Home / About
─ OUR TEAM
Senior consultants, in the room.
No sales hand-off. No juniors covering.
The kind of consultant you'd want — because your seat used to be ours.
─ FOUNDERS
Founding Team
Two founders with careers at global tech companies and in enterprise IT governance, each holding multiple ISO Lead Auditor credentials — and each personally on your project.
─ SENIOR CONSULTANTS
Our Consultants
Senior practitioners from the Big Four, certification bodies and global brands. Between them: information risk, ESG, ISMS implementation and AI security.

Risk Management
Senior Consultant L.
Technology Risk Advisory
More than 25 years in consulting, with financial-sector rigor applied across industries. Formerly at PwC Taiwan and EY Advisory. Expertise spans information risk, IT governance, IT audit, information security, business continuity and personal data protection.
— Experience
- PwC Taiwan — Consultant
- EY Advisory Services — Consultant
- Project consultant, ISMS design and maintenance for financial institutions
- Lecturer — Taiwan Academy of Banking and Finance, Taiwan Insurance Institute, Computer Audit Association
— Credentials
- ISO 27001 (ISMS) Lead Auditor / BS 7799 LA
- ISO 27701 (PIMS) Lead Auditor / BS 10012 LA
- ISO 20000 (ITSMS) Auditor
- ISO 42001 (AIMS) Lead Auditor
- ITIL v3 Foundation

Risk Management
Senior Consultant P.
ESG Advisory
Brings information governance, security auditing and sustainability management together in one practice. Six years as a senior information-security auditor at BSI, 15 years heading IT at EY, and lead-verifier credentials in both information security and greenhouse-gas verification.
— Experience
- Schweitzer Biotech Co., Ltd. — Head of GHG / IT
- BSI (British Standards Institution) — Senior Information Security Auditor (6 years)
- EY Taiwan — Head of IT (15 years)
- ISO 27001 / 20000 course lecturer
— Credentials
- ISO 14064 / 14067 Lead Verifier
- ISO 27001 / 27701 / 29100 / 20000 Lead Auditor
- BS 10012 Lead Auditor
- C-TPAT Auditor · CSA STAR Auditor
- WBSA Certified International Business Planner

Risk Management
Senior Consultant C.
ISMS Implementation & Audit Readiness
Comes from the practitioner side: security governance, in-house IT management and audit preparation. Knows ISO 27001, SOC 2 and ISO 27701 from control design through to evidence collection, and is good at getting departments aligned — turning standard clauses into processes and controls people actually follow.
— Experience and Background
- Security compliance and IT management at an AI startup
- Recruitment consultant, technology and cybersecurity
- HITCON (Hacks in Taiwan Conference) — community participant and organizer
- FeAce International Co., Ltd. — Senior Consultant
— Credentials
- ISO 27001 Lead Auditor
- ISO 27701 Lead Auditor
- ISO 42001 Lead Auditor

Risk Management
Senior Consultant F.
Technology Risk Advisory
Ten years across security governance, cloud engineering and AI security research, with an attacker's-eye view applied to AI governance and enterprise security. Long-standing focus on LLM red teaming, agentic-AI security and MCP security. Serves as vCISO to financial and technology companies in Taiwan.
— Experience
- AI security researcher, leading international open-source security organization
- Invited speaker at major security conferences in Asia-Pacific and globally
- Invited lecturer for leading international security associations and technical communities
— Credentials
- CEH
- ECIH
- ISO 27001 Lead Auditor
- ISO 27701 Lead Auditor
- BS 10012 Lead Auditor
- ISO 42001 Lead Auditor
- CC
- CSM
- CSPO
- Cybersecurity Centre of Excellence (CCoE) Elite Talent Programme, 2nd cohort — Department of Cyber Security, Executive Yuan
…plus a bench of senior industry consultants, brought in as each project requires.
─ OUR PARTNERS
Who we work with







