Mike Byrne

Chief Financial Officer
Mike joined Bastion Security Group in September 2023. He brings over two decades of global finance experience.
Talk to an expert
Highlights

Career highlights

‍

Developed and delivered a model for a new centralised organisational structure, ultimately deploying selected Finance functions at Credit Suisse to low cost locations. Led ACC's Finance function including business planning and budgeting of the annual ~$6bn spend. As Global Lead, delivered a redesigned process and technology solution for Credit Suisse's derivatives business within Finance. Seconded as ACC enterprise lead for the proposed NZ Income Insurance Scheme partnering with IR, MBIE and Treasury. His most recent role was as Head of Finance & Planning at ACC in Wellington and prior to that much of his career was spent at Credit Suisse, where he led the as a Director in the CFO Division . His international tenure included roles in Dublin, London, Hong Kong, Tokyo, Singapore and India, giving him a global perspective on finance. As Chartered Accountant since 2003, Mike is passionate about the role of Finance as a strategic partner—working closely with the businesses to drive informed decision-making and enhance financial performance.

‍

Cyber security news

Latest advisories

Stay ahead of emerging threats with our expert blog posts, research, and industry updates.
Nokia WS-NOC and NSP Vulnerabilities
During a security engagement, Steve Nyan Lin discovered numerous vulnerabilities within WS-NOC and NSP which could lead to a low-privileged user accessing administrative functionalities, cross-site scripting and open redirection.
Access Token Exposure in URL Parameters in GridTime™ 3000 GNSS Time Server - (CVE-2026-12620)
During a security engagement, Leo Diamat discovered that the GridTime 3000 GNSS Time Server web application transmitted session access tokens via URL query string parameters on multiple endpoints.
Cross-Site Scripting (XSS) Vulnerability on Several Endpoints by Utilising Cross-Site Request Forgery (CSRF) in GridTime™ 3000 GNSS Time Server - (CVE-2026-12619)
During a security engagement, Leo Diamat discovered that multiple endpoints in the GridTime 3000 GNSS Time Server web application were vulnerable to reflected Cross-Site Scripting (XSS) via an unsanitised token parameter.
Discover our services

We have the tools to pinpoint risks

Whether it’s hidden vulnerabilities or patterns you might miss, we help you stay one step ahead and make confident, informed decisions. Understand how our services can help your business uncover critical risks

Talk to an expert
Employee Cyber Training & Awareness
Your people are your first line of defence. Our cyber training builds awareness and sharpens their instincts.
Advisory
When clarity is critical and stakes are high, our advisory services deliver strategic, executive-level security expertise that empowers decision-making.