Matthew Lomas
AeroLeads people directory · profile

Matthew Lomas Email & Phone Number

Cyber Security Risk Director at AstraZeneca | MSc, CISSP, CISA, CCSK at AstraZeneca
Location: Macclesfield, England, United Kingdom 8 work roles 3 schools
1 work email found @astrazeneca.com 3 phones found area 162 and 161 LinkedIn matched
✓ Verified July 2026 4 data sources Profile completeness 100%

Contact Signals · 1 work email · 3 phones

Work email m****@astrazeneca.com
Direct phone (162) ***-****
LinkedIn Profile matched
3 free lookups remaining · No credit card
Current company
Role
Cyber Security Risk Director at AstraZeneca | MSc, CISSP, CISA, CCSK
Location
Macclesfield, England, United Kingdom

Who is Matthew Lomas? Overview

A concise factual answer block for searchers comparing this professional profile.

Quick answer

Matthew Lomas is listed as Cyber Security Risk Director at AstraZeneca | MSc, CISSP, CISA, CCSK at AstraZeneca, based in Macclesfield, England, United Kingdom. AeroLeads shows a work email signal at astrazeneca.com, phone signal with area code 162, 161, and a matched LinkedIn profile for Matthew Lomas.

Matthew Lomas previously worked as Cyber Security Risk Director at Astrazeneca and Cyber Security Governance Manager at Astrazeneca. Matthew Lomas holds Certificate In Professional Studies, Business Administration And Management from The Manchester Metropolitan University.

Company email context

Email format at AstraZeneca

This section adds company-level context without repeating Matthew Lomas's masked contact details.

{first}.{last}@astrazeneca.com
86% confidence

AeroLeads found 1 current-domain work email signal for Matthew Lomas. Compare company email patterns before reaching out.

Profile bio

About Matthew Lomas

I have 18+ years experience in successfully delivering cybersecurity governance, risk management & compliance (GRC) capabilities in both a leadership and “hands-on" capacity within small and medium enterprises (SMEs) and global multinational companies, operating across the pharmaceutical, manufacturing (Defense / Aerospace / Automotive) and payment card industries.I possess a comprehensive understanding of global security standards and frameworks, including NIST CSF, NIST SP 800-53, NIST SP 800-171 (DFARS 252.204-7012), ISO 27001, PCI DSS and PCI Card Production, and have consistently attained and maintained certifications within heavily regulated industries. Academically, I hold a BSc in Business Information Systems and an MSc in E-Commerce and have pursued continuous professional development, securing industry security accreditations such as CISSP, CISA, Qualified Security Assessor (QSA), CCSK and Approved Security Assessor status for major payment brands such as MasterCard, Visa Europe, and Visa International (APAC).

Listed skills include Information Security, Computer Security, Security, Cissp, and 19 others.

Current workplace

Matthew Lomas's current company

Company context helps verify the profile and gives searchers a useful next step.

AstraZeneca
Astrazeneca
Cyber Security Risk Director at AstraZeneca | MSc, CISSP, CISA, CCSK
AeroLeads page
8 roles

Matthew Lomas work experience

A career timeline built from the work history available for this profile.

Cyber Security Risk Director

Current

Cambridge, Cambridgeshire, Gb

AstraZeneca PLC is a global science-led pharmaceutical and biotechnology company specialising in the discovery, development and commercialisation of prescription life changing medicines in Oncology and BioPharmaceuticals that are used by millions of patients worldwide. AstraZeneca employs circa 80,000 staff in 44 locations across 30 countries worldwide. AstraZeneca is listed on the London Stock Exchange and is a constituent of the FTSE 100 Index. As Director of Cyber Security Risk, I am responsible for the identification, management and reporting of cyber risk and risk reduction activities, both within Cyber and across the global Business Technology Groups and Enterprise Services, that help strengthen our cyber resilience by protecting the organisation's infrastructure, systems, applications and data assets.In my role I ensure that risk reduction initiatives are aligned and prioritised to the cyber security strategy and overarching organisational objectives and strategic direction, whilst maintaining transparent communication of KPIs and KRIs with key decision makers and stakeholders including Cyber Leadership, IT Leadership, Audit Committee, and Board of Directors.

