DTNA Blog Services Industries Investors & Founders Academy DTNA Labs About Get in Touch

Intelligence-led advisory. Decision velocity.

Strategic cyber security. Fusion intelligence. Defender readiness. Across ASEAN.

Operator led cyber strategy and resilience advisory for leaders navigating real risk, fast decisions and complex change. Built by people who have been in the hot seat.

Vendor Independent
90-Day Cycles, Not 3-Year Programmes
20+ Years Frontline Experience
AI Security Native, Not Adapted
Proudly Headquartered in Singapore

DTN Advisory is a Singapore-based cybersecurity advisory firm founded by Daniel Tinsley. We deliver intelligence-led advisory that accelerates decision velocity across ASEAN and Asia-Pacific. Our services include Fractional CISO, AI governance, threat intelligence, fusion centre design and security strategy from real-world practitioners with over 20 years of frontline experience. We operate on the end-user side, not the vendor side, bringing practical expertise built through actual operational leadership.

DTNA Live Cyber Stats Feed
22 seconds
Median time for initial access broker hand-off to secondary threat group
Mandiant M-Trends 2026
27 seconds
Fastest recorded eCrime breakout time from initial access
CrowdStrike Global Threat Report 2026
29 minutes
Average eCrime breakout time from initial access to lateral movement
CrowdStrike Global Threat Report 2026
14 days
Global median dwell time (up from 11 days in 2024)
Mandiant M-Trends 2026
-7 days
Mean time to exploit: attackers exploiting vulnerabilities before patches are released
Mandiant M-Trends 2026
USD 4.44M
Global average cost of a data breach in 2025
IBM Cost of a Data Breach Report 2025
USD 3.67M
ASEAN average breach cost (up 14% while global declined)
IBM Cost of a Data Breach Report 2025
USD 1.9M
Cost savings from extensive use of AI in security operations
IBM Cost of a Data Breach Report 2025
48%
Of all breaches now involve ransomware (up from 44%)
Verizon DBIR 2026
30%
Of ransomware operations used prior compromise as initial vector (doubled from 15%)
Mandiant M-Trends 2026
+87%
Surge in ransomware activity targeting industrial organisations year-over-year
Dragos OT Cybersecurity Year in Review 2026
3,300
Industrial organisations impacted by ransomware in 2025
Dragos OT Cybersecurity Year in Review 2026
119
Ransomware groups targeting industrial entities (up from 80)
Dragos OT Cybersecurity Year in Review 2026
64%
Of victim organisations refused to pay ransoms (up from 50%)
Verizon DBIR 2025
USD 5.08M
Average cost of disruption and recovery from a ransomware incident
IBM Cost of a Data Breach Report 2025
+126%
Increase in ransomware attacks in Q1 2025 compared to Q1 2024
Check Point Q1 2025 Cyber Attack Report
+89%
Increase in AI-enabled adversary operations year-over-year
CrowdStrike Global Threat Report 2026
82%
Of detections in 2025 were malware-free (identity and social engineering)
CrowdStrike Global Threat Report 2026
+550%
Increase in ChatGPT mentions in criminal forums versus any other AI model
CrowdStrike Global Threat Report 2026
11%
Voice phishing (vishing) surged to second most common initial access vector
Mandiant M-Trends 2026
+600%
Rise in deepfake-related content targeting Southeast Asian criminal operations
UNODC Southeast Asia Fraud Report 2024
15
Different attack techniques now bolstered by generative AI
Verizon DBIR 2026
97%
Of organisations with AI incidents lacked proper AI access controls
IBM Cost of a Data Breach Report 2025
63%
Of organisations lacking any AI governance policies
IBM Cost of a Data Breach Report 2025
SGD 1.1B
Total scam and cybercrime losses in Singapore in 2024 (up 70.6%)
