Theo Nassiokas

Theo Nassiokas Email and Phone Number

Founder and Principal Consultant @ Let's Go Cyber
Melbourne, VIC, AU
Theo Nassiokas's Location
Melbourne, Victoria, Australia, Australia
Theo Nassiokas's Contact Details

Theo Nassiokas personal email

n/a

Theo Nassiokas phone numbers

About Theo Nassiokas

Brief BioA seasoned professional with a 30+ year career spanning law enforcement & criminal intelligence, protective security, and cyber & information security strategy, policy, governance risk & compliance in global financial services, consulting to Victorian Government and energy sectors, and the Australian Government, educating and advising risk committees, senior executives and boards across industry and government on security and intelligence matters.Management ConsultingTheo Nassiokas is the Founder and Principal Consultant of Let’s Go Cyber, and Co-Founder and President of Cyber8Lab. He has advised executives, committees and boards in industry and government on security and intelligence matters globally, including Australia, Singapore, India, Malaysia, Hong Kong, Vietnam, Thailand, Cambodia, Philippines, Japan, UAE and UK. Theo’s passion is explaining complex technical concepts by using plain, layperson’s English to contextualise explanations to client businesses.Australian GovernmentA member of the Australian Government's Senior Executive Service (SES) at the Australian Taxation Office (ATO) as Assistant Commissioner, Cyber Governance, Theo led a branch of 120, delivering cyber security GRC (governance, risk & compliance), including vendor assurance, PSPF (Protective Security Policy Framework) assessments, risk assessments, IRAP (Information Security Registered Assessors Program) certifications, scams monitoring & intelligence, security architecture, strategic sourcing, policy & advice, and program governance.Financial ServicesA cyber & information security and technology risk leader with 23-year pedigree in Australian and global financial services organisations, based in Australia and abroad, building multijurisdictional and multicultural teams, with a passion for explaining the business impact of cyber and technology risk by contextualising it to business objectives, linking risks to deficient controls, aligning capability to regulatory obligations, and devising risk mitigation and resilience strategies.Education and CertificationsTheo holds an MBA (Tech Mgt) from La Trobe University awarded in 2006, and is one of 18 an inaugural Fellows of the Australian Information Security Association (FAISA), Australia's leading information security industry body, exemplifying leadership in cyber and information security. Prior certifications include Certified Protection Professional (CPP) from ASIS International, held from 2000 to 2021 (resigned) and Certified Information Security Manager (CISM) from ISACA, held from 2007 to 2020 (resigned).

