SecurityBrief Ireland - Technology news for CISOs & cybersecurity decision-makers
Ireland
HCS appoints Lesley Whelan to lead new GRC practice

HCS appoints Lesley Whelan to lead new GRC practice

Wed, 29th Jul 2026 (Today)
Sofiah Nichole Salivio
SOFIAH NICHOLE SALIVIO News Editor

HCS has appointed Lesley Whelan as Head of Risk and Compliance as the Irish IT services company launches a new Governance, Risk and Compliance practice.

Whelan will lead the development of the practice, help expand HCS's customer base and support its wider growth plans. She will also work on the company's internal governance and assurance framework, including support for ISO 27001 and broader information security work.

Her remit includes customer demand in cyber risk, regulatory compliance, data protection, operational resilience and AI governance. Those issues have become more prominent as regulatory scrutiny has increased and boards have placed greater emphasis on risk management and security controls.

HCS operates from Waterford, with additional bases in Dublin and Cork, and provides managed IT and cyber security services to organisations in Ireland. The business has operated for more than three decades and was acquired in late 2024 by investment company Centric360, jointly owned by Pamela Farrell and Brian Larkin.

New practice

The dedicated Governance, Risk and Compliance unit expands HCS's offering beyond managed IT and cyber security support. It also reflects stronger customer demand for advice on meeting compliance obligations while managing cyber threats and operational risks.

Whelan brings more than 20 years of governance, risk and compliance experience in the IT sector. Her previous roles include Head of Risk and Compliance at HLB, Compliance Manager at eir business, formerly eir evo, and Head of IAM Cyber Services at Irish Life.

Across those positions, she has worked on compliance and assurance activity, governance frameworks, audit and regulatory readiness, and risk and control requirements. She has also worked with technical and business teams on security and compliance processes.

Her academic and professional qualifications include a Higher Diploma in Computer Science from UCD, a Diploma in Business Management from Griffith College, a Certificate in Cyberpsychology from Dún Laoghaire Institute of Art, Design and Technology, and a Professional Certificate in Data Protection from UCD. She also holds a BA International in French and German from UCA.

Whelan is also a qualified ISO 27001 Lead Auditor and a Certified Data Protection Officer through the Institute of Banking. Those credentials align with HCS's focus on information security standards, governance structures and customer compliance needs.

Market demand

For IT service providers, governance and compliance work has become a more visible part of client spending as businesses face pressure to show they can manage data, suppliers and cyber exposure. Requirements tied to resilience, privacy and AI oversight have added to that workload, particularly in regulated sectors.

Whelan's role includes helping customers respond to those pressures in practical terms. The new practice forms part of a broader effort by HCS to deepen its advisory work alongside its core technology services.

Whelan outlined her approach in a statement on her appointment.

"I work closely with leadership, technical teams and customers to turn compliance requirements into practical, workable processes that support trust, resilience and growth. GRC is now central to winning business, maintaining trust and supporting growth. I look forward to working with clients to enhance their operations while helping tackle several critical challenges," said Whelan.