Singapore Police Force Annual Brief 2024
51,501
Scam cases reported in Singapore in 2024 (up 10.6%)
Singapore Police Force Annual Brief 2024
2,272
Average weekly cyber attacks per organisation in Singapore in 2025
Check Point 2026 Cyber Security Report
159
Ransomware cases reported in Singapore in 2024 (+21% YoY)
CSA Singapore Cyber Landscape 2024/2025
117,300
Infected systems detected in Singapore (67% increase)
CSA Singapore Cyber Landscape 2024/2025
4x since 2021
Suspected APT attacks targeting Singapore have quadrupled
CSA Singapore Cyber Landscape 2024/2025
+49%
Surge in phishing attempts in Singapore in 2024
CSA Singapore Cyber Landscape 2024/2025
12%
Of phishing emails in Singapore contained AI-generated content
CSA Singapore Cyber Landscape 2024/2025
7th globally
Singapore ranked 7th most attacked country globally in Q4 2024
CSA Singapore Cyber Landscape 2024/2025
8 in 10
Singapore organisations experienced a cyber incident in the past year
CSA Singapore Cybersecurity Health Report
70%
Average adoption rate of essential cybersecurity measures in Singapore
CSA Singapore Cybersecurity Health Report
+21%
Increase in ransomware attacks reported in Singapore in 2024
CSA Singapore Cyber Landscape 2024/2025
31%
Of ransomware attacks in Singapore targeted manufacturing in 2024
CSA Singapore Cyber Landscape 2024/2025
63%
Of phishing attempts in Singapore spoofed financial services
CSA Singapore Cyber Landscape 2024/2025
3,026
Average weekly attacks per organisation in APAC (ranked second globally)
Check Point 2026 Cyber Security Report
34%
APAC accounted for largest share of all incidents investigated globally
IBM X-Force Threat Intelligence Index 2025
USD 18-37B
Estimated annual losses from scams targeting East and Southeast Asia
UNODC Southeast Asia Fraud Report 2024
+14%
ASEAN breach costs rose while all other APAC sub-regions declined
IBM Cost of a Data Breach Report 2025
2x
Cyberattacks in Southeast Asia doubled year-on-year in 2024
Interpol ASEAN Cyberthreat Assessment 2024
+38%
Rise in cyberattacks across APAC in Q1 2025
Check Point Q1 2025 Cyber Attack Report
67%
Of all cyberattacks on ASEAN occurred in 2024
PT Security ASEAN Cybersecurity Threatscape 2025
32%
Exploits as most common initial vector (6th consecutive year)
Mandiant M-Trends 2026
42%
Of vulnerabilities exploited before public disclosure in 2025
CrowdStrike Global Threat Report 2026
31%
Of breaches now start with software vulnerabilities (overtaking stolen passwords)
Verizon DBIR 2026
+266%
Increase in cloud-conscious intrusions by state-nexus threat actors
CrowdStrike Global Threat Report 2026
40%
Of China-nexus adversary exploits targeted edge network devices
CrowdStrike Global Threat Report 2026
26
OT threat groups actively tracked (up from 23)
Dragos OT Cybersecurity Year in Review 2026
88%
Of OT environments struggle with detection and response
Dragos OT Cybersecurity Year in Review 2026
56%
Cannot see below the IT/OT boundary
Dragos OT Cybersecurity Year in Review 2026
4%
Of OT/ICS vulnerabilities are actively exploited in the wild
Dragos OT Cybersecurity Year in Review 2026
50%
Of OT organisations suffered a breach in their industrial environment
SANS State of OT Security 2025
20M+
OT-related services now exposed on the public internet globally
Palo Alto Networks Active Defense Report 2026
74%
Of family businesses faced at least one cyberattack in the past two years
Deloitte Family Business Cybersecurity Report 2026
57%
Have gaps in their cyber strategy or no strategy at all
Deloitte Family Business Cybersecurity Report 2026
83%
Of family offices concerned about deepfake and impersonation campaigns
