Colin Rogers
Principal Cyber Security Consultant at nimbus- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
Topline Score
Bio
Ladel Olasegha
Colin is a highly professional individual. He combines a good depth of knowledge and experience with a wide portfolio of useful skills and insight. He is an extremely focused, very capable and well-presented professional.
Naveed Saeed
I have worked with Colin on a number of occasions over the last 2-3 years and have found him to be extremely diligent and knowledgeable within the enterprise/security architecture space. Colin has also been an invaluable ally to me in ensuring that information security was built into and reflected within complex delivery programmes. I would have no hesitation in recommending Colin for enterprise architecture or information security/assurance roles in future.
Ladel Olasegha
Colin is a highly professional individual. He combines a good depth of knowledge and experience with a wide portfolio of useful skills and insight. He is an extremely focused, very capable and well-presented professional.
Naveed Saeed
I have worked with Colin on a number of occasions over the last 2-3 years and have found him to be extremely diligent and knowledgeable within the enterprise/security architecture space. Colin has also been an invaluable ally to me in ensuring that information security was built into and reflected within complex delivery programmes. I would have no hesitation in recommending Colin for enterprise architecture or information security/assurance roles in future.
Ladel Olasegha
Colin is a highly professional individual. He combines a good depth of knowledge and experience with a wide portfolio of useful skills and insight. He is an extremely focused, very capable and well-presented professional.
Naveed Saeed
I have worked with Colin on a number of occasions over the last 2-3 years and have found him to be extremely diligent and knowledgeable within the enterprise/security architecture space. Colin has also been an invaluable ally to me in ensuring that information security was built into and reflected within complex delivery programmes. I would have no hesitation in recommending Colin for enterprise architecture or information security/assurance roles in future.
Ladel Olasegha
Colin is a highly professional individual. He combines a good depth of knowledge and experience with a wide portfolio of useful skills and insight. He is an extremely focused, very capable and well-presented professional.
Naveed Saeed
I have worked with Colin on a number of occasions over the last 2-3 years and have found him to be extremely diligent and knowledgeable within the enterprise/security architecture space. Colin has also been an invaluable ally to me in ensuring that information security was built into and reflected within complex delivery programmes. I would have no hesitation in recommending Colin for enterprise architecture or information security/assurance roles in future.
Credentials
-
Azure Data Fundamentals
MicrosoftNov, 2021- Nov, 2024 -
CESG Certified Professional (CCP) Information Assurance Architect Practitioner
BCS, The Chartered Institute for ITJun, 2015- Nov, 2024 -
CESG Certified Professional (CCP) Security & Information Risk Adviser - Practitioner
BCS, The Chartered Institute for ITJun, 2015- Nov, 2024 -
TOGAF 9 Certified Practitioner
The Open GroupMay, 2013- Nov, 2024 -
Microsoft 365 Certified: Security Administrator Associate
MicrosoftNov, 2021- Nov, 2024 -
Microsoft Certified: Cybersecurity Architect Expert
MicrosoftOct, 2022- Nov, 2024 -
Azure Security Engineer
MicrosoftDec, 2019- Nov, 2024 -
Microsoft Azure Fundamentals
Microsoft
Experience
-
nimbus
-
United Kingdom
-
IT Services and IT Consulting
-
1 - 100 Employee
-
Principal Cyber Security Consultant
-
Jan 2019 - Present
• Design of Cyber Security Target Operating Model (TOM) for client to include definition of people, process and technology and organisational capabilities for Cyber and GDPR functions. • Ensured secure design, implementation and operation of Azure cloud platform for end client. • Programme Security Architecture design including network, identity and access management, security tooling, Privacy and GDPR. • Operational security design and service transition into end client business as usual activities. • Delivery management of SecOps tool based on Azure benchmark standards. Documented SecOps delivery roadmap to define future SecOps activities. • Preparation of client’s assurance documentation including GDPR to describe Platform residual risk leading to successful sign-off and authority to operate to enable customers to start using the platform to deliver business services.