Theo Nassiokas's Current Company Details
Let's Go Cyber

Let'S Go Cyber

View
Founder and Principal Consultant
Melbourne, VIC, AU
Website:
letsgocyber.com
Employees:
1
Theo Nassiokas Work Experience Details
  • Let'S Go Cyber
    Founder And Principal Consultant
    Let'S Go Cyber
    Melbourne, Vic, Au
  • Cyber8Lab
    Co-Founder And President
    Cyber8Lab Jul 2024 - Present
    Joondalup, Western Australia, Au
    Theo Nassiokas is the Co-Founder and President of Cyber8Lab Pty Ltd (Australia) and Cyber8Lab (Malaysia) Sdn Bhd. Theo joins Cyber8Lab to drive the business strategy in Asia Pacific by adding cyber GRC (governance, risk and compliance) services, including management consulting and services, education and awareness, risk assessments, executive briefings, and thought leadership. Services include, protective security reviews, cyber incident response plans and exercises, assessments against Cybersecurity Capability Maturity Model (C2M2), Centre for Internet Security (CIS), ISO 27001, NIST CSF, and the Australian Government’s, Essential EightTheo brings to Cyber8Lab a seasoned specialist team, with individual experience of 20+ years capable of providing cybersecurity services, including• Cyber and Forensic Investigations• Risk Assessment and Recommendations • Privacy, including Breach Management• Security Incident Management• Insider Threat and Threat Hunting• Crisis and Emergency Management• Interpreting requirements of cyber security laws and regulations• Assessment against and implementation of best practice standards issued by: o Regulators, e.g. APRA, ASIC, RBA, ATO, MAS, NFA; and o Payment schemes, e.g. SWIFT, NPP, PCI DSS, and AusPayNetTheo is a seasoned security professional with a 30+ year career in law enforcement & criminal intelligence, protective security, financial services, government, and consulting. Theo has educated and advised committees, executives and boards in industry and government on security and intelligence matters globally, including Australia, Singapore, India, Malaysia, Hong Kong, Vietnam, Thailand, Cambodia, Philippines, Japan, Middle East and UK. Theo is bringing his extensive global leadership to Cyber8Lab to create full-spectrum cyber security services for clients, by applying extensive leadership running multi-cultural, multi-jurisdictional teams across the Asia-Pacific region, and globally to deliver strategic outcomes.
  • Let'S Go Cyber
    Founder And Principal Consultant
    Let'S Go Cyber Jul 2022 - Present
    Surry Hills, New South Wales, Au
    Theo Nassiokas is the Founder and Principal Consultant of Let’s Go Cyber, and a seasoned security professional with a 30+ year career in law enforcement & criminal intelligence, protective security, financial services, government, and consulting. Theo has educated and advised committees, executives and boards in industry and government on security and intelligence matters globally, including Australia, Singapore, India, Malaysia, Hong Kong, Vietnam, Thailand, Cambodia, Philippines, Japan, Middle East and UK.Let’s Go Cyber was created with a vision to provide specialised protective, cyber and information security services through strategic partners, to industry and government. This model has proven to be remarkably successful with the delivery of management consulting services to financial services, government agencies, energy companies, and small to medium businesses, in Australia and regionally across South-East Asia, providing clients with assurance regarding their protective, cyber and information security risks and obligations.Let’s Go Cyber provides management consulting and services, education and awareness, risk assessments, executive briefings, and thought leadership through strategic partners. Services include, protective security reviews, cyber incident response plans and exercises, assessments against Cybersecurity Capability Maturity Model (C2M2), Centre for Internet Security (CIS) Controls, International Information Security Standard ISO 27001, NIST Cybersecurity Framework (CSF), and the Australian Government’s, Essential Eight.
  • Australian Taxation Office
    Assistant Commissioner, Cyber Governance
    Australian Taxation Office Apr 2023 - Jul 2024
    Canberra, Act, Au
    The cyber security capability at the Australian Taxation Office (ATO) is part of Enterprise Services & Technology (EST), and is made up of two branches being Cyber Governance, responsible for risk-based cyber security assessments & advisory, and Cyber Operations, responsible for threat-based cyber security monitoring & response, with both branches reporting to the Deputy Commissioner & CISO.The Cyber Governance (CGOV) Branch is focused on risk-based cyber security assessments & advisory, including cyber security vendor assurance & PSPF (Protective Security Policy Framework) assessments, IT security risk assessments, IT systems assessments & IRAP certifications, cyber security scams monitoring & intelligence, cyber security architecture, cyber secure strategic sourcing, and cyber policy & advice.Additionally, the Cyber Governance Branch is accountable for governance of the Cyber Security Program at the ATO, which is augmenting the cyber security capability in response to the ever increasing cyber threat landscape, to protect the ATO whose purpose is to contribute to the economic and social wellbeing of Australians by fostering willing participation in our tax and superannuation systems.
  • Career Break
    Career Transition
    Career Break May 2022 - Jun 2022
    Having successfully performed the Head of Business Controls & Monitoring, Group Technology role at Westpac for over 2-years, I decided to transition back to cyber and information security taking the time to plan and commence a consulting and services company.
  • Westpac Group
    Head Of Business Controls & Monitoring, Group Technology
    Westpac Group Feb 2020 - Apr 2022
    Sydney, New South Wales, Au
    Leading the line-1 tech risk capability initially for the Business and Specialist Businesses Divisions, and from April 2021 for Specialist Businesses Division (SBD), Group Business Units (GBU) and Group Operations.Reporting to CIO Risk Forums, CIO Monthly Operational Review (MOR) meetings, Superannuation, Funds, and Insurance Boards, and the Business and Specialist Businesses Divisions and Chief Operating Office (COO) - Business Controls & Monitoring (BCM) risk committees. Driving and reporting change initiatives to steering committees, the Technology Architecture Committee (TAC) and Chief Operations Officer Risk Committee (COO RiskCo).Business Division includes, Business Lending, Cash Management, Private Wealth and Customer Engagement. Specialist Businesses Division (SBD) includes Insurance, Platforms, Investments & Operations, Superannuation, and Auto Finance. Group Business Units (GBU) includes, Risk, Finance, Financial Crime Compliance & Conduct (FCCC), Human Resources, Corporate & Customer Relations (CCR) and Legal & Secretariat. Business and Specialist Businesses Divisions operate under the Westpac, St.George, Bank of Melbourne, BankSA, BT brands and Capital Finance.
  • Career Break
    Relocation
    Career Break Nov 2019 - Jan 2020
    Having successfully performed the Director, APAC Cyber & Information Security (CISO) role at Barclays for over 2-years and given the role was relocated from Singapore to Pune India, I took the opportunity to play golf and travel prior to repatriating back home to Australia.
  • Barclays
