Services
Engagements are scoped to what’s needed — from a focused review through to hands-on interim leadership. Get in touch to talk through the right fit.
myCISO
Fractional and interim CISO / Head of Security engagements — experienced security leadership without a full-time hire. Able to represent the function to your Board, your regulator, or your executive team from day one.
Governance
Security governance and ISMS implementation, built from a standing start where needed. I’ve taken organisations from no formal framework through to a Board-approved, ISO 27001-aligned information security management system, including the governance forums to keep it functioning after I leave.
Risk Management
Risk-based security programmes, measured by outcomes. My most recent programme cut critical vulnerabilities by more than 90% and reduced phishing susceptibility from 15% to under 1%, through a prioritised, funded roadmap a Board Risk Committee could track.
Compliance
NZISM certification and accreditation experience, PCI DSS background as a former QSA, and Australian APRA CPS 234 remediation. I’ve reported directly to New Zealand’s financial regulators and understand what regulator-facing documentation needs to look like.
Security Operations
Depending on what you need, I’ll either build and uplift your SOC capability as a project, or step into hands-on interim leadership of your security operations — I’ve personally run day-to-day EDR, identity and monitoring platforms, and led a 24/7 outsourced SOC.
Business Continuity
BC/DR frameworks tested under real disruption — including during the Christchurch earthquakes, not only in a tabletop exercise.