Nov 2022 - Present

Cyber Security Governance Manager

Cambridge, Cambridgeshire, Gb

Sep 2020 - Nov 2022

Group Information Security Manager

Macclesfield, Cheshire, Gb

Bodycote PLC is the global leader in heat treatment and specialist thermal processing services, providing a variety of techniques and specialist engineering processes which improve the properties of metals and alloys and extend the life of components. Bodycote operates within the automotive, energy, medical, aerospace and defence industries and employees circa 5000 staff in 180 locations across 23 countries worldwide. Bodycote is listed on the London Stock Exchange and is a constituent of the FTSE 250 Index.Key Responsibilities:- Development and maintenance of the information security management system (ISMS), ensuring a proportionate and consistent level of security is adopted for all data, applications, systems and network infrastructure across the Group;- Management of external and internal security audit frameworks, coordinating audit schedules and tracking and reporting of remediation activities;- Management of the third-party assurance framework and reporting of third-party risk to senior management;- Reporting of risk and control compliance through regular meetings with senior management and generation of presentations for the audit committee, executive committee and board of directors;- Supplier management for all security related solutions and services, from the creation of the initial RFP, through to supplier selection, engagement, and post implementation management of performance;- Management of all security testing, including external, internal and wireless network penetration testing and vulnerability scanning, including tracking and reporting of remediation activities to senior management;- Execution of logical and physical security assessments of Bodycote facilities to evaluate their current security posture and to recommend appropriate remediation activities;- Management of the user training platform and development of all information security awareness training content.

Nov 2016 - Aug 2020

Head Of Security

Stockport, Manchester, Gb

APS Group Secure Solutions (APS GSS) provides card personalisation (payment, loyalty and membership), transactional print, mailing, document scanning, data capture and archiving services from a high secure certified facility based in Chester. APS GSS is a MasterCard, Visa Europe and American Express approved card personalisation and PIN vendor and is a Tier1 PCI DSS certified Service Provider for its secure transactional print and inbound scanning and archive services.Key Responsibilities:- Responsible for the logical and physical security of the APS high secure facility encompassing card personalisation, PIN print, document scanning, transactional print and secure mailing operations;- Management of three separate teams and their respective service lines covering logical security, physical security (including outsourced guard monitoring service), and internal audit; - Management of external and internal audit frameworks, coordinating audit schedules and tracking and reporting of remediation activities;- Reporting of risk and control compliance through regular meetings with senior management and external stakeholders such as MBNA, Bank Of America and the Co-operative Bank;- Management of all certifications including PCI DSS, PCI Card Production, and ISO 27001:2013;- Management of the third-party assurance framework and reporting of third-party risk to senior management;- Management of all security testing and vulnerability scanning including tracking and reporting of remediation activities to senior management;- Supplier management for all security related solutions and services, from the creation of the initial RFP, through to supplier selection, engagement, and post implementation management of performance;- Development and maintenance of the information security management system (ISMS);- Management of the user training platform and development of all information security awareness training content.

Jun 2015 - Nov 2016

Security Director (Founder)

Altrincham, Cheshire, Gb

Secaud was founded in September 2010 as an IT auditing and consultancy company operating within the payment card industry. Secaud achieved Approved Supplier status in 2011 with Visa Europe to perform logical security audits throughout Europe and then in 2012 with Visa International to perform logical and physical security audits within their AP & CEMEA regions. Secaud was also approved as a PCI QSA Company to perform PCI DSS assessments within Europe and achieved certification to ISO27001:2013 and Cyber Essentials PLUS. As Principal Consultant I was responsible for conducting security assessments against the latest Payment Card Industry (PCI) security standards for Payment Vendors that are either seeking to or that currently undertake the following payment card related activities:• Card and ICC manufacturing (including ICC embedding and pre-personalisation)• Card personalisation (including ICC personalisation and Magnetic-stripe encoding)• Card storing, shipping, mailing & fulfilment • PIN generation, PIN printing & distribution (including PIN electronic distribution)• Mobile/Secure Element component manufacturing, embedding and distribution• VMPA OTA provisioning and personalisation• Secure Element OTA lifecycle management• OTA transaction services (issuer updates)• Visa mobile gateway• 3-D Secure payment authentication (Enrolment Server and ACS)• Cloud-based payments

