Services
Video meeting . 15 mins
Video meeting . 30 mins
Video meeting . 30 mins
Video meeting . 30 mins
About me
25 years experience in IT Security with all round technical consulting and leadership experience. passionate technical leader in solving complex problems, developing talent and building teams in everything offensive and defensive security.
volunteer mentor/fellow for cyber security and computer science post graduates attending University of Lincoln
Key skillsets:
• In depth knowledge of Breach Attack Simulation platforms and C2 frameworks (AttackIQ, Cobalt Strike,outflank OST, Caldera)
• in depth Knowledge of Security frameworks such as ISO27001, PCI, ITAR, NIST CSF, HMG Security Policy Framework.
• In depth knowledge of National Cyber Security Centre standards such as the 14 Cloud principles Cyber Essentials, CHECK scheme.
• In depth knowledge MITRE ATT&CK taxonomy framework principles and operationalisation
• Architecting Cyber Defence Capabilities for Public and Private Sector customers
• Designing Red team bespoke offensive testing and engagements
• Conversant with Cloud Security principles and reference architectures for Azure and AWS.
• High level knowledge and understanding of networking, compute and storage design principles.
• High level knowledge and understanding of Encryption, PKI, Key management principles
Industry Certs:
AWS certified
CISSP (expired)
Certified Red Team Ops
SABSA foundation (expired)
Security standards/compliance:
PCI DSS
ISO27001/27002/270017
NIST Cyber Security Framework
CIS
NCSC standards
MITRE ATT&CK
Threat Modelling (DREAD)
Security consulting experience:
Leading and managing Technical consulting engagements for clients security transformation programs with impartiality and objectivity to support CISO’s and security stakeholders make better informed decisions on investments in technology and processes improvement.
Security strategy support:
•Assessing current security posture •identifying gaps and contextual risks
•Cyber security roadmap development and ownership