Founding member

Stephen Betros

The strategist who makes the management system earn its keep.
ISO 27001 ISO 9001 ISO 14001 ISO 45001 Contract auditing ISMS implementation Risk management Integrated management systems

Stephen is a management systems specialist and contract certification auditor who has spent more than a decade getting organisations certified — with a record of every client achieving certification first time. Through the consultancy he founded in 2013, he implements and audits ISO management systems across quality, work health and safety, environment and information security, for clients spanning more than fifty industry sectors.

Behind the auditing sits a senior executive career. For over a decade he led professional associations as chief executive — most relevantly a national risk management association, where he grew membership and revenue while building out professional development, accreditation and best-practice programs, and earlier a national facilities management body, where he grew membership 450% and revenue 500%. He also ran APAC marketing for the compliance division of one of the largest multinational compliance and standards organisations, driving revenue growth through the GFC on the back of a thought-leadership positioning campaign. The thread throughout is a strategist’s eye for turning capability into commercial growth.

Today his work spans ISO management system implementation and contract certification auditing for Conformance Assessment Bodies across ISO 9001, ISO 45001, ISO 14001 and ISO 27001, alongside risk management consulting. He brings to InfoSec Collective a rare combination — the rigour of a multi-standard auditor and the commercial instincts of a chief executive who has always treated the management system as a driver of business performance, not a box to tick. He joined as a founding member in 2026.


Where Stephen creates value
Risk management at the foundation
A former chief executive of a national risk management association — bringing a discipline of risk thinking that anchors the management system to the threats that actually matter to the business.
A first-time certification record
Every management systems client he has guided has achieved certification on the first attempt — across quality, safety, environment and information security. Readiness that holds up when the auditor arrives.
Integrated across four standards
A contract certification auditor and implementer across ISO 9001, ISO 45001, ISO 14001 and ISO 27001 — so information security is built as part of how the business runs, not bolted on as a silo.
Certification that earns its keep
Decades spent building business models, brands and growth — so the management system is shaped to drive business performance and brand equity, not sit on a shelf as a compliance cost.