Strategic Cybersecurity Leadership for Growing Technology Companies

Enterprise security expertise from Microsoft, Skype, Skyscanner, and Miro, right-sized for your growth stage

Ascensis Security Logo

Bringing Fortune 500 security leadership to startups and scale-ups

Why choose Ascensis?

25+ Years Experience

Proven track record in cybersecurity, including 15+ years at tech giants and 10+ years in offensive security.

Enterprise-Scale Security

Experience securing products used by 500M+ users worldwide, including top European unicorns.

Pragmatic & Business-Aligned

A practical approach that balances security with business growth at every stage.

Direct Access to Leadership

Work directly with a senior security leader—no layers, no intermediaries, just expertise.

Our process.

Backed by over 25 years of hands-on experience—combining offensive security expertise with leading cybersecurity teams at top tech firms—our methodology is built on proven results and experience from working in Skype, Microsoft, Skyscanner, Verizon Business, and Miro. This unique dual perspective enables Ascensis to anticipate threats while designing practical, business-aligned security solutions.

About the founder

Chris, Founder of Ascensis

With over 25 years in the cybersecurity trenches, I've had the privilege of protecting some of the world's most dynamic platforms and 3 of the top European Unicorns and Decacorns 🦄 (Skype, Skyscanner, and Miro).

My journey spans both offensive security and building enterprise defense programs. Most recently, as Head of Product Security at Miro, I led security initiatives safeguarding millions of users' collaborative work across Application Security, Cloud Security, and Detection & Response. Previously, I served as CISO at Skyscanner and Principal Program Manager at Microsoft and Skype where I helped secure platforms serving hundreds of millions of users

My hands-on technical background includes developing open source security tools that are still actively used by the community, as well as creating custom automation solutions that enhance security efficiency.

I founded Ascensis to bring this enterprise security expertise to growing companies in a practical, business-aligned approach that scales with your growth journey. I regularly share insights on cybersecurity trends and best practices through my newsletter Security and Innovation Notes.

Our services.

We start with some defined services but we can offer custom programs for Cybersecurity and AI.

NISTSECURITY

Security Bootstrapping

For most small and medium sizes business, security naturally comes as an after-thought since it is not a revenue generating activity. This is nothing surprising. However, at one point it is critical to step up the game and build an effective and pragmatic security programme from scratch for your growing business.

LEADERSHIPSTRATEGY

vCISO(s)/Fractional leader

Not every business needs a full-time CISO. As your fractional security leader, I bring 15+ years of security leadership experience from Microsoft, Skype, Skyscanner, and Miro to your business. My background building security programs for products serving 500M+ users helps identify and address critical security challenges before they impact your business. This approach gives you enterprise-grade security leadership without the full-time executive cost.

SECURE SDLCDEVSECOPSCLOUD

Product Security & SDLC

We have worldclass experience building and running Product Security practices, we can help you setting up a new practice, with modern Secure SDLC approach, or we can help you transform and modernize your current practice and prepare it for the future. My offensive security background enables me to anticipate attack vectors often missed in traditional security reviews.

SOC2ISO27001

Risk & Compliance

Navigate complex regulatory landscapes with our compliance expertise. We help businesses meet industry standards like ISO 27001, SOC 2, GDPR, and AI ISO 420001 through gap assessments, documentation development, and implementation of controls that satisfy auditor requirements while minimizing operational impact.

ProductIPOB2B

Enterprise readiness

If you are B2B we can prepare your product to be Enterprise ready, to meet the customers most stringent security requirements

AISECURITYREGULATIONS

AI Security

We will help you design and build a security program for your AI powered products, that will be compliant with the latest regulations and secure by design.

WEB APPSMOBILE APPSAPIs

Penetration Testing

Drawing on my +15 years in offensive security, combined with a threat focused approach and extensive product security experience we conduct thorough penetration tests of your applications, infrastructure, and cloud environments to provide actionable remediation guidance.

AWARENESSGrowthCOMPLIANCE

Security Training

We deliver security training programs for your employees, from basic awareness to advanced security topics.