Omega Systems Family Office Survey 2025
4,000+
Family offices in Singapore managing trillions in assets
MAS Family Office Data 2024
85%
Of organisations experienced a deepfake-related incident
Cyble Executive Threat Monitoring Report 2025
USD 3.07B
Singapore cybersecurity market size in 2026
Mordor Intelligence Singapore Cybersecurity Market 2026
USD 12B+
Projected ASEAN cybersecurity market by 2030
SPEEDA Southeast Asia Cybersecurity Report 2025
Only 29%
Of global organisations following OWASP Top 10 for LLM Applications
Moody's 2025 Cyber Survey
22 seconds
Median time for initial access broker hand-off to secondary threat group
Mandiant M-Trends 2026
27 seconds
Fastest recorded eCrime breakout time from initial access
CrowdStrike Global Threat Report 2026
29 minutes
Average eCrime breakout time from initial access to lateral movement
CrowdStrike Global Threat Report 2026
14 days
Global median dwell time (up from 11 days in 2024)
Mandiant M-Trends 2026
-7 days
Mean time to exploit: attackers exploiting vulnerabilities before patches are released
Mandiant M-Trends 2026
USD 4.44M
Global average cost of a data breach in 2025
IBM Cost of a Data Breach Report 2025
USD 3.67M
ASEAN average breach cost (up 14% while global declined)
IBM Cost of a Data Breach Report 2025
USD 1.9M
Cost savings from extensive use of AI in security operations
IBM Cost of a Data Breach Report 2025
48%
Of all breaches now involve ransomware (up from 44%)
Verizon DBIR 2026
30%
Of ransomware operations used prior compromise as initial vector (doubled from 15%)
Mandiant M-Trends 2026
+87%
Surge in ransomware activity targeting industrial organisations year-over-year
Dragos OT Cybersecurity Year in Review 2026
3,300
Industrial organisations impacted by ransomware in 2025
Dragos OT Cybersecurity Year in Review 2026
119
Ransomware groups targeting industrial entities (up from 80)
Dragos OT Cybersecurity Year in Review 2026
64%
Of victim organisations refused to pay ransoms (up from 50%)
Verizon DBIR 2025
USD 5.08M
Average cost of disruption and recovery from a ransomware incident
IBM Cost of a Data Breach Report 2025
+126%
Increase in ransomware attacks in Q1 2025 compared to Q1 2024
Check Point Q1 2025 Cyber Attack Report
+89%
Increase in AI-enabled adversary operations year-over-year
CrowdStrike Global Threat Report 2026
82%
Of detections in 2025 were malware-free (identity and social engineering)
CrowdStrike Global Threat Report 2026
+550%
Increase in ChatGPT mentions in criminal forums versus any other AI model
CrowdStrike Global Threat Report 2026
11%
Voice phishing (vishing) surged to second most common initial access vector
Mandiant M-Trends 2026
+600%
Rise in deepfake-related content targeting Southeast Asian criminal operations
UNODC Southeast Asia Fraud Report 2024
15
Different attack techniques now bolstered by generative AI
Verizon DBIR 2026
97%
Of organisations with AI incidents lacked proper AI access controls
IBM Cost of a Data Breach Report 2025
63%
Of organisations lacking any AI governance policies
IBM Cost of a Data Breach Report 2025
SGD 1.1B
Total scam and cybercrime losses in Singapore in 2024 (up 70.6%)
Singapore Police Force Annual Brief 2024
51,501
Scam cases reported in Singapore in 2024 (up 10.6%)
Singapore Police Force Annual Brief 2024
2,272
Average weekly cyber attacks per organisation in Singapore in 2025
Check Point 2026 Cyber Security Report
159
Ransomware cases reported in Singapore in 2024 (+21% YoY)
CSA Singapore Cyber Landscape 2024/2025
117,300
Infected systems detected in Singapore (67% increase)
CSA Singapore Cyber Landscape 2024/2025
4x since 2021
Suspected APT attacks targeting Singapore have quadrupled
