Skip to content

About

A consultancy that still writes the code

FeatherON works across three practices most firms keep apart: information security, agentic AI and software development. The security comes from 15 years leading it across fintech unicorns, £3bn+ NYSE and LSE-listed enterprises and high-growth startups - platforms serving 15M+ customers between them. The engineering comes from building the systems ourselves - a fleet of named autonomous agents running live across security operations, vulnerability management, threat modelling, procurement, sales and the executive office, integrated with 40+ business and IT systems.

25+ global accreditations delivered hands-on from zero to fully operational - ISO 27001 through FedRAMP High, DoD IL4, CMMC and the EU AI Act - each with zero friction to the business. Forward-deployed by default: we embed inside engineering teams and build the automation and the agents rather than only specifying them. Our focus for 2026-27 is proving that security and GRC can run themselves, and building the people and the agents that make that real.

“Agents investigate, reason and draft. Humans commit, approve and release.”
Years in information security
15
Customers on platforms secured
15M+
Accreditations delivered hands-on
25+
Annual savings delivered
£2M+

Track record

The work that mattered

Fifteen years across nine sectors - measured by outcomes, not logos.

01 / 12

Delivered hands-on

25+ accreditations, zero to operational

Each one delivered hands-on - not audited, not overseen: architected, implemented and evidenced. Each with zero friction to the business.

Global & Cross-Sector

ISO/IEC 27001
ISO 27017
ISO 27018
ISO 42001 (AI)
SOC 2
NIST CSF
NIST 800-53 Rev 5
NIST 800-171 Rev 3
Cyber Essentials Plus
CIS Controls
CCSK
FIPS 140-3
WCAG 2.2

Government & Defence

FedRAMP High
TX-RAMP
CMMC
DoD IL2
DoD IL4
IRAP
NCSC CAF

Financial & Payments

DORA
NIS2
PCI DSS
SWIFT
PSD2
MaRisk
SOX ITGC

Privacy & AI

GDPR
CCPA
EU-US DPF
EU AI Act
HIPAA

Recognition

Awards, boards & the stage

Awards & Fellowships

CSO30 Award (CSO UK), 2021
Fellow, British Computer Society (FBCS)
Fellow & Chartered, Chartered Institute of Information Security (FCIIS)

Board & Advisory

Approved Assessor, UK Cyber Security Council
Board Member, Cloud Security Alliance UK Chapter
Board Member, My Family Recovery Plan (MyFRP)
Mentor and contributing writer for information security publications

Speaking

CyberEdBoard Talks
CISO UK
Fortress Manchester
SANS
(ISC)²
ISACA
Teiss
Cloud Security Alliance
Infosecurity Europe
UK Cyber Week
DTX
The Future of Cybersecurity

Credentials

Certified where it matters

Certifications earned to be used, not framed - CISSP-ISSAP, CISM, CRISC, CREST, cloud architecture and AI security & governance among them.

Certifications

CISSP-ISSAP
CISSP
CISM
CRISC
CCSK
CREST CRT/CPSA
CEH
eJPT
CPT
CDFE
AWS Certified Solutions Architect
SC-100
SC-200
AZ-300
AZ-301
NCSC CCP
AI Security & Governance
TOGAF 9
COBIT 5
PRINCE2
ITIL

Education

  • MSc Cybersecurity, University of Central Lancashire

Work with FeatherON

Bring in a team that ships

Book a focused hour on the problem you are actually facing - agentic AI risk, a compliance wall, a build that has stalled, or a board that needs answers. You will leave with a plan, not a pitch.