CAREERLEADERSHIPGROWTH

Mentoring

Elevate your employees and provide them with experienced profesionals guidance on their career.

M&AIPODUE DILIGENCE

IPO and M&A support

Either considering taking your business public or preparing for an M&A activity, security is an integral part of the journey. Ensuring the right controls and mechanisms are in place depending on the actual scenario is the key to ensure the desired outcomes. Key success factor is an experienced partner that can guide you through the journey in a pragmatic way.

SALESDEALSENABLER

Sales Enablement

We can support your teams on how to sell security to your customers, providing the customers with the assurance they seek.

Our team.

Ascensis delivers enterprise security expertise through my direct leadership, backed by proven methodologies developed over 15+ years at companies like Microsoft and Miro. For implementation needs beyond strategic guidance, I collaborate with trusted security specialists to provide comprehensive solutions.

We have developed proven strategies, programs, processes, playbooks, automation tools and data-driven frameworks to build a repeatable approach for bootstrapping security in growing organizations. You can implement these methodologies yourself, or partner with Ascensis to access senior security expertise that will save you significant time and accelerate your security maturity.

Our faqs.

The most common questions we get asked.

Ascensis builds cybersecurity practices and programs for growing companies. We partner with forward-thinking organizations across all growth phases, delivering enterprise-level security expertise. For implementation needs beyond strategic guidance, I collaborate with trusted security specialists to provide comprehensive solutions. I commit to lasting relationships, working alongside your team from early stages through maturity.
Our typical customers are fast-growing startups and mid-sized companies that need enterprise-grade security but don't have the resources for a full in-house security team. I specialize in organizations developing software products, cloud services, and AI applications. I also work with businesses across various sectors including SaaS, fintech, healthcare, and e-commerce that handle sensitive data and need to meet compliance requirements or prepare for security audits.
I deliver services through a combination of remote and on-site engagements. For most clients, I begin with a comprehensive security assessment to identify gaps and priorities. Based on the findings, I develop a tailored security roadmap and implementation plan. For implementation needs beyond strategic guidance, I collaborate with trusted security specialists to provide comprehensive solutions when necessary. Ascensis adapts to your tools and processes, working where your team works: Slack, Google Docs, Github, Notion, Confluence, Jira, etc.
My approach is pragmatic and business-focused, drawing on my unique 25-year security journey that includes both offensive security experience and building defensive security programs at companies like Microsoft, Skype, Skyscanner, and Miro. This dual perspective allows me to anticipate threats more effectively while designing practical defenses. I understand that security must enable business growth, not hinder it. Ascensis prioritizes controls that provide the highest security ROI and align with your business objectives. Having worked with companies at all stages of growth, I can scale solutions as your needs evolve. I also emphasize knowledge transfer, ensuring your team understands the security measures we implement and the threat landscape they address.
Clients typically see meaningful improvements in their security posture within the first 30-60 days of engagement. Quick wins like implementing basic access controls, security awareness training, and vulnerability management can show immediate value. More complex initiatives like building a comprehensive security program can take 3-6 months. I provide regular progress updates and metrics to track improvements throughout our engagement, ensuring you have visibility into the value Ascensis delivers.
I believe security tools should enable business, not slow it down. My approach combines established security principles with technological innovation in several ways: I develop custom security automation that integrates with your existing workflows, reducing friction while increasing protection. Throughout my career, I've created automation for Information gathering, Penetration testing, Application security testing, vulnerability management and security testing integration into CI/CD pipelines. I've contributed to the security community through developing open source tools that are still actively used today (theHarvester, Wfuzz). When working with clients, I focus on right-sized technological solutions that match their maturity level and growth trajectory. This might mean adapting enterprise security patterns for startups or creating lightweight alternatives to expensive security tools. My background in both offensive and defensive security gives me insight into building practical detection and response capabilities that catch real threats without overwhelming teams with false positives. Now I leverage the power of AI and Agents to enhance my security capabilities.
 
 
 
 
 

Discuss Your Security Needs