I spent 13 years as a CTO protecting data sensitive enough for law-enforcement agencies, and I’m a certified penetration tester. As your cyber security advisor, that experience means I can tell you plainly where your real risks are, and, just as importantly, which ones aren’t worth losing sleep over.

Where I help

  • An honest risk picture. What could actually hurt your business, ranked, not a generic checklist.
  • Compliance without the panic. Practical paths through GDPR, ISO 27001 and industry-specific requirements.
  • Incident response planning. A clear plan for when something goes wrong, so a bad day doesn’t become a disaster.
  • Security by design. Building protection into new systems from the start, where it’s cheapest and most effective.

Why proportionate matters

It’s easy to spend a fortune on security and still be exposed in the places that count. My job is to point you at the risks that genuinely threaten the business and the controls that genuinely reduce them, so your spend does real work.

Advice, plus hands-on help when needed

This is advisory work: strategy, risk and judgement. When you need hands-on delivery, penetration testing, staff awareness training, technical implementation, that can be delivered through my agency FullyCoded, while my advice stays independent.