Career highlights
Architect for a three-year project to improve cybersecurity capabilities for the governments of five Pacific Island Nations. As part of the project, created an Enterprise Security Architecture that identified capabilities (People, processes, technology) for the governments’ CERT teams, including a threat intelligence and centralised log management platform.
Developed and implemented a three-year cyber security strategy for an Australian critical infrastructure provider. The strategy included assisting the organisation with meeting their obligations under the SOCI act, treating high priority risks that were being actively abused by threat actors and was aligned to the business and technology strategies.
Provided security architecture and advisory support to a project building a financial market for an Australian critical infrastructure industry. The platform was used to transact over $5b in transactions annually. The project included performing risk assessments of processes and technology (for example, Azure infrastructure, serverless architecture and DevOps processes), along with developing blueprints, security patterns and designing new security controls.
Acted as the interim CISO for one of Australia’s largest payment gateways for 18 months. This included managing the existing team that had only recently joined the organisation, passing multiple ISO27001 and PCI-DSS audits, and eventually leading the process to identify a replacement.
