Richard Osborne is a cybersecurity and risk management leader known for connecting technical security controls to measurable business outcomes. As Director of Commercial Services at Secure Halo, he leads the design and delivery of cybersecurity, risk, and compliance services that help organizations strengthen resilience while meeting complex regulatory and operational demands. His work sits at the intersection of governance, architecture, and commercial strategy, enabling security programs that are practical to execute and credible under scrutiny.
Across a career spanning more than three decades, Richard has partnered with education, government, and enterprise organizations in highly regulated environments. He helps clients operationalize frameworks and standards including NIST CSF, NIST 800-171, ISO 27001, and CIS Controls, translating requirements into scalable program structures, clear roadmaps, and repeatable controls that reduce risk without overextending resources.
Richard is frequently engaged for assessments, security program development, third-party risk management, and executive-level cybersecurity strategy. His advisory approach emphasizes defensible decision-making, continuous improvement, and alignment between compliance obligations, operational resilience, and real-world risk reduction.
Richard’s Specialties & Experience
Cybersecurity governance, risk, and compliance (GRC)
Security program design and maturity assessment
NIST, ISO, and CIS Controls alignment
Third-party and supply-chain risk management
Privacy and regulatory compliance advisory
Security strategy and multi-year roadmapping
Executive stakeholder engagement and communication
Commercial cybersecurity service development
30+ years of experience across information technology, cybersecurity, and risk management leadership
Director of Commercial Services at Secure Halo, leading cybersecurity, risk, and compliance service delivery
M.S. in Cybersecurity and Information Assurance and B.S. in Information Technology
Holds CISSP and ISSAP (ISC2) and CISM (ISACA) credentials alongside multiple CompTIA and EC-Council certifications
Member of InfraGard, ISACA, and 451 Alliance