Advisory
Executive security leadership, on the terms your board needs.
Flexible mandates tailored to where your organisation sits on its security and transformation journey — from independent board challenge to hands-on programme delivery. The work in front of most boards right now: governing an agent fleet that is growing faster than the controls around it, answering live DORA, NIS2 and CRA supervision, and starting a post-quantum migration that cannot be started late.
Engagement models
Three ways to work together.
Each engagement is shaped around your risk appetite, regulatory exposure, and the maturity of your security function.
Board & NED Advisory
Independent challenge and assurance on cyber risk, technology strategy, and transformation — translating technical exposure into board-level decisions and confidence.
Interim & Fractional Executive
Hands-on CISO, CIO, or CTO leadership to stand up, mature, or rescue security, technology, and resilience programmes — with measurable outcomes from day one.
Transformation Programmes
End-to-end delivery of complex change — operating-model redesign, M&A integration, and technology modernisation in regulated estates.
What's delivered
Outcomes, not activity.
Engagements are anchored to enterprise outcomes the board can recognise and the regulator can trust.
- 01Enterprise security strategy aligned to business risk and growth
- 02Board-ready cyber risk reporting and governance frameworks
- 03Operational resilience and incident-readiness uplift
- 04Regulatory compliance posture and audit assurance
- 05Operating-model and organisational redesign
- 06M&A cyber due diligence and integration
- 07AI strategy, adoption, and governance — including agent inventory, permission scoping and audit trails for autonomous AI
- 08Cloud, OT and technology modernisation roadmaps, hardened to IEC 62443 where IT meets operational technology
- 09Budget, investment, and cost-optimisation oversight
- 10High-performing security team build and mentoring
- 11Post-quantum migration: cryptographic discovery, inventory and agility against the 2030 deprecation horizon
- 12CRA and NIS2 readiness: vulnerability handling, incident reporting lines, and lifecycle obligations for products with digital elements
Sectors
Where the stakes are highest.
Deep experience in highly regulated, mission-critical environments.
C-suite engagement models
Executive leadership, on the terms your board needs.
Interim, fractional or advisory — each model brings 25+ years of C-suite technology and security leadership into your organisation at the pace the situation demands.
Interim CISO
Full-authority security leadership through transition, incident recovery or regulatory scrutiny — stabilise, remediate, hand over stronger. DORA, NIS2, CRA and ISO 27001/42001 delivery included.
Fractional CIO
Board-level technology direction without the full-time cost: operating model, investment governance, transformation oversight and vendor leverage — typically 2–3 days a week.
Interim / Fractional CTO
Engineering and architecture leadership for scale-ups and regulated enterprises: platform strategy, AI adoption with governance, delivery discipline and technical due diligence.
Board Cyber Advisor
Independent counsel to boards, audit and risk committees: cyber risk appetite, breach readiness, regulator engagement and challenge of executive assurance.
Programme Rescue
Security and technology programmes that are red and getting redder: rapid diagnostic, replan, and delivery leadership until the programme is demonstrably green.
Non-Executive Director
NED and committee roles for organisations that need deep cyber, AI-governance and technology-risk expertise in the boardroom itself.
Next step
Scope an engagement.
Tell me about your situation and I'll outline the right engagement model.