I am a Cyber Security Professional with over 20 years’ experience protecting businesses from Cyber-attacks.I engage at both the Executive Level with C-Suite and board experience, and also at the deep technical level; collaborating with executive leadership to align security initiatives with organizational goals and objectives, where I have a proven ability to communicate complex technical concepts to both technical and non-technical stakeholders. I am well versed with auditing and implementing many Cyber Industry Standards, such as: Essential 8, ISO 27001, PCI DSS and NIST. With a large portion of my career being in the deep technical land of Penetration Testing, I have an expert understanding of where Cyber Security breaks down. I use this knowledge, combined with traditional GRC practices to help prioritise and remediate risks in a logical order that is realistic to achieve in a timely manner. From an operational security perspective, I have been fortunate to reside on both sides of the fence and engage with many operational models. From the under resourced IT one-man-band through to advanced DevSecOps and DevRiskOps teams. I am very well skilled at balancing constraining regulatory requirements (APRA) versus the openness of an agile, DevOps start-up organisation. Combining my experiences from Red Team Offensive Security to Blue Team Defensive Security – I am a genuine Purple Team operator.Send me a DM, email me to find out more on how I can help you.
-
Senior Security ConsultantCytheraMelbourne, Vic, Au -
OwnerCyber Wave Consulting Dec 2022 - PresentSydney, New South Wales, AustraliaAs a self-starter, combined with good timing in life, I have set up my own business to gain more control and flexibility over the work I do. I have successfully established myself as a freelancer and have been able to contract with a variety of clients and styles of engagements.I am comfortable working independently or as part of a team, and I have honed my problem-solving and critical thinking skills to adapt to a variety of situations.My primary goal is making practical, real-world improvements to the security posture of organisations - Especially those that are resource constrained, have high levels of regulatory compliance, and/or operate in modern cloud/serverless infrastructure. Start-ups are a particular specialty, notably those in FinTech, HealthTech, InsurTech. -
Idc Staff InstructorDive Centre Manly Oct 2018 - PresentManly, New South Wales, AustraliaI am a part time instructor at Dive Centre Manly.I teach a wide range of courses, ranging from Open Water through to Tec 50 Trimix and mentoring other dive professionals.
-
Head Of Managed Security ServicesCso Group Jul 2022 - Dec 2022SydneyDue to the success I had with stabilising and building the Managed Service Team, I was promoted to Head of Managed Services, being responsible for re-building and running the CSO Group MSS, delivering over $1.7 million of Managed Services.I continued to uplift and improve the Managed Services team and deliver successful outcomes.ISO27001 Certification - Working in collaboration with the GRC practice lead, I was a key stakeholder in CSO Group's successful ISO 27001 certification.Sales Engagement and Service Delivery Definitions - A tough challenge at CSO was pivoting a very technology focussed organisation to understanding the importance of People and Processes.I developed sales collateral and strategies on how the sales team can pivot to allow better engagement with existing and potential customers. This included presentations at the annual CSO Group Sales Kick Off functions. -
Team Lead Of Managed ServicesCso Group Aug 2021 - Jul 2022I started my tenure at CSO Group as the Managed Services Team Lead.Team Leadership -I took over a team that was under resourced, and not performing as required, with wavering moral. I immediately set about providing personal coaching to the team members for them to become better engaged with identifying and escalating operational issues, career guidance and training for soft-skills. This greatly boosted moral and stabilised the team.Operational Improvements - Implemented foundational ITIL based processes to support the delivery of successful customer outcomes, such as:• Change Management• Service Level Management• Request Fulfilment• Security Incident and Event Management (Internal & Client)• Access Management• Problem Management• Knowledge ManagementDeployed and operationalised:• Centralised knowledge based and procedural documentation repository (Confluence)• Service Management solution with individual customer portals (Jira)• 24/7 on-call practice scheduling and agent huntingRemoval of process-debt• Automation of daily/weekly/monthly checklists, resulting in a saving of 6 person-hours per day. -
Head Of Delivery/V-CisoSecurity Centric Jun 2020 - Aug 2021Sydney, New South Wales, AustraliaMy primary remit was to build scalable delivery for a rapidly growing team to enable the business to grow at an accelerated rate.My vision for achieving this goal was the integration of security practices that commonly operate as separate entities. Delivering the entire outcome to the client, linked through from the highly technical SecOps through to business risk advisory:• SecOps Managed Security Services (including DevSecOps)• Security Engineering Services• Technical Assurance Services (Penetration Testing/Technical Audits)• Governance, Risk and Compliance Services (DevRiskOps)CISO as a Service - I also provided Virtual CISO services for clients who require on demand C-Level Cyber Security experience and expertise.While my primary remit was often highly functional, I have found the most satisfaction in in the leadership aspects of my role. Applying my career experiences to set and directly control the success (or failure) of the primary objectives of the business is inspiring and motivating. -
