, Switzerland
    SPIE Switzerland is a multi-technical service provider. My task was to ensure we and our services were secure, especially as we managed networks for many critical infrastructures.

Recommendations

Be the first to recommend David

Help this freelancer shine by sharing your experience working together.

These freelancer profiles also match your criteria

AgathaA

Agatha Frydrych

Backend Java Software Engineer

4.7

(3)

2

BaptisteB

Baptiste Duhen

Fullstack developer

4.6

(4)

5

AmedA

Amed Hamou

Senior Lead Developer

4

(2)

7

AudreyA

Audrey Champion

Web developer

4.3

(3)

4

Education

  • BACHELOR IN
    London South Bank University
    2016
    BACHELOR IN
  • Certified Information Security Manager (CISM)
    ISACA Validity
    2026
    Certified Information Security Manager (CISM)

Skill set

Categories