Paul Norton

Paul Norton Email and Phone Number

Information Security and Technology Risk Lead @ KPMG UK
Haywards Heath, GB
Paul Norton's Location
Haywards Heath, England, United Kingdom, United Kingdom
Paul Norton's Contact Details

Paul Norton work email

Paul Norton personal email

n/a
About Paul Norton

I am a CISMP certified Information Risk Manager, experienced in applying ISO 27001 to identify and treat risk and provide information assurance for business-critical assets.My strengths include designing and implementing an ISO 27001 Information Security Management System (ISMS) to help operational and IT teams to identify and assess information security risks, with extensive experience of developing and embedding an Enterprise Risk Management Framework (ERMF) in international environments. I am also an Information Security Management Systems Lead Auditor (BS ISO/IEC 27001:2013), supporting and conducting ISO 27001 internal audits to improve the organisation’s understanding and management of its risks.I have a good knowledge of security standards and models (ISO 27001 & FAIR) to reduce risk and provide organisational assurance. I have held Information Risk Management and Enterprise Risk Management roles during my career. I have also held senior overseas Director level positions with the British Council, where I was responsible for ensuring compliance with corporate standards for financial control, information management, risk, security, health & safety, child protection and brand. Overseas assignments include Pakistan, Cameroon, Kazakhstan and Russia. My Expertise:◾ Information Risk Management◾ Information Security Controls◾ ISMS Lead Auditor◾ CISMP Certified◾ Stakeholder Management◾ Enterprise Risk Management Frameworks◾ Business Risk◾ Team Leadership◾ Change Programme Delivery◾ Security Risk Assessment◾ Implementing Security Standards◾ International Experience◾ Excellent Communications Skills◾ Resolving Technical Vulnerabilities

Paul Norton's Current Company Details
KPMG UK

Kpmg Uk

View
Information Security and Technology Risk Lead
Haywards Heath, GB
Website:
kpmg.com
Employees:
230525
Paul Norton Work Experience Details
  • Kpmg Uk
    Information Security And Technology Risk Lead
    Kpmg Uk
    Haywards Heath, Gb
  • Kpmg Uk
    Information Security & Technology Risk Lead
    Kpmg Uk Jan 2024 - Present
  • Kpmg Uk
    Information Security Risk Manager
    Kpmg Uk Jan 2023 - Dec 2023
    London, England, United Kingdom
  • British Council
    Information Risk Manager
    British Council Dec 2015 - Jan 2023
    London, United Kingdom
    The British Council is the UK’s international organisation for cultural and educational opportunities working in over 100 countries to encourage cultural, scientific, technological and educational co-operation.Responsible for planning, implementing and managing organisation-wide systems for information risk management as part of Information Security Governance & Risk Management (IGRM) team. In the role, I consult and engage with stakeholders to ensure systems are compliant with the organisation’s policies and standards, and that risks are being managed within risk appetite. I encourage a business-wide understanding of information risk management accountabilities and responsibilities, as well as providing leadership and guidance to help colleagues understand the nature of information risk, how vulnerabilities can translate into risks to business, and steps required to mitigate them. I am also responsible for analysing assurance and audit reports and other information risk indicators, collating outputs into dashboards and executive summaries to support senior management decision making.Key Achievements:◾ Reviewed existing information risk management practices by auditing current risk reporting and through workshops with the IGRM leadership team◾ Led an assessment of the FAIR (Factor Analysis of Information Risk) methodology for risk assessment and worked with RiskLens (software provider) to support this, involving first-line teams◾ Implemented the first phase of a new risk management strategy to deliver more consistent risk reporting, clearer accountability and improved information risk maturity across the organisation, based on ISO 27001◾ Developed an ISO 27001 Information Security Management System for the organisation◾ Introduced the use of ISO 27001 to inform risk assessments and treatments
  • British Council
    Enterprise Risk Advisor
    British Council Jul 2012 - Dec 2015
    London
    Appointed Enterprise Risk Advisor to improve the organisation’s risk maturity, managing communications regarding risk systems and processes and liaising with overseas offices to improve the organisation’s understanding and articulation of its enterprise risks. Supported the Senior Leadership Team in understanding and presenting their Principle Risks and provided analysis of risk reporting for the Risk Committee.Key Achievements:◾ Successfully led an initiative to improve management engagement in corporate risk management and production of more relevant and reliable reporting◾ Introduced a new thematic approach to risk reporting to support a more meaningful risk narrative for senior managers and the Risk Committee◾ Renegotiated contract with supplier of the risk information system, resulting in a major upgrade to the software and an overall cost saving
  • British Council
    Country Director (Global Network)
    British Council Jul 2007 - Jul 2012
    Cameroon
    Promoted from Deputy Director to Director in 2007, based in Yaoundé, Cameroon. I was responsible for leading all aspects of the British Council’s operations in-country including ownership of strategies, business plans and budgets. Accountable for risk management, performance targets and developing strategic partnerships, as well as managing relationships with stakeholders with an interest in the British Council’s in-country operations. I developed new delivery models to increase the effectiveness of the British Council and ensured compliance with corporate standards for financial control, information management, risk, security, health and safety, child protection and brand. Between February and July 2021, I was based in Karachi, Pakistan, as a consultant, working on a number of security-related risks.Key Achievements:◾ In Karachi, I led analyses of procurement practices, the UK visa support process, and aspects of physical security, and presented recommendations to the country leadership team for designing risk treatments. ◾ In Yaoundé, I was responsible for restructuring and repositioning the Cameroon office to address a significant financial and reputational risk to Sub Saharan Africa operations and to the region's Exams business. I successfully repositioned the operation away from costly donor funding to become a sustainable Exams business with a cultural relations wrap-around involving web presence and local partnerships.
  • Various Companies
    Earlier Career
    Various Companies Jul 1987 - Jul 2007
    ◾ 06/2005 to 07/2007: British Council, Almaty, Kazakhstan: Deputy Director ◾ 02/2001 to 06/2005: British Council, Moscow, Russia: Assistant Director◾ 11/1998 to 01/2001: British Council, Manchester: Senior Marketing Specialist◾ 04/1995 to 07/1998: British Council, Sogang University Seoul: English Teacher◾ 07/1987 to 11/1994: BT, London: Marketing Specialist & Public Relations Officer

Paul Norton Skills

Resources Management Business Development Risk Management Financial Management Communicating And Influencing People Management Strategic Planning

Paul Norton Education Details

Frequently Asked Questions about Paul Norton

What company does Paul Norton work for?

Paul Norton works for Kpmg Uk

What is Paul Norton's role at the current company?

Paul Norton's current role is Information Security and Technology Risk Lead.

What is Paul Norton's email address?

Paul Norton's email address is pa****@****cil.org

What schools did Paul Norton attend?

Paul Norton attended The University Of Edinburgh, University Of East Anglia.

What skills is Paul Norton known for?

Paul Norton has skills like Resources Management, Business Development, Risk Management, Financial Management, Communicating And Influencing, People Management, Strategic Planning.

Who are Paul Norton's colleagues?

Paul Norton's colleagues are Liat Cohen, Paritosh Joshi, Kriti Arora, 郭嘉诚, Shiney Gnanakkan, Adam Wiśniewski, Bhavyam Mehta.

Not the Paul Norton you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.