Executive summary
Ashley is a Director in BDO’s Consulting team in Melbourne. He brings over 20 years of experience across cyber security, technology risk, privacy, and information management. Ashley has worked extensively across government, the private sector, and academia, and is passionate about strengthening Australia’s national cyber resilience and helping organisations deliver their strategic objectives securely.
Ashley is a recognised leader in cyber security and risk management, having previously held senior roles including Chief Information Security Officer (CISO), Head of Security, and Senior Manager at major law enforcement agencies, state government departments, and leading financial institutions.
He specialises in partnering with clients to design and implement tailored security solutions that protect critical systems and data, build resilience, and meet compliance outcomes. Ashley also provides strategic advice to executives and decision-makers, enabling them to make informed decisions on complex technology and risk issues quickly and with confidence.
Ashley’s breadth of experience, combined with a pragmatic approach, ensures organisations can confidently navigate cyber threats while achieving their broader business goals. He is highly skilled in establishing and managing programs that mature or transform operational outcomes across Australia and the Asia-Pacific region.
Expertise
- Cyber strategy
- Digital and information management strategy
- CISO as a service
- Controls review and enablement
- Governance, risk and compliance
- Resilience, incident management and disaster Recovery
- Risk management
- Information and records management
Experience
- Strategic design and implementation of:
- Cyber security frameworks and technology risk programs
- Governance, risk, and compliance structures
- Privacy and information management initiatives
- Resilience and incident response strategies.
- Development and delivery of tailored security solutions to protect critical systems, data, and people
- Uplift of security controls and investment to strengthen organisational resilience against cyber threats
- Design and execution of business continuity, disaster recovery, and offensive cyber consulting services
- Establishment and management of programs to mature or transform operational outcomes across Australia and the Asia-Pacific region
Qualifications and affiliations
- Master of Security, Strategy and Diplomacy (ADFA)
- Master of Information Technology
- Stanford Advanced Cyber Security Certificate
- Graduate Diploma of Information Technology
- Bachelor of Economics (Finance)
- Diploma of Project Management
- GSLC - Global Security Leadership Certification (SANS)
- CISSP - Certified Information Systems Security Professional (ISC2)
- CISM - Certified Information Systems Manager (ISACA)
- CISA - Certified Information Systems Auditor (ISACA)
- CDPSE - Certified Data Privacy Solutions Engineer (ISACA)
Professional engagements and activities
- Cyber Security Industry Adviser - RMIT University
- Industry Cyber Security Adviser supporting the following programs:
- Cyber master’s Program (Industry-Based Learning) - mentor postgraduate students through real-world cyber security challenges and research, enabling practical, hands-on industry-based learning
- Indonesian Government - Building a Cyber Resilience Program - advising on the development of a cyber strategy for a State Agency with international best practices.