Governing Body Spotlight

Spotlight on Katy Hinchcliffe

Governing Body Member of the UK & Ireland CISO Community

Katy Hinchcliffe

Group CISO

M&G Plc

Katy Hinchcliffe is Group CISO at M&G, a FTSE 100 savings and investment company, where she leads the Enterprise Security and Privacy team. She is responsible for both leading the Security function, as well as defining and championing the long-term security strategy in an increasingly complex threat landscape. 

With nearly two decades of experience across security architecture, risk management and cyber operations, Katy has worked across Government, Aerospace, and Defence. She is known for bringing clarity and calm to high-pressure situations, translating complexity into simple truths and decisive action at moments that matter most for the business.

Fun Fact: Katy is an animal lover, with an undergraduate degree in Animal Science. She also owns a Motorhome to take her dog, Flossy, on adventures in comfort.

Learn more about the UK & Ireland CISO community here.
 

Give us a brief overview of the path that led to your current role.

My career has always centred on security and operational resilience, although the roles themselves have evolved significantly over the years. I started in compliance and technical security positions, developing a strong understanding of how organisations manage risk. As my career progressed, I moved into broader leadership roles that combined security architecture, incident response, risk management and business engagement. Today, as Group CISO at M&G, I focus on bringing those disciplines together to help the organisation stay secure, resilient, and prepared for the future.
 

What is one of your guiding leadership principles?

Lead with clarity and trust. People do their best work when they understand the purpose behind what they are being asked to do and feel empowered to make decisions. My role is to set a clear direction, create an environment where people can succeed, and support them when they encounter challenges. Strong teams are built on trust, openness, shared accountability and not forgetting to have some fun.
 

What is the greatest challenge CISOs face today, and how are you addressing it?

One of the biggest challenges is keeping pace with the rapidly changing threat landscape while enabling innovation and business growth. The rise of artificial intelligence, increasingly sophisticated cyber-attacks, and growing regulatory expectations mean organisations must continuously adapt. We address this by taking a risk-based approach, investing in our people and capabilities, and embedding security into business decision-making rather than treating it as a separate function. Security is most effective when it becomes part of the organisation's culture.
 

What is the key to success for someone just starting out as a CISO?

Develop the ability to translate between technology and business outcomes. Technical expertise remains important, but success at an executive level comes from understanding organisational priorities, building relationships, and influencing decisions. Listen carefully, stay curious, and focus on delivering value rather than simply managing risk. The best security leaders are trusted advisers to the business, not just technical experts.
 

How do you measure success as a leader?

I measure success through the success of the people and teams around me. If my teams are engaged, developing their skills, and delivering meaningful outcomes for the organisation, then I am doing my job well. I also look at whether security is becoming easier for colleagues to understand and adopt, and whether business leaders see security as a trusted partner. Ultimately, success is creating a resilient organisation while helping people thrive.
 

What is the value of being a member of Gartner C-level Communities?

Cyber security leaders face many of the same challenges, regardless of industry. Gartner C-level Communities provide a valuable network of peers who are willing to share experiences, lessons learned, and perspectives on emerging trends. The more advanced our adversaries become, the more important it becomes to work together as defenders and share our insights. In a rapidly changing environment, that collective knowledge is incredibly valuable.

 


Governing Body members share their insights and leadership perspectives to shape the agendas and topics that address the top priorities impacting business leaders today.