Jamie Norton — Global CISO and Non-Executive Director
NACD.DC GAICD FGIA

Jamie Norton

CISA CISM CISSP CGEIT CIPM
Global CISO  ·  Non-Executive Director  ·  Cyber Expert
Keynote Speaker  ·  Media Commentator  ·  AI Governance Expert

The decisions organisations make about AI and cybersecurity in the next three years will shape their resilience for the next decade and beyond. I work at that intersection — translating complex geopolitical and technology risk into strategy built for uncertainty.

For media enquiries and speaking engagement requests, please contact me via the Engage button below.



"Jamie is one of Australia's most prolific cyber security executive leaders." — M, Chief Information Security Officer
"…a game changing collaborator and visionary in cyber security." — J, Cybersecurity Founder

Keynotes & Advocacy

Speaking & Public Discourse

Delivering strategic foresight at the intersection of technology and corporate governance.


Audio & Broadcasting

Media & Podcasts

Extended conversations on quantum preparedness, board communication, and the future of cyber leadership.

KBI
KBKAST Deep Dive

Quantum Computing Preparedness

In Episode 328, Jamie Norton and Rob Clyde break down the ISACA global survey on organizational quantum roadmaps and how cyber professionals must prepare for the post-quantum transition.

Listen on Apple
BoC
Business of Cyber

Discussing Security with a Non-Technical Audience

Drawing on his experience as CISO for the ATO and WHO, Jamie discusses strategies for presenting complex, highly-technical security concepts to non-technical executive audiences and boards.

Stream Episode

Strategic IP & Insights

Executive Perspectives

Original perspectives on systemic governance failures, organizational resilience, and leading through crisis.


Executive Strategy

Governance Frameworks

Translating cyber and AI threats into quantifiable business risk in alignment with global regulatory and governance standards.

NIST Cybersecurity Framework (CSF 2.0)

Aligning the new 'Govern' function directly to corporate oversight, ensuring cyber risk is managed alongside financial and legal risk.

NIST AI Risk Management (AI RMF)

Establishing trustworthy AI adoption strategies for the enterprise, mapping generative AI capabilities against data privacy and compliance guardrails.

APRA CPS 234

Advising financial and regulated entities on maintaining information security capabilities commensurate with their specific vulnerabilities and threats.

ISO/IEC 27001 & 27002

Deploying internationally recognized best practices for Information Security Management Systems (ISMS) across complex, multi-jurisdictional organizations.