Current role
CISO
Global digital data platform
CISO • Board & executive leadership • Transformation • Resilience
I lead security across the full maturity curve: establishing functions after carve-outs, stabilising complex environments and strengthening established programmes in PE-backed, listed and digital businesses.
I translate cyber risk into clear decisions, accountable delivery and measurable outcomes. My approach combines pragmatic controls, transparent reporting and visible progress across resilience, cloud, identity, third-party risk, AI governance and secure transformation.

Current role
CISO
Global digital data platform
Group-level assurance
60+
Businesses across a federated listed group
Enterprise assurance
30,000
Assets across group control and tooling coverage
Annual savings
£200k
Supplier and tooling consolidation
Critical vulnerability exposure
80%
Reduction through accountable remediation
Career experience
Different organisations require different interventions. My approach is to understand what already works, address material weaknesses and build the operating model needed for the next stage of growth.
Established and matured a dedicated security function following divestment, covering strategy, governance, assurance, resilience, cloud, identity, suppliers and 24/7 security operations.
Inherited a challenging brownfield environment and rebuilt governance, supplier delivery, security operations, control maturity and executive confidence.
Contributed within large listed-company environments across group assurance, travel, digital commerce, retail, food, manufacturing, operational environments and OT assurance.
Delivered through direct teams, internal technology leaders, engineering, legal, procurement, business owners, specialist consultancies and managed security providers.
Board and executive leadership
Formal Board papers and presentations, direct Chairman engagement, executive and private-equity governance, and senior crisis and resilience exercises.
I build executive confidence through a transparent reporting cadence: clean dashboards, a small number of material cyber pain points, clear ownership and visible progress. The objective is to tell the cybersecurity story clearly enough that executives can make timely decisions on risk, investment and resilience.
Preserve what works, expose what matters and create a credible route to the next stage of maturity without introducing unnecessary disruption.
0–30
31–60
61–90
Translate cyber risk into decisions, ownership, investment priorities and measurable delivery. Use clean dashboards to show material risk movement, focus executive attention and prompt timely action.
Identity-led controls, pragmatic cloud guardrails, third-party assurance and recovery capability designed around critical services and genuine operating constraints.
Enable responsible AI adoption through clear ownership, data controls, access boundaries, human approval and auditable decision-making.
AI, email security, modern defence
Regulation, complexity, operating models
Contact
Executive cyber leadership, strategic advisory and speaking conversations focused on measurable outcomes, resilient operating models and sustainable change.