-
-
-
NFU Mutual
-
United Kingdom
-
Insurance
-
700 & Above Employee
-
Senior Security Architect
-
Feb 2017 - Dec 2018
• Design and implementation of Security Architecture Framework to implement Cyber security controls, ensuring alignment to the ISO27001/2/27017 control framework. Framework included Target Operating Model (TOM), process model, risk assessment tools, security architecture standards, organisation capability assessment, capability to controls mapping and implementation assessment. • Security architecture framework assessment against the enterprise security architecture and internal projects including Azure cloud platform, HR transformation and Dynamics 365 CRM implementation. Activities included: security architecture design, identity and access management and Cyber security/GDPR & Privacy control and risk assessments. • Security architecture support for the integration of Managed Service Security Providers (MSSP) tools into the on-premise and Azure cloud environment. Tools include advanced endpoint threat detection, security monitoring and logging, vulnerability management and database threat assessment. • Design and implementation of Secure Software Development Lifecycle (SSDLC) toolkit including process model, tooling, standards and third-party code testing services.
-
-
-
Education and Skills Funding Agency
-
United Kingdom
-
Government Administration
-
500 - 600 Employee
-
Digital & Technology Solution and Security Design Manager
-
Apr 2013 - Feb 2017
• Solution and Security Design Manager for the Digital & Technology directorate with accountability for the successful delivery of operational security and secure by design activities across the business function.• Main purpose of role was to ensure solutions, service and change is delivered to meet the organisations Information Security policies, controls and standards to ensure the confidentiality, integrity and availability requirements of ESFA are maintained and that all risks are both understood and managed by the business with controls applied where relevant.• Led Team of 10 including security, technical and solution architects, operational security manager and vulnerability/risk analysts.• Successful delivery management of organisation connectivity to the Public Services Network (PSN) via 4 workstreams.
-
-
Enterprise Architecture Assurance Manager/Security Architect
-
Apr 2012 - Apr 2013
• Responsible for the operation and evolution of the organisational Enterprise Architecture (EA) Governance process.• Chair of EA Design Authority, ensuring the delivery of Information Systems is aligned with the organisations goals, objectives, strategies and policies. • Provision of subject matter expertise to Projects and Programmes in matters relating to Enterprise Architecture, specifically Business, Data, Application and Security Architecture.• Architecture support (Business, Security and Data Architecture) to Citizen Identity Assurance Project and National Careers Service Transformation Programmes. Privacy, Legal and Data Sharing.
-
-
Citizen Identity Assurance Programme Data and Security Architect
-
Feb 2010 - Apr 2012
• Programme Workstream lead responsible for data and security deliverables to ensure the solution/service meets the agencies information security requirements. • Security and Data Architecture input into the Requirements, Target Operating Model, Procurement, solution and service design. Objective met to ensure the service is delivered in accordance with HMG and Agency Security Policies, Cabinet Office IDA Good Practice Guides and that all handling of Personal data is in accordance with ICO Privacy regulations and Data Protection Law.
-
-
-
LSC
-
Education Management
-
400 - 500 Employee
-
Programme Data & Security Workstream Lead/Architect
-
Sep 2008 - Feb 2010
• Programme Workstream Lead responsible for the delivery of the data and security deliverables to support major transformation Programme which involved data sharing across multiple partner organsiations. • Developed Framework Code of Practice of the Sharing of Personal Information across multiple domains. Framework Code of Practice successfully endorsed by Information Commissioners Office demonstrating consideration of Privacy and handling of Personal Information. • Delivery of baseline and target data architecture with gap analysis undertaken to impact assess compliance with the Education sector data architecture strategy. Products include data models, discussion papers and conceptual/logical architectures. Success included the Information Standards Board (ISB) inheriting the Service data standards. • Solution design assurance of the architecture and service design to ensure the resulting data usage was aligned to the relevant data strategies and objectives and to ensure organisational data quality and inter-operability goals were met.
