About
Alvor was founded by a practitioner who lived the problem. Spreadsheets, disconnected tools, and audit fire-drills don't scale. Security deserves better infrastructure.
Our Mission
Security programs shouldn't live in spreadsheets or require a team of consultants to maintain. We believe every organisation deserves a structured, living security program that grows with them.
One platform that connects assets, risks, policies, and evidence into a single source of truth.
Every organisation deserves a living security program that grows with them - from first audit to continuous compliance.
Security, engineering, compliance, and leadership each get the view they need without forcing everyone into the same interface.
The Founder
Founder & Principal
A decade securing the systems other systems depend on: national research computing, hyperscale cloud, and critical infrastructure, most recently leading enterprise and cloud cybersecurity.
Connect on LinkedInSecurity roles at Monash University, UNSW and KAUST, and Technical Lead APAC for Cloud Security at Amazon Web Services.
Took Shaheen III, the Middle East's fastest supercomputer at the time, to a NIST 800-171 baseline with US export control compliance.
Found CVE-2020-2021, a maximum-severity flaw in Palo Alto firewalls; US Cyber Command publicly told agencies to patch it immediately.
Built security architecture, SOC and vulnerability management functions from the ground up, and launched the higher education sector's first public bug bounty program.
Certified Information Systems Security Professional
CISSP · ISC2
GIAC Defensible Security Architecture
GDSA · GIAC
AWS Certified Security – Specialty
Amazon Web Services
TOGAF Enterprise Architecture Practitioner
The Open Group
What We Believe
Security is complex enough. Our platform distills it into clean workflows and clear dashboards - so you spend time on decisions, not deciphering data.
Compliance isn't a solo mission. We give every stakeholder - from engineers to executives - the view they need to own their part of the program.
We care about real security posture, not checkbox compliance. Every feature is designed to reduce actual risk - not just produce a passing report.
Annual audits are snapshots. We believe security should be a living, breathing program - monitored, measured, and improved continuously.
By Role
Get started
Whether you lead security, run IT, manage compliance, or sit in the C-suite - we'll show you your view.