Arthur Sivanathan is a Senior Director Analyst at Gartner, specializing in cybersecurity leadership, cyber resilience and organizational resilience. His research focuses on the evolving role of the CISO, with particular emphasis on cybersecurity strategy, security operating models, organizational dynamics, executive communications, governance and security management processes. Arthur advises organizations on how to build resilient, business-aligned cybersecurity programs that enable them to anticipate, withstand, respond to and recover from cyber disruption. His work encompasses business continuity management, operational resilience, cyber crisis management, third-party risk and the integration of security into broader enterprise resilience strategies. He also provides insight into the impact of major regulatory and legislative developments, including the Digital Operational Resilience Act (DORA), the NIS2 Directive.. His expertise helps organizations understand and operationalize regulatory requirements across cybersecurity governance, risk management, incident response, supply-chain security, product security and organizational accountability. Based in the United Kingdom, Arthur is a regular presenter at Gartner Security and Risk events. He has more than 19 years of experience in the IT industry, with a career focused on information and cybersecurity. Before joining Gartner’s Business, Technology and Insights team, he was a seasoned consultant with Gartner Consulting, advising clients globally across multiple industries. Prior to Gartner, Arthur was a member of EY’s Financial Services team, where he worked with financial services organizations around the world. His experience also includes supporting government clients in the airline and airport sectors, as well as the Metropolitan Police. Arthur is a certified ISO/IEC 27001 Lead Auditor and a BSI Business Continuity expert.
Director - Gartner BTI
Gartner Consulting , Associate Director, 4 years
EY , Manager, 4 years
Capgemini , Senior Consultant , 4 years
Cybersecurity Leadership
Cyber Risk
Cybersecurity, Risk and Resilience
Computer Science with Management Studies BSc
Cyber Resilience
Developing Security Strategy / Metrics
Effective Board and Stakeholder Communication
Selecting and Implementing a Security Framework, NIST CSF, ISO27001, Gartner Cybersecurity Controls Assessment (CCA)
BCM Program Management / Resilience