Home
Security assessments and audit
Security design and review
Policies, standards and procedures
Approach
Case studies
Check lists
Top 10s
Company information
Principal staff
Website map
Terms of use
Privacy notice
Legislation
Standards and codes of practice
Organisations
Publications
Addresses
Enquiry form
Principal staff
about Watson Hall Ltd
Watson Hall provides security analysis services using staff with a commercial mindset. They are highly qualified, experienced and have flexible people skills. We approach each enquiry in confidence and with integrity, examining the available and suitable options for each client on an individual basis. Even if the initial remit is to examine one specific area, giving consideration to other wider aspects can sometimes improve security at lower cost.
Technical know-how, people focused
Watson Hall's principals have extended experience with web application development and web application security risk management. A solid background in network, hardware and software technologies is required to be able to understand and assess security. But, a thorough understanding of the technical aspects of web application security is not sufficient without the ability to transfer knowledge, understanding and skills to the people involved. Watson Hall has the skills to discuss and communicate security issues with all staff and stakeholders working on web application projects. Watson Hall can provide a bridge between departments such as Information Systems and Marketing where the drivers and motivation for implementing a web application can be very different. Understanding and explanation will facilitate projects and assist with successful completion.
Colin Watson
Colin Watson is Watson Hall's Technical Director and principal consultant. With an engineering background, he has worked in the information technology field for thirteen years, concentrating exclusively on web application development, security and compliance.
Professional qualifications and certifications
Eur Ing Colin Watson BSc MSc MIChemE CEng MBCS CITP CISSP CISA
- Certified Information Systems Auditor (CISA), Information Systems Audit And Control Association (ISACA)
- Certified Information Systems Security Professional (CISSP), International Information Systems Security Certification Consortium (ISC2)
- Chartered IT Professional (CITP) and member (MBCS), British Computer Society (BCS)
- European Engineer (Eur Ing), European Federation of National Engineering Associations (FEANI)
- Chartered Engineer (CEng), The UK Engineering Council
- Professional Member (MIChemE), Institution of Chemical Engineers (IChemE)
Academic qualifications
Educated in Edinburgh and Oxford:
- MSc Computation, Keble College, University of Oxford
- Batchelor Science (1st class honours) Chemical Engineering, Heriot Watt University
Other affiliations
Colin participates in the following information technology and web application security groups:
- British Computer Society Information Security Specialist Group: member
- British Computer Society Information Risk Management and Audit Group: member
- Cyber Security KTN Metrics Special Interest Group: participant during 2008
- Information Systems Security Association (ISSA): member
- Open Web Application Security Project (OWASP): member and appointed to the OWASP Global Industry Committee
Blog
Colin writes a security blog under the alias Clerkendweller:
Web Security, Usability and Design
A blog about security issues for web site designers, developers and owners.
http://www.clerkendweller.com
Web security services from Watson Hall
Information security policies, standards and procedures, web site and web application security assessments and audit and web security design and review.
Contact Watson Hall
Contact Watson Hall to discuss assistance with assessing and minimising your web application security risks.
Act now
Contact Watson Hall to discuss assistance with assessing and minimising your web application security risks.
These pages contain general information only. Nothing in these pages constitutes professional advice. Please read the website's terms of use, and consult a suitably qualified information security professional on any specific problem or matter.