CSA Singapore Cyber Landscape 2024/2025
+49%
Surge in phishing attempts in Singapore in 2024
CSA Singapore Cyber Landscape 2024/2025
12%
Of phishing emails in Singapore contained AI-generated content
CSA Singapore Cyber Landscape 2024/2025
7th globally
Singapore ranked 7th most attacked country globally in Q4 2024
CSA Singapore Cyber Landscape 2024/2025
8 in 10
Singapore organisations experienced a cyber incident in the past year
CSA Singapore Cybersecurity Health Report
70%
Average adoption rate of essential cybersecurity measures in Singapore
CSA Singapore Cybersecurity Health Report
+21%
Increase in ransomware attacks reported in Singapore in 2024
CSA Singapore Cyber Landscape 2024/2025
31%
Of ransomware attacks in Singapore targeted manufacturing in 2024
CSA Singapore Cyber Landscape 2024/2025
63%
Of phishing attempts in Singapore spoofed financial services
CSA Singapore Cyber Landscape 2024/2025
3,026
Average weekly attacks per organisation in APAC (ranked second globally)
Check Point 2026 Cyber Security Report
34%
APAC accounted for largest share of all incidents investigated globally
IBM X-Force Threat Intelligence Index 2025
USD 18-37B
Estimated annual losses from scams targeting East and Southeast Asia
UNODC Southeast Asia Fraud Report 2024
+14%
ASEAN breach costs rose while all other APAC sub-regions declined
IBM Cost of a Data Breach Report 2025
2x
Cyberattacks in Southeast Asia doubled year-on-year in 2024
Interpol ASEAN Cyberthreat Assessment 2024
+38%
Rise in cyberattacks across APAC in Q1 2025
Check Point Q1 2025 Cyber Attack Report
67%
Of all cyberattacks on ASEAN occurred in 2024
PT Security ASEAN Cybersecurity Threatscape 2025
32%
Exploits as most common initial vector (6th consecutive year)
Mandiant M-Trends 2026
42%
Of vulnerabilities exploited before public disclosure in 2025
CrowdStrike Global Threat Report 2026
31%
Of breaches now start with software vulnerabilities (overtaking stolen passwords)
Verizon DBIR 2026
+266%
Increase in cloud-conscious intrusions by state-nexus threat actors
CrowdStrike Global Threat Report 2026
40%
Of China-nexus adversary exploits targeted edge network devices
CrowdStrike Global Threat Report 2026
26
OT threat groups actively tracked (up from 23)
Dragos OT Cybersecurity Year in Review 2026
88%
Of OT environments struggle with detection and response
Dragos OT Cybersecurity Year in Review 2026
56%
Cannot see below the IT/OT boundary
Dragos OT Cybersecurity Year in Review 2026
4%
Of OT/ICS vulnerabilities are actively exploited in the wild
Dragos OT Cybersecurity Year in Review 2026
50%
Of OT organisations suffered a breach in their industrial environment
SANS State of OT Security 2025
20M+
OT-related services now exposed on the public internet globally
Palo Alto Networks Active Defense Report 2026
74%
Of family businesses faced at least one cyberattack in the past two years
Deloitte Family Business Cybersecurity Report 2026
57%
Have gaps in their cyber strategy or no strategy at all
Deloitte Family Business Cybersecurity Report 2026
83%
Of family offices concerned about deepfake and impersonation campaigns
Omega Systems Family Office Survey 2025
4,000+
Family offices in Singapore managing trillions in assets
MAS Family Office Data 2024
85%
Of organisations experienced a deepfake-related incident
Cyble Executive Threat Monitoring Report 2025
USD 3.07B
Singapore cybersecurity market size in 2026
Mordor Intelligence Singapore Cybersecurity Market 2026
USD 12B+
Projected ASEAN cybersecurity market by 2030
SPEEDA Southeast Asia Cybersecurity Report 2025
Only 29%
Of global organisations following OWASP Top 10 for LLM Applications
Moody's 2025 Cyber Survey

