KONCYBER
Kenrick Bagnall, founder of KONCYBER Inc.

About the founder

Kenrick Bagnall

CEO & Founder, KONCYBER Inc.

Kenrick Bagnall has spent more than 35 years working across technology, business, and law enforcement — and he approaches cybersecurity from both sides of the coin. For over a decade he built and defended infrastructure from the inside, serving as VP of IT for an offshore bank and managing multi-million-dollar budgets to design, build, and secure banking and payment systems. He then pivoted from building the fortress to hunting the people trying to breach it, spending years as a cybercrime investigator with the Toronto Police Service before becoming an instructor for the RCMP at the Canadian Police College. As founder of KONCYBER Inc., he brings both perspectives to bear: helping leaders prepare for cyber incidents, respond under pressure, and understand the evidence and business decisions that shape recovery — including the emerging risks introduced by AI.

Credentials

Background

  • 35+ years of experience across technology, business, and law enforcement
  • Former VP of IT for an offshore bank — over a decade leading financial-services infrastructure and security
  • Former Toronto Police cybercrime investigator
  • Instructor, Federal Cyber Crime Investigators Course — Canadian Police College, Ottawa
  • Contract civilian member, RCMP
  • Board Member, Hackers for Change
  • Member, Advisory Board, Siren.io
  • 150+ cybersecurity conferences as keynote speaker, panelist, or moderator since 2015
  • Instructor at George Brown College, Centennial College, University of Toronto, and Toronto Police College
  • Expert witness in civil cyber-breach cases
  • Featured in Canadian Security Magazine, BankInfoSecurity, and RiskBOSS Magazine

Perspective

Both sides of the cyber coin

“Cybercrime is like water — it flows through the path of least resistance.” Kenrick's work is about making sure you and your organization are never that path: basic, manageable steps that significantly harden your defenses without creating bureaucratic handcuffs that slow you down.

Side A — Infrastructure & Defense

A self-described network infrastructure nerd, Kenrick spent over a decade in financial services, including serving as VP of IT for an offshore bank — managing multi-million-dollar budgets to design, build, and secure the “crown jewels” and payment systems of banking infrastructure. Whether the trend is cloud, AI, or quantum computing, he sees it the same way: it's still about the network — moving data from A to B while staying compliant, secure, and aligned with the bottom line.

Side B — Investigation & Attribution

Kenrick pivoted from building the fortress to hunting the people trying to breach it, spending years as a cybercrime investigator with the Toronto Police Service. Watching how nation-states and sophisticated groups actually operate taught him to “see the Matrix” of digital evidence — connecting the constellation of evidence that moves a case from raw data to defensible attribution. He now teaches these investigative techniques to law enforcement professionals as an instructor for the RCMP at the Canadian Police College.

That dual perspective shapes how Kenrick works with clients directly: a holistic digital-footprint audit applies an investigator's lens to your accounts, financial and crypto assets, and connected devices — uncovering the constellation of evidence that lets criminals target you, and building a clear roadmap so you're never the easy option. Dynamic simulation training prepares you for your worst day by walking through the tools, techniques, and procedures real threat actors use, so you and your team can anticipate, mitigate, and respond with confidence when the stakes are highest.

Cybersecurity is a business and leadership issue, not only an IT issue.

Collection is not progress: data must become defensible evidence.

An IP address is a lead, not a person.

Technical confidence is not the same as legal or evidentiary certainty.

Attribution requires corroboration, discipline, and a defensible chain of reasoning.

Prepared organizations recover faster and with less disruption.

Operating principles

How KONCYBER approaches risk

Prevention

Reduce avoidable exposure through sensible controls, secure design, awareness, and risk-informed priorities.

Preparedness

Ensure leaders, teams, processes, and partners know what to do before disruption occurs.

Detection

Improve the visibility and judgment needed to identify suspicious activity early.

Response

Support disciplined decisions, containment, stakeholder coordination, and evidence preservation.

Recovery

Restore operations deliberately, learn from the event, and strengthen future resilience.

Evidence

Treat logs, devices, records, and intelligence as potential inputs to a defensible case — not as conclusions by themselves.

Work with our team

Every conversation with KONCYBER is confidential.

Schedule a Confidential Consultation