-
-
-
QCDA - Qualifications & Curriculum Development Agency
-
Education Administration Programs
-
1 - 100 Employee
-
Business Architect/Data Architect
-
Jan 2008 - Sep 2008
• Developed target Business Architecture (TOM and Process Framework) to describe how the organisation would meet its policy objectives relating to the Qualifications and Credit Framework. • Developed conceptual data model and data dictionary (Erwin data modelling tool) to inform end state system data requirements. • Developed target Business Architecture (TOM and Process Framework) to describe how the organisation would meet its policy objectives relating to the Qualifications and Credit Framework. • Developed conceptual data model and data dictionary (Erwin data modelling tool) to inform end state system data requirements.
-
-
-
LSC
-
Education Management
-
400 - 500 Employee
-
Programme Data Manager/Architect
-
Aug 2006 - Jan 2008
• Programme Data Manager/Data Architect within the Design Build and Implementation team for the £42m Managing Information Across Partners (MIAP) Programme. • Design and implementation of Data Management Function to support the delivery of the MIAP Service. Development of Data Management Strategies and Policies including Data Protection, Operational Data Quality Services, System Development Support and Data Management Tools. • Project Managed the implementation of the Common Data Definitions to ensure a robust set of data standards to underpin the new service and enable information sharing across the sector.
-
-
-
NFU Mutual
-
United Kingdom
-
Insurance
-
700 & Above Employee
-
Lead Business Analyst
-
Jan 2006 - Sep 2006
• Developed Target Business Architecture for a Strategic Centralised Procurement Function. Assessed existing Capabilities against Target Architecture providing Gap Analysis and transformation requirements. • Facilitated workshops and joint requirements planning sessions to develop and agree a single generic purchasing process and associated Functional Model. • Developed Target Business Architecture for a Strategic Centralised Procurement Function. Assessed existing Capabilities against Target Architecture providing Gap Analysis and transformation requirements. • Facilitated workshops and joint requirements planning sessions to develop and agree a single generic purchasing process and associated Functional Model.
-
-
-
Warwickshire County Council
-
United Kingdom
-
Government Administration
-
700 & Above Employee
-
Technical Project Manager/Data Architect
-
Apr 2005 - Feb 2006
• Project Delivery (200k) to convert existing departmental ASP web based applications to Java technologies. • Produced logical data model with data definitions for the Council`s existing disparate Education datasets. • Solution architect for the implementation of integrated database system with web front end delivering a system to support the Government Initiative for `Extended Schools`. • Project Delivery (200k) to convert existing departmental ASP web based applications to Java technologies. • Produced logical data model with data definitions for the Council`s existing disparate Education datasets. • Solution architect for the implementation of integrated database system with web front end delivering a system to support the Government Initiative for `Extended Schools`.
-
-
-
Birmingham Royal Ballet
-
United Kingdom
-
Entertainment Providers
-
1 - 100 Employee
-
IT Project/IT Service Manager
-
Feb 2002 - May 2005
• IT service management to ensure service levels are met. • Day to day management of all organisation IT Operations. Projects delivered (Prince 2) • Delivery of web hosted CRM system to manage customers. (Statement of requirements, data analysis, migration, de-duplication, User Acceptance testing). • Delivery of COTS Application to track and monitor ballet staff injuries/rehabilitation. Requirements analysis involved liaison with medical experts and relevant software developers. Software developed, tested and released providing critical business knowledge support to the Organisations goals and objectives.
-
-
-
-
IT Project Manager
-
Sep 1999 - Apr 2002
• Member of Team to develop new IT Service Management Company to serve Arts venues in the Birmingham area. • Project Managed (Prince 2) migration of 4 Customer IT Estates into the newly established Birmingham Arts IT domain. Activities involved system architecture definition, , hardware/software replacement/upgrade and desktop configuration. Managed major risks around loss of critical system availability and disaster recovery. • 3rd Line Support for all major system problems with subject matter expertise in windows 2000 networks, finance systems and networking.
-
-
Education
-
University of Reading
BA (Hons), Psychology -
School
A Level, Psychology A; Economics A, English Literature\Language C -
University of Staffordshire
Post Graduate Certificate, Applied Ecology