Our Approach

Cybersecurity Designed for Your Business

Morrisec is built on the belief that cybersecurity should be a business enabler, not a barrier. That’s why we tailor every service to your organisation’s unique risks, systems, and strategic objectives, ensuring that security controls protect and enable your operations, not disrupt them. No generic templates. No one-size-fits-all services. We focus on what matters for your business: practical, risk-based solutions that provide lasting value and help your business grow securely.

Our Mission

Empowering organisations through tailored, outcome-driven cybersecurity solutions that reduce complexity, strengthen resilience, and support long-term success.

Our Vision

A future where cybersecurity enables business, not limits it – allowing organisations to confidently embrace new technology, protect what matters most, and focus on what they do best.

Executive Leadership

photo of dr sarah morrison, Co-CEO of Morrisec

Dr Sarah Morrison

Co-CEO

Sarah’s cybersecurity career spans more than 20 years across development, risk, compliance, and leadership roles. With a foundation in software engineering and criminology, she has worked as a fraud and corruption investigator, managed IT and security risk at one of Australia’s Big Four banks, led GRC consulting teams, and served as CISO for Australia’s largest ASX-listed cybersecurity company—where she achieved ISO/IEC 27001 certification in under six months.

Holding a PhD in Russian Information Operations, Sarah offers deep insight into threat actor behaviour and motivations. This unique expertise informs her strategic approach to managing cyber risk, aligning security controls with business objectives, and supporting regulatory and certification requirements.

Sarah is widely trusted by boards, executives, and Audit and Risk Committees to deliver practical, tailored advice that strengthens resilience, reduces compliance burdens, and empowers long-term growth.

Photo of David Morrison, Co-CEO of Morrisec

David Morrison

Co-CEO

With over two decades of experience across every major domain of cybersecurity, David brings deep technical expertise and practical insight to help organisations manage risk and build resilience. His background spans governance, penetration testing, threat detection, digital forensics, network security, secure architecture, and cybersecurity education—giving him a unique ability to understand and address risks across the full security spectrum.

David is known for his ability to engage both deeply technical teams and executive leadership, translating complex threats into clear business risks and strategies. He has advised organisations of all sizes, tailoring pragmatic solutions that balance strong security outcomes with operational and budget realities.

A co-founder of Australia’s first hacker conference, Ruxcon, David is also a passionate educator, having taught and mentored across TAFE and university programs in areas such as penetration testing, GRC, and incident response. His goal is simple: to uncomplicate cybersecurity and prove that effective risk management can empower, not inhibit, business growth.

Our Commitment to Sustainability

 

morrisec is green showing the morrisec robots working in the garden

Morrisec is dedicated to promoting sustainability and environmental responsibility across our operations. Our initiatives include:

  • Digital-First Approach: All marketing and service delivery efforts are digital, eliminating paper waste.
  • Energy Efficiency: Support for remote staff includes providing energy-efficient light bulbs to reduce energy consumption. We also operate in a sustainable shared workspace.
  • Daily Sustainable Practices: Use of reusable coffee cups, vetting suppliers for ethical practices, and active community involvement in environmental initiatives.
  • Wildlife Sponsorship: We sponsor a turtle, platypus or quoll for each new client to support wildlife conservation.

By adopting these green practices, Morrisec aims to lead by example and inspire industry-wide environmental responsibility.

Number of Wildlife Sponsored

ww regenerate logo for SMEs
iso/iec 27001 certification badge
Morrisec is ISO/IEC 27001:2022 certified, demonstrating our commitment to managing information security with the same discipline and rigour we bring to our clients. Achieving this certification reflects our ability to meet international best practice while operating as a dynamic, high-performing cybersecurity business.
pci dss qsa company certification badge
Morrisec is a PCI DSS Qualified Security Assessor (QSA) company, authorised to assess and support organisations that store, process, or transmit cardholder data. Our team helps businesses navigate PCI DSS requirements with confidence—reducing risk, achieving compliance, and protecting customer trust.