Skip to main content
IG-Smart — Governance, Risk & Assurance

Dr Bright Mawudor

Chief Information Security Officer

Cybersecurity that connects technical reality with organisational governance.

  • Cybersecurity
  • Security Engineering
  • Vulnerability Management
  • Cyber Governance & Resilience
Speak to IG-Smart

Overview

Dr Bright Mawudor provides senior cybersecurity expertise across IG-Smart's cyber governance, resilience and assurance practice.

His background spans security engineering, information security, vulnerability assessment, web application security, network security, cyber risk, governance and cybersecurity education.

This combination of technical and governance experience enables him to examine cyber risk from both sides of the problem:

What is technically happening?

and

Does the organisation understand and govern the resulting risk?

Areas of Expertise

Bright's areas of specialism include:

  • Cybersecurity governance
  • Security engineering
  • Information security
  • Cyber resilience
  • Web application security
  • Network vulnerability assessment
  • Vulnerability management
  • Risk assessment and mitigation
  • Security assurance
  • Cybersecurity training
  • Security architecture
  • Incident preparedness
  • Executive cyber awareness
  • Technical security testing

Technical Depth. Governance Context.

Many cybersecurity engagements stop at the identification of technical vulnerabilities.

IG-Smart takes the analysis further.

A vulnerability may also expose weaknesses in:

  • Governance
  • Accountability
  • Change management
  • Supplier management
  • Risk acceptance
  • Executive reporting
  • Asset ownership
  • Security monitoring
  • Incident response
  • Control assurance

Bright's work helps connect technical security findings with the wider organisational controls necessary to manage risk effectively.

Cyber Resilience

Resilience requires more than preventing attacks.

Organisations need to be able to:

  • Identify threats
  • Protect critical assets
  • Detect abnormal activity
  • Respond effectively
  • Recover operations
  • Learn from incidents
  • Demonstrate governance throughout the process

Bright supports engagements designed to strengthen those capabilities and connect them to organisational risk management.

Vulnerability and Security Assurance

His technical experience includes:

  • Network vulnerability assessment
  • Web application security
  • Security testing
  • Technical control assessment
  • Vulnerability management
  • Risk prioritisation

IG-Smart can combine this technical evidence with wider governance and assurance work, helping leadership understand not only what vulnerabilities exist but what they mean for organisational risk.

Cyber Governance

Increasingly, regulators, customers and boards expect organisations to demonstrate how cybersecurity is governed.

This includes questions such as:

  • Who owns cyber risk?
  • What controls are in place?
  • How are weaknesses escalated?
  • What information reaches the board?
  • How are suppliers assessed?
  • How is resilience tested?
  • How is risk acceptance documented?
  • How does management know controls are actually working?

Bright contributes specialist security expertise to this wider governance model.

Cybersecurity Leadership

Bright has received industry recognition for his work and is the founder of AfricaHackOn, a cybersecurity collective supporting knowledge-sharing and development within the cybersecurity community.

He is also an experienced international cybersecurity speaker.

Working Across Frameworks

IG-Smart's cyber engagements can support organisations working with frameworks and requirements including:

  • ISO 27001
  • NCSC Cyber Assessment Framework
  • Cyber Essentials
  • NHS Data Security and Protection Toolkit
  • Sector-specific regulatory requirements
  • Organisational control frameworks

The objective is not framework collection.

It is to establish an assurance model that shows which controls matter, whether they are operating and where risk remains.

Work with Bright

Bright's expertise can support:

  • Cyber governance reviews
  • Vulnerability assessments
  • Security assurance
  • Technical cyber assessments
  • Cyber resilience programmes
  • Security improvement programmes
  • Risk remediation
  • Executive cyber assurance
  • Cybersecurity training
  • Incident-readiness exercises

Relevant Services

Need greater confidence in your organisation's cyber resilience?

Talk to IG-Smart about your governance, risk or assurance requirements.