Home About Experience Insights Contact
Cybersecurity Executive  ·  CISO  ·  Security Strategy & Governance
Mark Watts, BSc CISSP CISM

Cybersecurity leadership built on trust, not authority

I'm a cybersecurity executive with 25 years' experience across defence, technology and higher education, with a track record of building security functions from the ground up and enabling organisational growth through risk-informed leadership.

Scroll
Career University of Southampton Earlier QinetiQ & DERA Certified CISSP · CISM Education BSc Computer Science, Cardiff University

Security functions succeed when they earn trust rather than demand it

Teams that operate as gatekeepers eventually get circumvented, while those that help the business move faster and more confidently become indispensable. I focus on early engagement with project teams rather than late-stage compliance reviews, and measure a function's value through business outcomes rather than activity metrics alone.

I'm equally committed to developing the next generation of security leaders through inclusive hiring and deliberate team development.

25+
Years in Cybersecurity & IT Leadership
£600m+
Organisation Scale as CISO
2→9
Security Team Built from the Ground Up
ISO 27001
Certification Programme Delivered

Where I add the most value

A blend of governance, technical depth and people leadership, shaped by roles spanning defence, critical research infrastructure and higher education.

01

Governance & Leadership

Board and executive reporting, cyber security strategy, enterprise risk management, budget ownership, regulator engagement and crisis response planning.

02

Frameworks & Standards

ISO 27001, NIST CSF 2.0, Cyber Essentials Plus, NHS DSPT, DEF STAN 05-138, and GDPR / DPIA practice across regulated and research environments.

03

Technical & Operational

Identity and access management, MFA, SOC and managed detection & response, EDR/XDR, SIEM, vulnerability management and incident response.

04

People & Culture

Team building and leadership development, security awareness and culture change, and inclusive hiring within technical teams.

Roles that have shaped my practice

A career built primarily at the University of Southampton, following an earlier decade in infrastructure and managed security services at QinetiQ.

Full Career History →

Recent speaking engagements

Dec 2025

Gartner C-Level Communities, UK & Ireland CISO Inner Circle

Table discussion leader: "Resilient Leadership: Optimising Cybersecurity in a Dynamic World"

Jul 2025

Gartner C-Level Communities, UK & Ireland CISO Community Town Hall

Panel member: "Fostering a Digital Native Mindset to Cybersecurity"

Nov 2024

Jisc Security Conference

Keynote panel: "AI in Cyber Security: The Benefits, Pitfalls, and Implications for the Future"

More Insights & Speaking →
Get In Touch

Open to conversations on cyber security leadership, governance and strategy