• Information Security Consultant with over 25 years’ experience.
• ISO 27001/2 Security Specialist with extensive COBIT 5 Best practice experience.
• Microsoft Certified Professional with an expert understanding of Business Continuity, IT and Cyber Security.
• Leading in IT and compliance governance, ITiL standards, risk management and project management.
• Spearheaded and delivered a two-year data security project to be awarded offshore status by DWP and government, achieving first award ever granted in the UK.
• Implemented and certified several public and private sector organisations to ISO27001 accreditation.
• As a Prince 2 Practitioner, directed several organisations on cloud solutions, risk, business risk and cyber security.
• defined and implemented Business continuity management across several organisations to ISO22301 standards
• ISO27001 Project management and implementation
• ISO27001 Auditor
• Prince 2 Practitioner
• ITiL Practitioner
• Microsoft Certified Professional
• IASME Cyber Essentials
• Data protection - GDPR
• Implementation of an Information Security Management Framework (governance; policies, processes and procedures, risk assessments; training, implementation and certification).
• UK / AU / NZ welfare to work sectors – Implementation of Information Assurance Frameworks to ISO27001 standards (Director of Project management on implementation, design and rollout. advising on applicability of controls; advising on tailored requirements to multiple international standards)
• Implementation of ISO27001 framework and certification in the health and safety sector. Directing and project management of the standard to stringent government directives.
• Project management and implementation of ISO27001 within a leading IT service sector organisation, delivering outsourced IT services to over 100 major multi sector organisations across the UK. Achieved certification and clean re-certifications over 7 years.
• Provided several major organisations with Risk Assessment methodologies, incident and incident management processes and methodologies in order to deliver ISO27001.
• Directed and managed many awareness and training projects in order to ensure standards, policies, process and procedures were implemented and measured for effectiveness
Product Skills:-
• ISO27001 and COBIT5 Assessment Products
• International Standards/Regulations
• Various Risk Assessment / Management Products
• Governance Benchmarking
• Cyber Essentials
General Skills: -
• Information Security Governance
• Information Security Management
• Information and business Risk Assessment
• IS Training and Awareness
• IT Governance Assessments (COBIT5/ISO27001:2013)
• ISO 90001
• Prince 2 Project Management
• ITiL Practitioner