About cysura

Practical security leadership for modern businesses

CySura was founded to fix a growing problem: too many businesses were being sold security advice that was generic, bloated, or downright unhelpful. Auto-generated reports. Checkbox audits. Recommendations with no sense of risk or priority.

We knew there had to be a better way—so we built it.

Led by Luke Thomas, CySura delivers high-touch, executive-level cybersecurity leadership to businesses that need more than just theory. Luke brings over 17 years of experience in healthcare technology, having served as both Chief Technology Officer and long-time Information Security Officer. He’s led teams through major infrastructure overhauls, built secure cloud-native platforms, implemented Zero Trust and SIEM programs, and reported on cybersecurity and privacy risk at the board level across Australia and New Zealand.

Along the way, he’s also run some of the most effective security awareness programmes you’ll find—using real-world tactics like cookie theft demos and phishing-from-within to create a culture of awareness, not just compliance.

At CySura, we only work with a handful of clients at any one time. That means we’re responsive, embedded, and hands-on. We help teams identify real risk, build smart roadmaps, and implement changes that actually make a difference. From infrastructure and compliance to board reporting and staff training—we’re here to help you build a security program that protects your business and earns trust.

We’re not here to replace your team. We’re here to strengthen it.

Want to see how we approach security differently? Watch Luke’s talk from the 2023 Canterbury Tech Summit, where he shares how hands-on, human-focused training can transform security culture—from checkbox compliance to real awareness.

Security isn’t about ticking boxes. It’s about helping your team understand how attacks actually work—so they know how to spot one when it matters.
— Luke Thomas