Lewis Hayes
Vciso @Ekco
Signup · Get unlimited contacts
WORK HISTORY
Vciso @Ekco
GB
As vCISO at Ekco, I act as a trusted advisor to organisations navigating the complex intersection of security, compliance, and business growth. Leveraging my background as a CISO/CSO, I provide the strategic leadership and operational oversight required to protect critical assets in increasingly challenging environments.My focus is on translating security threats into clear business risks, ensuring that security posture is not just a defensive measure, but a foundation for resilience. I aim to move security beyond a \"checkbox\" exercise, instead creating operational and strategic frameworks that provide real-world protection against an evolving threat landscape.Key areas of focus include:Cyber Governance & Strategy: Developing tailored roadmaps and ISMS frameworks aligned with ISO 27001, NIST CSF, CAF, and NIS2.Executive Advisory: Delivering board-level reporting, strategic guidance, risk assessments, and KPI-driven security oversight.Incident Preparedness: BCP/DR strategy and tabletop exercise facilitation to ensure organisational readiness.Security Architecture & Asset Protection: Providing expert guidance to facilitate architectural solutions for complex security challenges, safeguarding critical assets and addressing high-impact business use cases.Microsoft Cloud Security: Maximising the value of M365 security controls and architecture to drive tangible security improvements.Internal Maturity: Evolving Ekco’s vCISOaaS methodology to ensure repeatable, high-standard delivery for our global client base.
EDUCATION
Heythrop College, U. of London
Bachelor of Arts (BA), Philosophy and Theology
SKILLS
ABOUT LEWIS HAYES
As a senior security leader, my philosophy is simple: security must be a business enabler, not a barrier. For years, I have operated at the intersection of security, technology, and business strategy, translating complex threats into actionable, board-level decisions.Currently, as the CISO for a critical national emergency service, I am accountable for protecting the assets and operations that keep our coasts safe. I lead from the front, whether I\'m commanding the response to an incident, briefing on emerging geopolitical risks, or building a new security capability from the ground up.I have a proven track record of transforming security functions. I thrive on building capabilities, not just maintaining them. I’ve overhauled enterprise risk frameworks, delivered wide portfolios of security and IT projects, and modernised everything from supplier risk to an entire enterprise IT system. My leadership is defined by a holistic approach, integrating cyber, physical, and personnel security into a single, coherent strategy that actively supports organisational resilience and removes weak links.Core Competencies: Security Strategy & C-Suite Advisory Governance, Risk & Compliance (GRC): ISO 27001, NIST, GovAssure, NIS Regulations, GDPR Critical National Infrastructure (CNI) Protection Enterprise Risk Management & Transformation Incident Command & Crisis Management SOC Development & Security Operations Protective Security (Physical, Personnel, Insider Risk)
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.