    Director, Apac Cyber & Information Security (Ciso)
    Barclays Jul 2017 - Oct 2019
    London, Gb
    Chief Information Security Officer (CISO) for the Asia Pacific (APAC) region at Barclays, supporting the International business and representing Barclays to all financial services regulators, other agencies and partners regarding cyber and information security matters.Influencing the global cyber security strategy to consider Asia Pacific (APAC) regulatory nuances and driving the rollout of the global cyber security strategy regionally taking into account local regulations, including sovereign data requirements.Portfolio:Build the cyber security capability across APAC by recruiting, guiding and leading a team in Singapore, Japan, India, Hong Kong and China. Design and implement Chief Information Security Office (CISO) governance covering all aspects of cyber and information security in APAC.Launch the APAC Security Forum to deliver security metrics, risk posture and global events to the APAC business.
  • Standard Chartered Bank
    Head, Tis, Techops/Cnc & Eus, Unit Operational Risk Management (Uorm)
    Standard Chartered Bank Feb 2017 - Jun 2017
    London, England, Gb
    Portfolio:Technology Information Security (TIS), Technology Operations and Collective Intelligence & Command Centre (TechOps/CnC), and End User Services (EUS).Embed the 1st line-of-defence ORM (Operational Risk Management) teams into their new structures to guide and support the audit and risk management capability within the TIS, TechOps/CnC and EUS domains globally.Build new capabilities, working closely with the IT & Operations (ITO) Risk & Control team, Group Information Security (GIS) and the broader Governance & Change organization, to deliver risk mitigation and alignment across ITO.
  • Standard Chartered Bank
    Head, Risk & Control, Tech Delivery And Technology Information Security (Tis)
    Standard Chartered Bank May 2016 - Jan 2017
    London, England, Gb
    Managing risk and compliance globally of Technology Delivery and Technology Information Security (TIS) at Standard Chartered Bank, responsible for:- Guiding strategic programs through a complex regulatory landscape- Managing internal, external and regulatory audit issues, actions and risks- Leading Controls Adequacy Reviews (CAR) across Tech Delivery and TIS- Building a new greenfield global capability with geographically dispersed teams across Asia
  • Anz
    Head Of Information Security & Technology Risk - International & Institutional Banking (Iib)
    Anz Oct 2010 - Apr 2016
    Melbourne, Victoria, Au
    Senior information security and technology risk assessments and advisory re:- Regulatory compliance and impact- Transformation, change & integration strategy- Merger & Acquisition activity- Geopolitical and country infrastructure risk- Disaster recovery and business continuityReporting information security and technology risks to the IIB Division Chief Risk Officer (CRO) and Risk Management Committee (RMC)Providing information security and technology risk acceptance, treatment and sign-off recommendations to major change programsRecommending strategic change re: the information security and technology risk management framework and operating model
  • Deutsche Bank
    Vp, Apac Regional Head - Risk, Audit & Regulatory, Global Technology - Capital Markets
    Deutsche Bank Apr 2009 - Oct 2010
    Frankfurt Am Main, Hessen, De
    - Risk & compliance reporting to senior committees- Risk advisory re: information systems, applications & processes- Primary Regulatory Contact for legal & compliance matters- Primary Audit Contact for internal, external & regulatory audits- Audit and audit issues reporting to senior management- Training and Awareness re: risk, audit and regulatory responsibilities- Delivering 'change the bank' (CTB) and 'run the bank' (RTB) initiatives
  • Deutsche Bank
    Vp, Senior Investigations Manager, Group Audit
    Deutsche Bank May 2008 - Apr 2009
    Frankfurt Am Main, Hessen, De
    - Lead Internal Investigations on behalf of Regional Management- Assist to establish a new APAC forensics capability- Grow and lead the investigations team in Singapore- Undertake and oversee APAC forensic investigations- Prepare reports and feedback to executive management
  • Westpac Banking Corporation
    Head Of Risk & Compliance, Information Security
    Westpac Banking Corporation Apr 2007 - May 2008
    Sydney, Nsw, Au
    Information Security: - Risk Strategy & Planning;- Policy Administration & Compliance Reporting;- Regulatory Advisory;- Government Liaison; and - Operational & Strategic Risk Management.
  • Westpac Banking Corporation
    Head Of Strategy & Governance, Information Security
    Westpac Banking Corporation Jul 2003 - Apr 2007
    Sydney, Nsw, Au
    Information Security:- Operations Strategy & Planning;- Government Security Liaison;- Policy & Compliance Reporting; - Communications & Awareness; and- Access Control Advisory & Reporting.
  • National Australia Bank (Nab)
    Team Leader - Security Compliance
    National Australia Bank (Nab) Jul 2002 - Jun 2003
    Melbourne, Victoria, Au
    Global DR Capability Board Reporting; andFinancial Services Australia Technology:- Regulatory Compliance Reporting;- SOE & Policy Compliance Reporting; and- Incident and Vulnerability Management.
  • Anz
    Information Risk Manager
    Anz May 2001 - Jul 2002
    Melbourne, Victoria, Au
    - Manage IS system and IT project security assessments- Deliver senior management information security risk briefings- Provide information security risk and policy development advice- Conduct internal and external third party security site assessments- Assess third party security policy and service level agreements- Research the latest security trends and technologies
  • Anz
    Business Security Analyst
    Anz May 2000 - May 2001
    Melbourne, Victoria, Au
    - Conduct security risk assessments of IT systems and projects- Identify information security risk- Recommend security risk counter-measures- Assess requests to deviate from information security policy
  • Synectic Synthesis Pty Ltd
    Managing Director
    Synectic Synthesis Pty Ltd Dec 1997 - May 2000
    - Conduct operational, procedural and legal research in the evolving fields of security and risk management- Manufacture and develop educational resources to meet competency based Australian Quality Training Framework (AQTF) and client requirements- Manage projects, including the provision of risk assessment & management, and skills analysis & audit projects, and provide advice regarding training incentives- Manage risk surrounding B2B and B2C eCommerce and other IT projects. Consult in the development of risk assessment methodologies and information security policy
  • Victoria Police Force
    Senior Constable (District Intelligence Officer)
    Victoria Police Force Sep 1996 - Mar 1997
    Melbourne, Victoria, Au
    - Intelligence gathering, analysis and reporting, using an inference based methodology. Analyse crime statistics & data to identify crime trends and produce activity reports
  • Victoria Police Force
    Detective/Constable
    Victoria Police Force Oct 1991 - Sep 1996
    Melbourne, Victoria, Au
    - Operational police general duties were undertaken at a number of police stations- Operational police investigative duties were undertaken on secondment to the Preston Criminal Investigation Branch, Bureau of Criminal Intelligence and the Drug Squad