Sep 2010 - Jun 2015

Senior Information Security Auditor

Manchester, Greater Manchester, Gb

NCC Group (as part of their Cyber Security audit function) is accredited by MasterCard, Visa, American Express and China Union Pay to perform assessments of Payment Vendors against PCI Card Production logical and physical security requirements for the following card production and related payment services: • Card Production• Over-The-Air (OTA) Personalisation• Cloud-Based Payment Platform Security• 3-D Secure • PIN Security • GSMA Security AccreditationAs a Senior Information Security Auditor I was responsible for performing logical and physical security assessments of Payment Vendors on behalf of MasterCard International and VISA Europe.Meridian Services International Limited was acquired by NCC Group in March 2010

Jul 2007 - Sep 2010

Information Security Auditor / Senior Information Security Auditor

Meridian Services International Limited (Acquired By Ncc Group)

Meridian Services International is an IT auditing and consultancy company that specialises in providing logical and physical security auditing and related advisory services to Payment Vendors globally that perform payment card manufacturing, Magnetic Stripe and EMV data preparation, card and ICC personalisation, PIN production and other payment related services of MasterCard and Visa branded payment cards on behalf of their card issuers.As a Senior Information Security Auditor I was responsible for performing logical and physical security assessments of Payment Vendors on behalf of MasterCard International and VISA Europe.

Jul 2007 - Oct 2009

Professional Services Engineer

Alpha Business Computers (Part Of The Ans Group)

Alpha is a leading independent data management, data storage, data backup and data recovery solutions provider with 28 years experience delivering turnkey solutions to government departments, universities and schools, hospitals, local authorities, charities and companies.Alpha Business Computers was acquired by the ANS Group in November 2010.

Feb 2006 - Jul 2007
3 education records

Matthew Lomas education

Certificate In Professional Studies, Business Administration And Management

The Manchester Metropolitan University

Msc, E-Commerce

Leeds Beckett University

Bsc, Business Information Systems

Leeds Beckett University
FAQ

Frequently asked questions about Matthew Lomas

Quick answers generated from the profile data available on this page.

What company does Matthew Lomas work for?

Matthew Lomas works for AstraZeneca.

What is Matthew Lomas's role at AstraZeneca?

Matthew Lomas is listed as Cyber Security Risk Director at AstraZeneca | MSc, CISSP, CISA, CCSK at AstraZeneca.

What is Matthew Lomas's email address?

AeroLeads has found 1 work email signal at @astrazeneca.com for Matthew Lomas at AstraZeneca.

What is Matthew Lomas's phone number?

AeroLeads has found 3 phone signal(s) with area code 162, 161 for Matthew Lomas at AstraZeneca.

Where is Matthew Lomas based?

Matthew Lomas is based in Macclesfield, England, United Kingdom while working with AstraZeneca.

What companies has Matthew Lomas worked for?

Matthew Lomas has worked for Astrazeneca, Bodycote Plc, Aps Group Secure Solutions, Secaud Limited, and Ncc Group.

How can I contact Matthew Lomas?

You can use AeroLeads to view verified contact signals for Matthew Lomas at AstraZeneca, including work email, phone, and LinkedIn data when available.

What schools did Matthew Lomas attend?

Matthew Lomas holds Certificate In Professional Studies, Business Administration And Management from The Manchester Metropolitan University.

What skills is Matthew Lomas known for?

Matthew Lomas is listed with skills including Information Security, Computer Security, Security, Cissp, Network Security, Information Security Management, It Audit, and Security Audits.

Find 750M verified contacts

Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.