Gary S. Email and Phone Number
Certified Information Security Manager (CISM) | Certified ISO 27001 Lead Auditor | Information and Cyber Security Subject Matter Expert | Audit ManagerAt the helm of cyber security operations for NHS Business Services Authority, my mission is to safeguard critical health data through strategic risk management and robust security controls. My current role capitalizes on my technical understanding and leadership in information security strategies.With a professional journey marked by accountability to executive teams and a proactive approach to cyber security, I contribute significantly to the protection and resilience of essential services. My expertise in third-party risk management and certification as an ISO/IEC 27001 Lead Auditor underpin the commitment to excellence and continuous improvement in managing information security risks.
Ward Hadaway
View- Website:
- wardhadaway.com
- Employees:
- 577
-
Merged Roles - Risk And Compliance Manager And Information Security ManagerWard HadawayFir Tree, England, Gb -
Cyber Security Operations ManagerNhs Business Services Authority Jan 2024 - PresentNewcastle Upon Tyne, England, United KingdomMAIN RESPONSIBILITIES- Leading the Cyber Security Operations and Security Architecture teams, defining and implementing the 2024/26 strategies.- leading the adoption of the new Central Digital and Data Office Secure by design framework and principles.- Responsible for the alignment of security controls against NSCS guidelines and the Cyber Assessment Framework (CAF).- Defining and delivering a 2-year Cyber Security Improvement Program, creating a new team to deliver activities.- Supporting multiple security assessment and assurance activities to assess existing controls, identify gaps, drive improvements and increase the security maturity across multiple environments including AWS, Azure and on premise.- Develop comprehensive assurance, compliance and status reporting for the Leadership teams and boards.ACHIEVEMENTS- Successfully leading the Security operations and architecture teams, developing the effectiveness of existing core capabilities resulting in a notable increase in the quality and timely threat and risk identification and management.- Leading a working group of function heads, analysing the capabilities of the BSA project workstream against the Secure by design principles, identifying gaps and creating a transition and implementation plan.- Fostered collaboration between Information Security, Governance risk and compliance and Cyber Security teams to help align responsibilities and accountabilities, and develop stronger working practices to support service assurance activities.- Reviewed the security capabilities against the CAF of 3rd parties bidding for the Managed Service of the BSA Data Centres.- Expanded the coverage of alerting and monitoring with existing resources and tooling to drive greater intelligence data. -
Senior Information Security AnalystHiscox Jul 2022 - Jan 2024York, England, United Kingdom• Deputising for the Head of Governance, Risk and Compliance.• Delivering into the C-suite.• Owning core elements of the Information security strategy, programme, and reporting• Co-leading on the security mentoring, training and awareness programmes and campaigns. -
Senior Information Security Officer And Interim Cyber Security Programme LeadThe University Of Sheffield Apr 2021 - Jul 2022Sheffield, England, United Kingdom• Line Management of the Faculty Information Security team and network of Information Security Champions• Delivering into, and directly accountable to the CISO and Exec team• Owning the Student Lifecycle Programme (SLP) IT and Information Security strategy, activities, and framework.• Leading the cyber security programme -
Information Security CoordinatorThe University Of Sheffield Jul 2019 - Apr 2021Sheffield, England, United Kingdom• Introduced and owned the supplier assurance framework, process and materials covering procurement, data protection, contracts/vendor management and security.• Owned and embedded Information security tooling, metrics, and reporting.• Expert security advisor to all research teams and projects with internal and external stakeholder and sponsors including MOD, NHS Digital and research facilities.• Coordinated the windows desktop and server upgrade project and exception process.• Delivered information security and incident response training and awareness activities.• Owned and Managed freedom of Information requests
-
Short BreakNo-Company. (Self-Employed.) Oct 2017 - Apr 2019Sheffield, United KingdomFollowing a redundancy from HSBC, I leveraged the opportunity to establish a successful small business. Although this experience yielded positive outcomes, it did not align with my long-term career goals and aspirations. I made the decision to transition back to my expertise in Information Security with a clear vision of advancing into a senior leadership position with significant team management responsibilities and opportunities for professional growth. -
Staff Engagement Manager - It SecurityHsbc May 2016 - Oct 2017Sheffield, United Kingdom• Member of the IT Security Leadership Team, owning and leading all global staff management, communication, and training programmes• Advisor on the design and execution of the Global IT Security Target Operating Model, and transformation and change activities associated with merging Security and risk functions.• Owned the Global Cyber Security Awareness training.• Coaching and mentoring team managers with building and developing highly effective teams, holding effective 1to1s, development of staff and managing conflict. -
Information Security Risk SpecialistHsbc Jul 2014 - Mar 2016Sheffield, United Kingdom• Line management of the Information Security team conducting internal Sarbanes-Oxley (SoX) audits and risk reviews, approvals, and reporting processes and metrics.• Successfully maintained certification for SoX against the IT general controls • Owned and developed the exceptions and assurance process for control noncompliance.• Develop stakeholder engagement, maturing relationships with business and country heads to develop information security and risk acceptance capabilities and knowledge. -
Technical AnalystHsbc Jan 2011 - Jun 2014Sheffield, United Kingdom• Responsible for the software delivery teams based in India.• Owned the transformation of both operations and team structure.• Defined and delivered the quality improvement plans, re-engineering the global software delivery process, improving day-to-day provisioning, and response to Incidents.• Strengthened and aligned relationships with offshore and quality teams, fostering collaborative work towards shared goals through SMART objectives. -
Assistant / Network AnalystHsbc Jul 2006 - Jan 2011Sheffield, United Kingdom• Team leader for the network implementation team, including prioritisation of work, support for incidents and emergency change activities.• Lead on network activities within scheduled datacentre loss exercises, failing over and restoring network elements without any impact to services.• Develop the team through mentoring, coaching, and training programmes. -
It SpecialistSchool Trends Apr 2000 - Jul 2006Managed the full complement of existing IT requirements and future technology needs for a medium sized enterprise expanding the infrastructure aiding the introduction and development of remote working capabilities enabling it to grow from 50 to 200+ employees. -
Hardware / Software Design EngineerEdward Pryor & Sons Sep 1998 - Oct 1999Sheffield, United KingdomProject Managed large-scale bespoke systems based around core products for large motor vehicle manufacturing companies independently delivering technical design specs and proceeding to develop, implement and test the systems.
Gary S. Education Details
-
2:2 Honours Degree -
The Coaching AcademyDiploma - Pass -
Loxley CollegeNational Diploma - 17 Modules Passed Including Distinctions -
The City School, Sheffield8 Grades C Or Above Including Maths, Science And English
Frequently Asked Questions about Gary S.
What company does Gary S. work for?
Gary S. works for Ward Hadaway
What is Gary S.'s role at the current company?
Gary S.'s current role is Merged Roles - Risk and Compliance Manager and Information Security Manager.
What schools did Gary S. attend?
Gary S. attended Sheffield Hallam University, The Coaching Academy, Loxley College, The City School, Sheffield.
Who are Gary S.'s colleagues?
Gary S.'s colleagues are Josh Fielding, Debbie Bird, Lesley Devlin, Owen Ormond, James Nightingale, Nicolle Vare, Tyla Malloy.
Not the Gary S. you were looking for?
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial