Kev Milne

CEO

Edinburgh, Scotland, United Kingdom28 yrs experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over 500 penetration tests conducted using industry methodologies.
  • Led a global penetration testing service at Standard Life.
  • Developed unique training courses in cybersecurity.
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in risk management and penetration testing.

Contact

Skills

Core Skills

CybersecurityTrainingCyber Threat IntelligencePenetration TestingTeam ManagementTeam LeadershipRisk AssessmentSecurity ManagementConsultancySecurity ConsultancySalesRisk ManagementTechnical ConsultancySecurity

Other Skills

Mainframe Offensive Security Tester courseCertified Infrastructure Security Tester coursesNeurodiversityInstructor-led TrainingVulnerability IntelligenceCyber Risk QuantificationRed Teaming TTPsMentoringPenetration Test team buildingInfrastructure architectureGovernanceRed Team ResearchReportingTeam developmentCyber Risk Methodology

About

I have worked in IT since 1993 having specialized in security and networking since 1999. This has given me extensive experience in multiple operating, networking and security systems ensuring a sound technical knowledge that can be applied to any risk based scenario. I undertook my first management role in 2000 leading a team of consultants at Wisdom IT and since then have held various management and technical lead positions. In 2005 my most notable role was to manage the penetration testing service for Standard Life globally ensuring security issues were found and eradicated and third parties were successfully managed ensuring a high level of quality assurance. In 2009 I also became IT Security Manager for Standard Life in Germany followed by the role of 'Head of Penetration Testing' at Sysnet, Europes second largest PCI company 2012. Since 2005 I have also conducted over 500 application and infrastructure penetration tests using the OWASP and OSSTMM methodologies. I have a deep knowledge of security frameworks and technologies including Mitre Att&ck and NIST and hold qualifications inlcuding CISSP, CHECK, CREST as well as Linux, Firewalling, remote access systems, networking, Information Security, Novell Netware, Penetration testing, messaging and integration technologies. I am formerly British Government SC cleared. Specialties: Conducting solid risk analysis whilst providing pragmatic security solutions and technical recommendations. My skills come from years of experience and research.

Experience

28 yrs
Total Experience
3 yrs 9 mos
Average Tenure
4 yrs 3 mos
Current Experience

Neuro training ltd

Director and Instructor

Jun 2025Present · 11 mos · Remote

  • Developing and leading the Mainframe Offensive Security Tester course and Certified Infrastructure Security Tester courses and certification. The only publicly available hands on, affordable mainframe penetration testing course available gloablly. Proudly working alongside my talented daughter who brings a wealth of research and knowledge to our other side leading workshops, blogging and training in various neuro diversity topics.
  • Our Mission - Empowering individuals through expert-led training in cybersecurity and neurodiversity, fostering resilience, inclusivity, and digital security in an ever-evolving world. At Neuro Training Ltd, we are committed to equipping professionals and organizations with the knowledge and skills to thrive in the digital age, while championing neurodiverse perspectives to create a more innovative and inclusive future.
  • Look out for further information coming soon.
Mainframe Offensive Security Tester courseCertified Infrastructure Security Tester coursesCybersecurityNeurodiversityTraining

Natwest group

4 roles

Cyber Threat Intelligence Manager

Sep 2024Present · 1 yr 8 mos

  • Undertaking the role of Cyber Threat Intelligence Manager. Duties include Vulnerability Intelligence, Cyber Risk Quantification and the development of Red Teaming TTPS for mainframe, middleware and other financial systems that are currently lacking in the Mitre Att&ck framework. Providing mentoring to younger memebers of the team on offensive and defensive security. Finally, I provide context on cyber threats and attacks to senior management.
Vulnerability IntelligenceCyber Risk QuantificationRed Teaming TTPsMentoringCyber Threat IntelligenceCybersecurity

Training and Infrastructure Manager

Mar 2024Sep 2024 · 6 mos

  • Built the internal Penetration Test team - increasing the team size from 4 to 16 Penetration Testers and Red Teamers. I architected, built and drove the infrastructure through the required governance and redeveloped the processes alongside. I redeveloped the reporting alongside the methodologies, mentored and trained the team on new techniques. Provided formal team training on offensive security in a wide range of topics from API security to penetration testing of the IBM Mainframe eco system.
Penetration Test team buildingInfrastructure architectureGovernanceMentoringPenetration TestingTeam Management

Lead Offensive Security Specialist

Promoted

Feb 2022Apr 2024 · 2 yrs 2 mos

  • Penetration Testing and Red Team Research. Oversight of reporting and required to lead the development of the new for both internal penetration testing on Vsphere and Red-Team engagements via the Cloud . Develop, guide, mentor and motivate the growing team with the aim of making them and the service the best in the business. I drove over 1.5 million in savings through the reduced use of external consultancies and efficiencies internal 3rd party use for daily tasks, through the use of automation and new processes.
Penetration TestingRed Team ResearchReportingTeam developmentTeam Leadership

Security Consultant - Cyber Threat Intelligence

Feb 2021Nov 2023 · 2 yrs 9 mos

  • Developed the technical methodology for quantifying cyber risk using standard offensive and defensive frameworks. As well as developing the methodology I conducted the first years analysis of the banking systems against the Threat Actors of interest.
  • I was chosen to do this due to my in-depth technical knowledge of both offensive and defensive security alongside a strong risk and audit background.
Cyber Risk MethodologyThreat Actor AnalysisTechnical knowledgeCyber Threat IntelligenceRisk Assessment

Virgin money

Information Security and Business Continuity Risk Manager

Mar 2015Apr 2024 · 9 yrs 1 mo · Edinburgh, United Kingdom

  • Providing consultancy, support and oversight to the Security Risk function and Group Security within Virgin Money. Developing working relationshps within the IT, Security, Risk and Audit functions of Virgin Money and providing a pragmatic, real world view on security issues using my experience across multiple technologies and scenarios gained over the past 20 years.
  • CISSP, CRT, CTM SC cleared
Security Risk functionConsultancyPragmatic security solutionsSecurity Management

Sopra group

Senior Security Consultant. CISSP, CRT, CTM. SC cleared

Nov 2013Jan 2015 · 1 yr 2 mos · Edinburgh

  • Conducting wide ranging risk assessments and security consultancy on services, infrastructure and applications whilst specializing in Penetration Testing delivery and pre-sales. Since Nov 2013 I have been tasked with leading Penetration Testing and pre-sales in Scotland. This has involved updating the methodologies, templates and providing ideas for expanding penetration testing across Sopra. Finally, delivering high quality reports and presentations to executive and technical staff is very important to this role.
Risk assessmentsPenetration TestingPre-salesSecurity Consultancy

Hp enterprise services

Threat and Vulnerability Management - Senior Penetration Tester - Scotland.

Feb 2013Nov 2013 · 9 mos · Edinburgh, United Kingdom

  • Leading Penetration Testing in Scotland region. Conducting Infrastructure and application Penetration Testing whilst engaging in pre-sales activity to increase the pipeline in the Scotland region.
Penetration TestingPre-sales activitySales

Sysnet global solutions

Head of Penetration Testing (Global)

May 2012Mar 2013 · 10 mos · Dublin

  • Helping to build and manage a world class, global penetration testing team whilst continuing to conduct web application, wireless and infrastructure penetration tests. I also provided training to third line support teams on Vulnerability Analysis and networking.
  • I conducted penetration testing as part of PCI-DSS, PA-DSS and PFI Lite. Engagements ranged across Eastern Europe to Africa.
Building penetration testing teamConducting testsTrainingTeam ManagementPenetration Testing

Standard life

IT Security Manager - Standard Life Germany / Penetration Test Lead (SL Global)

Mar 2002May 2012 · 10 yrs 2 mos · Edinburgh, United Kingdom

  • Initially working in the ISOS web services as Technical Lead with the responsibility for perimeter security implementing and administering technologies suchn as proxy servers, intrusion detection systems, and firewalls. I moved to IS Security Assurance in 2005 to undertake responsibility for infrastructure and applications penetration testing based on OWASP and OSSTMM methodologies, risk management, quality assurance and security consultancy globally.
  • Mid 2009 following successful testing in Standard Life Germany I was asked to undertake the role of IT Security Manager for the Standard Life Frankfurt office with wide ranging responsibilities including penetration testing, audit response, security consultancy, architectural threat modelling and risk management of other security aspects for the business and IT team. I was given the responsibility of managing the newly formed security team that was implemented following my recommendations.
  • Foundstone advanced Blackhat hacking trained in infrastructure.
Perimeter securityRisk managementSecurity consultancySecurity ManagementRisk Management

Wisdom it

Senior Technical Consultant - Consultancy Services Manager

Jul 1999Jan 2002 · 2 yrs 6 mos · Livingston

  • Worked initially as a senior Novell consultant before branching out into almost every other technology due tomy skills as a 'troubleshooter'. My work became primarily routing and security based technologies and I was given the responsibility of managing a team of four consultants.
RoutingSecurity technologiesTechnical ConsultancySecurity

Sky

Office Systems - Technician

Jan 1998Sep 1999 · 1 yr 8 mos

  • 3rd Level Support for systems built on Intel technologies. Including Novell Netware, Windows NT and Citrix Metaframe. Designed and implemented the Netware 4 to 5 migration whilst gaining my Master CNE in Netware and NT Integration.

Education

fraserburgh academy

academy

Stackforce found 100+ more professionals with Cybersecurity & Training

Explore similar profiles based on matching skills and experience