Stephen Penman

Director (Governance, Risk & Compliance)
Stephen has a wide range of experience working with both government and commercial clients to ensure that they meet their security and compliance requirements.
Talk to an expert
Highlights

Career highlights

Stephen’s key skills span across security consulting, IT risk management and assessments, network and system audits, security design and architecture reviews, security risk and control mapping, as well as providing guidance on Payment Card Industry (PCI) assessments and compliance.

Cyber security news

Latest advisories

Stay ahead of emerging threats with our expert blog posts, research, and industry updates.
WatchGuard Access Points — Multiple issues
Stephen Shkardoon recently found multiple issues in WatchGuard Access Points which result in remote code execution.
Teracue ENC-400 — Multiple issues
Stephen Shkardoon found multiple issues in the Teracue ENC-400 hardware, including a pre-authentication remote code execution vulnerability.
ASP.NET Boilerplate — Input Validation vulnerability
Claudio Contin found an input validation issue with ABP 4.2.
Discover our services

We have the tools to pinpoint risks

Whether it’s hidden vulnerabilities or patterns you might miss, we help you stay one step ahead and make confident, informed decisions. Understand how our services can help your business uncover critical risks

Talk to an expert
Employee Cyber Training & Awareness
Your people are your first line of defence. Our cyber training builds awareness, sharpens instincts and turns everyday staff into assets.
Advisory
When clarity is critical and stakes are high, our advisory services deliver strategic, executive-level security expertise that empowers decision-making