Three Principles. Real Impact.

Decision Velocity

Speed matters in security. You need people who can assess threats, define options and move to execution faster than the threat landscape changes. 90-day cycles, not multi-year programmes.

Operational Resilience

You need practitioners who have actually sat in the chair. No theory. Our advice is built on real-world decisions made under pressure, not vendor marketing or academic frameworks.

Technology That Works

AI is reshaping security. We're native to that world, not adapting legacy frameworks. Our platforms and governance approach are built for how threats and organisations actually operate today.

Intelligence-Led Advisory Across Six Core Areas

We deliver end-to-end security advisory. Select a service to dive deeper.

Fractional CISO

Strategic security leadership on your terms. From quarterly board advisory through to full CIO-level executive engagement. Direct engagement with senior practitioners.

Learn more →

Threat Intelligence

Intelligence-led threat assessment, adversary tracking and dark web monitoring. Proactive threat hunting and rapid incident response leadership.

Learn more →

AI Security & Governance

AI platform security, governance frameworks and AI-enabled threat response. Building capability for AI-native security operations.

Learn more →

Incident Response

Rapid response coordination across technical, legal and board-level requirements. Ransomware negotiation, forensics and crisis management.

Learn more →

Fusion Centre & Operations

Designing and operating fusion intelligence centres. Real-time threat monitoring and converged cyber, physical and operational intelligence.

Learn more →

Policy & National Advisory

Regulatory compliance, national security frameworks and government advisory. Sector-specific policy development and cyber diplomacy.

Learn more →

How We Work. What Makes Us Different.

The person you brief is the person who does the work. Every engagement is scoped to your situation, not pulled from a template.

90-Day Cycles

Not multi-year transformation programmes that are obsolete before they land. We work in short, focused cycles with clear decision gates and measurable outcomes at every stage.

Direct Access

You work directly with senior practitioners who have held the roles you are hiring for. No account managers, no junior analysts, no handoffs.

Vendor Independent

No product affiliations, no referral fees, no hidden agendas. Our advice is based on what you actually need, not what we need to sell.

Digital Resilience

Security that enables transformation, not blocks it. We build digital resilience into your operating model so you can adopt new technology, enter new markets and scale with confidence.

Operational Resilience

When disruption hits, your ability to maintain critical operations defines your survival. We design, test and embed resilience frameworks that work under real pressure, not just in tabletop exercises.

Built by Operators, Not Observers

Every associate in our model has operated the function they advise on. We do not deploy consultants who have only observed from the outside. If someone advises you on incident response, they have run incidents. If they advise on fusion centres, they have built them.

Start a Conversation

Built by People Who Have Been in the Driving Seat

Dan Tinsley

Dan Tinsley

Founder | Former Global CISO | 20+ Years Across Intelligence, Engineering & Security Leadership

20+ years of hands-on cybersecurity leadership across defence, intelligence, financial services, manufacturing and government. Built and led global security teams, defended some of the world's most recognised brands.

Dan has spent his career on the end-user side, actually building the capabilities, teams and operating models that organisations need to defend themselves. Not advising from slide decks. Building it, running it and sitting in the chair when things go wrong. You are not getting a junior consultant. You are getting someone who has been in the driving seat.

Read Full Bio

Thinking & Intelligence

Threat intelligence briefings, strategic analysis and practical guidance for security leaders.

DTN Advisory on Substack

Industry updates, intelligence briefings, regulatory analysis and thought leadership on the issues that matter to CXOs and boards.

Read on Substack →

Let's Talk

Every organisation faces different threats and operates in different contexts. Let's discuss how we can help.

Start a Conversation

We typically begin with a 30-minute call to understand your situation, the decisions you need to make and where speed is critical. From there, we scope a path forward that fits your timeline and operating environment.

Reach out directly if you prefer:

Email connect@dtnadvisory.com