Theo Nassiokas Skills

Risk Management It Audit Information Security Business Continuity Information Security Management Governance Management Strategy Business Process Improvement Information Technology Financial Risk Enterprise Risk Management Risk Assessment Project Management Banking Security Disaster Recovery

Theo Nassiokas Education Details

  • La Trobe University
    La Trobe University
    Technology Management
  • Australian Government - Attorney-General'S Department
    Australian Government - Attorney-General'S Department
    Physical And It Security Management
  • Kangan Institute
    Kangan Institute
    Security Management
  • University Of Melbourne
    University Of Melbourne
    Workplace Training & Assessment
  • Swinburne University Of Technology
    Swinburne University Of Technology
    Accounting

Frequently Asked Questions about Theo Nassiokas

What company does Theo Nassiokas work for?

Theo Nassiokas works for Let's Go Cyber

What is Theo Nassiokas's role at the current company?

Theo Nassiokas's current role is Founder and Principal Consultant.

What is Theo Nassiokas's email address?

Theo Nassiokas's email address is th****@****anz.com

What is Theo Nassiokas's direct phone number?

Theo Nassiokas's direct phone number is 011 61 3 9683*****

What schools did Theo Nassiokas attend?

Theo Nassiokas attended La Trobe University, Australian Government - Attorney-General's Department, Kangan Institute, University Of Melbourne, Swinburne University Of Technology.

What are some of Theo Nassiokas's interests?

Theo Nassiokas has interest in Animal Welfare, Children, Disaster And Humanitarian Relief, Science And Technology.

What skills is Theo Nassiokas known for?

Theo Nassiokas has skills like Risk Management, It Audit, Information Security, Business Continuity, Information Security Management, Governance, Management, Strategy, Business Process Improvement, Information Technology, Financial Risk, Enterprise Risk Management.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.