Rebel PM International

Your specialist in

IT Project Management
Information Security & Compliance


With over 25 years in IT and more than 15 years leading complex IT, compliance, infrastructure and cyber-security projects, I founded Rebel PM International in 2022 to offer that experience and knowledge to a broader audience.

Much of the work today sits in information security: building governance structures, writing security policies, assessing where an organisation actually stands, and turning regulatory requirements — ISO 27001, NIS2, KRITIS, BSI IT-Grundschutz, GDPR — into processes, IT services and governance structures.

Information security rarely fails on the technology. Introducing governance means changing how work gets done — procurement, approvals, accountability, right down to the screen lock and the MFA prompt at every desk. That asks a lot of people: new ways of doing things that have been done the same way for years, and controls whose purpose does not explain itself.

There is no way around it, though: in today’s world IT security is not optional, and the regulator wants to be served as well. Only a policy is not protection — it is a statement of intent. An audit can be passed with one; an attacker could not care less about it. Any weak spot that can be found will be exploited.

So how does that transformation actually work?

Rebel PM is in ways different from other Project Management methods. Everyone knows PMI, Prince2, Agile, Scrum and a range of other methods. Do they work? Do your projects run better? Or do you think there is something missing? Something that really helps you finish your project.

All those handbooks, manuals, guidelines, frameworks don’t bring your project to the goal. Why is that? Get in touch and find out.

I would be glad to support you.

Regina Uhlig, founder of Rebel PM International

Core competencies

Governance & Compliance

Building information security governance, writing security policies, and translating regulatory and internal security requirements into processes, IT services and governance structures that hold up in an audit.

Security & Service Management

Gap analysis, definition and follow-through of remediation measures, vulnerability management, and IT service management.

Delivery & Communication

Programme and project management, stakeholder and service-provider management, management reporting, risk and quality management.