About

CISO leadership across the full maturity curve.

My career has progressed from hands-on network engineering and threat analysis into group assurance, security transformation and CISO accountability. That range allows me to challenge technical detail, communicate clearly with Boards and lead change without confusing activity with progress.

I have established security capability following divestment, stabilised and transformed a difficult inherited environment, and contributed to mature programmes across global travel, retail, food, manufacturing and digital-platform businesses.

Mantas Marcinkevicius executive portrait
Executive profile

Transformation-focused CISO

I am a transformation-focused CISO with more than ten years of experience across PE-backed, multi-entity and enterprise-scale environments. I combine hands-on technical credibility with operating-model design, stakeholder influence and disciplined execution.

My current remit covers security strategy, Board and executive reporting, cloud, identity, operational resilience, customer and supplier assurance, AI governance and 24/7 security operations for a global digital data business.

My leadership experience includes direct teams of up to five and broader delivery through internal technology owners, consultancies and five to six specialist security providers supporting cloud, identity, assurance, resilience and 24/7 operations.

Career journey

Experience from engineering to CISO accountability

Lloyd’s List Intelligence

CISO

Global digital data platform | PE-backed

Re-established and matured the dedicated security function following divestment. Established governance, executive and private-equity reporting, assurance, resilience, supplier oversight, AI governance and 24/7 security operations. Led security separation across identity, cloud, data, networks and operational services.

Hyde Group

Group IT Security Manager

Five entities | 1,200+ users | Seven-figure security budget | Team up to five

Inherited a challenging brownfield environment and led its stabilisation and transformation. Managed a seven-figure security budget, rebuilt governance and operating capability, strengthened detection and response, introduced Board-level dashboards and delivered ISO 27001 readiness and Cyber Essentials Plus.

Associated British Foods

Group Security Assurance Lead

60+ businesses | Approximately 30,000 assets

Supported the Group CISO across a federated listed organisation spanning retail, food, manufacturing and operational environments. Led assurance, audit coordination, executive reporting, supplier assessments and group security-tool governance, including work across operating-company environments such as Primark and British Sugar.

Thomas Cook Group

Senior Vulnerability and Threat Analyst

International travel and digital commerce

Led vulnerability and threat processes across international divisions, strengthened executive remediation reporting, and supported PCI DSS and GDPR readiness alongside external assurance activity.

RNIB

Network engineering and security operations

Infrastructure, access and assurance

Built practical foundations across network engineering, segmentation, firewalls, secure mobility, access controls, vulnerability management and ISO 27001-aligned assurance.

Board and stakeholder leadership

Executive communication that supports decisions

Formal Board papers and regular presentations

Direct one-to-one engagement with a Board Chairman

Executive, investor and portfolio leadership governance

Incident, resilience and cyber-maturity exercises with senior leadership

Effective Board communication identifies the risks requiring executive attention, presents practical choices and creates clear ownership for action.

How I lead

Calm, evidence-led and accountable

Preserve what works

Understand the existing team, culture and operating model before changing structures, suppliers or controls.

Dashboards that drive decisions

Use clean, transparent reporting to expose material cyber pain points, show risk movement and ownership, and prompt decisions on priorities, investment and risk acceptance.

Pragmatic security, visible progress

Position security as a transparent business partner through proportionate controls, visible progress and clear ownership across Technology, Engineering, Legal, Procurement, Operations, business owners and specialist partners. Build trust by showing how security enables growth, resilience and customer confidence.

Technical credibility without technical dependency

Stay close enough to the detail to challenge assumptions while building teams and systems that do not depend on the CISO for every answer.

Technical foundations

Close enough to the detail to challenge assumptions

Infrastructure and control

Network engineering, segmentation, firewalls, secure mobility, access controls and cloud guardrails.

Threat and assurance

Vulnerability management, threat analysis, supplier assurance, ISO 27001-aligned evidence and OT assurance.

Modern operating capability

Identity, resilience, managed security services, customer assurance, data governance and secure AI adoption.

Regulatory and assurance experience: Led and supported readiness, assurance and control improvement across ISO 27001, Cyber Essentials Plus, PCI DSS, GDPR, NIST CSF and SOC 2, alongside NIS2 readiness activity.

Technical foundations: public operating-model endpoint
Modern CISO statusloading
Open JSON
Mode
Focus
Updated
Raw payload
Recognition

External perspective

Top 100 CISO, Computing 2024IT Leaders 100, 2025Infosecurity EuropeCISO 360Visions CISO Summit

Leadership, advisory and speaking conversations

Focused on measurable outcomes, resilient operating models and sustainable change.