Cybersecurity leadership · Global perspective

David
Scowen.

Turning security strategy into measurable business outcomes.

I lead cybersecurity teams, strengthen global operations and help organisations navigate complex risk. My experience spans life sciences, financial services and defence across APAC, EMEA and the US.

Strategy & governanceSecurity operations & transformationGlobal teams & talent development

01 / Selected impact

Leadership, measured
in outcomes.

Security has to work for the business. My focus is on reducing exposure, building capable teams and delivering improvements that stand up to operational and commercial scrutiny.

90%+

Reduction in severe vulnerabilities

Reduced APAC critical and high-severity network issues from over 100,000 to fewer than 10,000.

$1.2m

Annual savings delivered

Through infrastructure selection and firewall consolidation as Director of Cybersecurity Operations.

40k+

Users within regional security scope

With a matrixed team of up to 30 across APAC, EMEA and the US in my current role.

Additional outcomes include preventing a $500,000 fraudulent transfer and securing ISO 27001 certification across clinical systems.

02 / Career

A global view.
Hands-on experience.

From banking compliance and defence infrastructure to enterprise security leadership, I bring technical depth alongside responsibility for people, budgets and strategic delivery.

Sep 2022 — Present

Thermo Fisher Scientific

Singapore

Regional Chief Information Security Officer

Lead security across China, Korea, ANZ, SEATW and Japan, with projects valued at approximately $10 million annually.

  • Oversee security operations, digital forensics, fraud, architecture, threat intelligence, vulnerability management and detection engineering.
  • Report quarterly to senior leadership on regional security posture, programmes, regulatory requirements and client audits.
  • Direct transformation and risk reduction, including China infrastructure changes and APJ ERP modernisation.

Mar 2017 — Sep 2022

Thermo Fisher Scientific

Cambridge, United Kingdom

Director of Cybersecurity Operations

Accountable for security strategy and framework across a 45,000-employee contract research organisation, with a team of 30 and a US$12 million security budget.

  • Established an in-house security monitoring centre using Splunk SIEM and integrated threat intelligence.
  • Completed a global follow-the-sun support model through recruitment in APAC.
  • Introduced enterprise vulnerability management and delivered cloud security and endpoint protection improvements.

Nov 2016 — Mar 2017

NATO

Mons, Belgium · Fixed-term contract

Senior Security Consultant

Led a specialist security project for the Air Command and Control System, managing five military personnel and providing training in threat intelligence and vulnerability management.

  • Implemented vulnerability management within an air-gapped, TEMPEST-regulated environment.
  • Designed a threat intelligence platform combining open-source intelligence and paid feeds.

Jul 2015 — Nov 2016

Thales

Cambridge, United Kingdom · Global remit

Security Consultant

Led security workstreams within a global network transformation spanning approximately 50,000 employees and 40 locations, with projects valued at around US$5 million.

  • Delivered global SIEM monitoring and integrated security telemetry across EMEA, the US and APAC.
  • Developed security for banking hardware security modules, balancing infrastructure isolation with vulnerability management.

Jan 2012 — Jun 2015

Vanquis Banking Group

London, United Kingdom

Security Consultant

Directed the Group’s first PCI DSS v2 compliance programme, leading a team of five across security architecture, vulnerability remediation, identity and auditing.

  • Defined cardholder data scope, mapped dependencies and assigned accountable owners and delivery milestones.
  • Delivered the Group’s Report on Compliance, supported by technical testing, vulnerability scans and penetration testing.

03 / Expertise

Strategy informed
by technical depth.

I connect security requirements to practical delivery, drawing on experience across operational defence, enterprise architecture, regulatory assurance and commercial management.

01

Strategy & governance

Cybersecurity strategy, enterprise risk, regional oversight, executive reporting and programme accountability.

02

Security operations

Security monitoring, incident response, digital forensics, threat intelligence, fraud investigations and detection engineering.

03

Architecture & protection

Cloud security, SASE, zero trust network access, network segmentation, endpoint protection and privileged access.

04

Vulnerability & assurance

Vulnerability management, penetration testing, remediation programmes and evidence-based security control reviews.

05

Regulatory & compliance

Experience spanning ISO 27001, PCI DSS, K-ISMS, NIST CSF, CIS Controls and regional data sovereignty requirements.

06

People & delivery

Global team development, recruitment, performance management, resource planning, budget ownership and business engagement.

Selected platforms & technologies

SplunkPalo Alto NetworksCrowdStrikeQualysRecorded FutureZscalerWizCyberArkDarktraceMandiantAkamaiDragos

04 / Continuous learning

Experience built on
continued learning.

Alongside my operational experience, I am developing my knowledge of business leadership, AI security and the governance challenges of emerging technologies.

Current studies

MBA in Cybersecurity

EC-Council University

In progress
Certified Ethical Hacker
EC-Council University
Planning for Secure by Design AI
ISC2 · Professional development
AI in Cybersecurity
ISC2 · Professional development
Aligning with Global AI Regulations
ISC2 · Professional development

05 / Get in touch

Let’s discuss
what comes next.

I welcome conversations about senior cybersecurity leadership opportunities in technology, financial services and life sciences.

Based in Singapore. Open to relocation to London, Hong Kong, Dubai and Switzerland. Available for virtual and in-person conversations.

Download my full CV