Head Of Cyber Security / Security Operations ManagerVolt Bank Sep 2018 - Jun 2020North SydneyI was presented with an opportunity of a lifetime – help build the security of Australia's first independent Digital Bank from the ground up.Through my time at Volt, I was responsible for all Cyber Security areas, putting in to practice everything that I have preached for many years, working to deliver pragmatic security outcomes.As with any start-up firm, my daily role was highly varied, depending on what is required by many stake holders at any time. Some of the highlights of my tenure at Volt were:• Be a part of the delivery team who secured APRA’s first new banking license for a Neo Bank.• Build the initial Cyber Security strategy and roadmap for delivery• Develop, implement and test Volt’s Cyber Incident Response capabilities• Respond to and manage any major operational issues, events and incidents• Manage multiple security vendors• Manage the Volt Penetration Testing program• Instigate and coordinate the Volt PCI DSS compliance program with the goal of becoming Australia’s first bank to achieve full PCI compliance.• Perform security awareness training for all levels of staff and executives.• Implement many security controls for both corporate and banking platform infrastructure.• Design BYOD fundamentals -
Melbourne Team Lead (Technical Assurance)Cqr Feb 2018 - Aug 2018Melbourne, AustraliaMy primary role at CQR was the Team Lead for the Melbourne Office of this Information Security consulting firm. Major Achievements• Enhanced local sales through instigation of technical pre-sales and client management support. This directly led to winning several $100,000+ multi-year engagements.• Matured existing methodologies, particularly regarding technical risk assurance. This recovered and solidified three previously failing accounts valued at $125,000.• Implemented resource management and collaboration software, reducing administrative overheads by 40%.Major Clients:Connect EastANZBendigo & Adelaide Bank (UP)Department of Health and Human Services VictoriaWesley College -
Security Practice LeadBlueapache Jun 2017 - Jan 2018Melbourne, AustraliaMy role at Blue Apache was to start a Security Practice from the ground up within the Managed Services Operations Team at the headquarters of this Managed Services Provider.Major Achievements• Grew the security team from one person to three in six months to meet business expansion requirements.• Implemented the foundational components of an ISO 27001 Information Security Management System with Information Security Policies and Asset Management.• Delivered training for executives, business development and delivery staff to bring business awareness up to date with new security requirements.Major Clients:Brotherhood St LawrenceMelbourne Arts Centre -
Senior InstructorAcademy Of Scuba Australia 2016 - 2018Melbourne, Victoria, Australia -
Security Practice LeadIpsec Pty Ltd Oct 2012 - May 2017Melbourne, AustraliaMy role at IPSec was to expand and grow the fledgling consulting arm of the business.Major Achievements• Developed pragmatic risk-based security testing methodologies to address previously unmet client needs. As a result:o Transformed the consulting practice from a revenue of less than $20,000 to $1.2 Million for 2014-2015.Major Clients:Department of Premier and Cabinet (Enterprise Solutions)Slater and GordonTreasury Corporation of VictoriaDepartment of Education and Training VictoriaVic HealthRecoveries CorpJaparaVillage RoadshowKorda MenthaMetro TrainsKubota -
Security Practice LeadE-Sentinel Sep 2009 - Oct 2012Brisbane, AustraliaMy role within E-Sentinel was to initiate and build the technical assurance section of the practice. Major Achievements• Won and delivered significant engagements based on clear identification of client requirements including:o Delivered a compliance audit within key Core Banking Systems of a major Australian Bank. Due to the success of this three-week engagement, the engagement was extended by three months and expanded to include other key systems.o Delivered a 3-month Penetration Testing engagement within a major Australian bank’s CERT, assessing the security controls of new Core Banking Systems.
-
Senior AnalystDeloitte Australia Oct 2007 - Aug 2009Sydney & Brisbane, AustraliaMy role within Deloitte was that of the primary senior analyst for Brisbane and Sydney Enterprise Risk Services. Penetration Testing and security audit was my core focus.Major Achievements• Performed and delivered many engagements including:o A security audit regarding the new Queensland drivers’ licence, leading to significant security improvements.o Technical security controls audit of new core banking systems for a major Australian bank.o Implementation of security infrastructure in a remote mine based in PNG. -
Senior ConsultantPwc Australia Nov 2004 - Oct 2007Sydney, AustraliaMy role within PwC was that of the primary senior consultant for the Sydney office for the Security and Privacy competency in the Risk Services group. Penetration Testing and security audit was my core focus.Major Achievements• Performed and delivered many engagements including:o Critical National SCADA infrastructureo Communicated highly technical findings to non-technical partners leading to a better understanding of client compliance obligations.• Internal Ambassador for sports sponsorship in the workplace, based on my success in international competitive sailing. -
Penetration TesterPure Hacking Oct 2003 - Nov 2004 -
Penetration TesterPortcullis Computer Security Ltd (Now Part Of Cisco) Sep 2001 - Sep 2003
Frequently Asked Questions about Bill Robson
What company does Bill Robson work for?
Bill Robson works for Cythera
What is Bill Robson's role at the current company?
Bill Robson's current role is Senior Security Consultant.
Who are Bill Robson's colleagues?
Bill Robson's colleagues are Braden Leckie, Mitch Bottomley, Steph Martin, Ben Cuthbert, Richard Summers, Lucas Lingohr, David Mulford.
Not the Bill Robson you were looking for?
-
Bill Robson
Australia -
-
1deloitte.com.au
-
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial