Call for Nominations Opens for the 2027
UK Outstanding Security Performance Awards (OSPAs)
2027 UK Cyber OSPAs: Nominations Now Open
Nominations are now open for the 2027 UK Cyber Outstanding Security Performance Awards (Cyber OSPAs), inviting the cyber security community to recognise the individuals, teams, organisations, products and initiatives making an outstanding contribution to the sector.
Entries remain open until 19 January 2027 and, importantly, entry is free. The awards provide an opportunity not simply for organisations to promote successful work, but for colleagues, partners and the wider profession to recognise people and initiatives whose contribution deserves greater visibility.
Organised in collaboration with the National Cyber Security Show and International Cyber Expo, the Cyber OSPAs have been developed as an independent and inclusive awards programme. They recognise achievement from across the cyber security ecosystem, including buyers and suppliers, established organisations and emerging professionals, as well as those who have made a sustained contribution to the profession over many years.
Recognising Outstanding Performance Across Cyber Security
Cyber security has developed into a broad and increasingly interconnected profession. Technical expertise remains fundamental, but effective cyber security also depends upon leadership, teamwork, consultancy, education, awareness, innovation and the ability to translate technical capability into meaningful organisational resilience.
The Cyber OSPAs reflect that breadth. Rather than concentrating recognition solely on technology or commercial success, the awards encompass people, teams, products and initiatives. This provides a platform for recognising different forms of outstanding performance and, importantly, the outcomes they achieve.
The 2027 UK Cyber OSPAs comprise nine categories:
- Outstanding Chief Information Security Officer — recognising CISOs who demonstrate exceptional leadership and make a significant contribution to the cyber security of their organisations.
- Outstanding Cyber Security Professional — recognising individuals whose professional performance and contribution demonstrate excellence within the sector.
- Outstanding Cyber Security Team — celebrating teams whose collective expertise, collaboration and delivery produce outstanding cyber security outcomes.
- Outstanding Cyber Security Consultant — recognising consultants whose expertise and work deliver demonstrable value to clients and the wider profession.
- Outstanding Cyber Security Training/Awareness Initiative — sponsored by The Cyber Escape Room Co., recognising initiatives that improve cyber security understanding, capability and behaviour.
- Outstanding Young Cyber Security Professional — highlighting emerging professionals who are already demonstrating exceptional ability, achievement and future potential.
- Outstanding New Cyber Security Product — recognising innovative products capable of making a meaningful contribution to addressing contemporary cyber security requirements.
- Outstanding Overseas Cyber Security Initiative — providing recognition for initiatives with an impact outside the UK and helping bring international cyber security achievement into the awards programme.
- Lifetime Achievement — recognising an individual whose sustained contribution has had a significant and lasting influence upon cyber security and the profession.
The range of categories is important because excellence within cyber security cannot be measured through a single lens. An effective CISO may transform organisational risk management; a security team may significantly improve detection and response; a training initiative may change behaviour across an entire workforce; while a new product may provide practitioners with capabilities that previously did not exist.
Why Independent Recognition Matters
Awards inevitably depend upon the credibility of the process behind them. The Cyber OSPAs distinguish themselves through an explicit commitment to being independent, credible, transparent and respectable, supported by policies governing entry, judging and sponsorship.
Judges are cyber security experts nominated through partner organisations rather than simply selected by the organisers. Entries are independently assessed against published category criteria, with judges required to follow a defined Code of Ethics.
That approach matters. Recognition carries considerably greater value when entrants, finalists and winners can demonstrate that their achievements have been assessed through a structured and independent process rather than through popularity, commercial influence or organisational profile.
For nominees, this also means that preparing an effective submission requires more than simply describing a successful project or career. Entrants should examine the published criteria for their chosen category carefully and provide evidence that directly demonstrates outstanding performance.
The organisers make clear that judging is based upon the information contained within the submission. A strong nomination should therefore explain not only what was done, but the challenge being addressed, the contribution of the nominee, the results achieved and why those results represent performance beyond what would ordinarily be expected.
Putting People and Achievement in the Spotlight
Much of the most important work undertaken in cyber security receives relatively little public recognition. Successful prevention leaves no headline-generating incident. Effective security architecture may operate quietly for years. Incident responders frequently undertake demanding work away from public view, while those responsible for awareness, governance and organisational change can have an enormous influence without producing an immediately visible technical output.
Professional awards provide one mechanism for bringing those achievements into view.
This is particularly relevant as cyber security becomes increasingly embedded within wider organisational resilience. Security professionals are now expected to work across technical, operational and executive boundaries, communicate risk effectively and build productive relationships with colleagues, suppliers, customers, regulators and other stakeholders.
Recognising examples of outstanding performance helps demonstrate what effective practice looks like and provides examples from which others across the profession can learn.
The inclusion of an Outstanding Young Cyber Security Professional category is particularly valuable in this respect. Developing the next generation of practitioners depends not only upon recruitment and technical education, but upon creating visible pathways through which achievement, initiative and leadership can be recognised early in a career.
At the other end of that spectrum, the Lifetime Achievement category provides an opportunity to recognise those whose influence has developed over many years and whose contribution has helped shape the profession itself.
From Innovation to International Impact
The 2027 categories also recognise that cyber security is both a rapidly developing technology sector and an international challenge.
The Outstanding New Cyber Security Product category provides an opportunity to recognise technological innovation, but innovation alone is not sufficient. What ultimately matters is whether new technology addresses genuine security requirements and delivers demonstrable benefit to those who use it.
Similarly, the Outstanding Overseas Cyber Security Initiative acknowledges that cyber threats, digital infrastructure and professional practice do not stop at national borders. The category enables initiatives delivering impact outside the UK to receive recognition within the UK Cyber OSPAs programme.
For organisations operating internationally, universities conducting collaborative research, security companies supporting overseas clients, and practitioners involved in multinational initiatives, this creates a potentially valuable route through which impactful work can be recognised.
Celebrating the Winners in Birmingham
The winners of the 2027 UK Cyber OSPAs will be announced at a gala dinner on 28 April 2027 at the Birmingham Metropole, co-located with The Safety and Security Series.
The timing places the awards alongside a major gathering of the security community. The wider Safety and Security Series brings together security professionals, technology providers, practitioners and decision-makers across a range of related disciplines.
That wider environment provides an appropriate setting for recognising cyber security excellence. Cyber security increasingly forms part of a broader resilience landscape encompassing physical security, safety, infrastructure, technology and organisational risk. Bringing professionals from these disciplines together encourages the exchange of experience and reinforces the increasingly interconnected nature of contemporary security.
For finalists, the gala dinner provides an opportunity to celebrate achievement among peers. For the wider profession, it provides a showcase of the people, teams and initiatives demonstrating what outstanding cyber security performance can look like in practice.
Who Should You Nominate?
The call for nominations should prompt organisations and professionals to consider achievements that might otherwise go unrecognised.
Is there a CISO who has transformed the way an organisation approaches cyber risk? Has a security team delivered exceptional results during a difficult incident or substantially improved an organisation's resilience? Has a consultant provided expertise that changed the outcome of a complex security challenge?
Perhaps an awareness programme has produced measurable behavioural change, a young professional has demonstrated ability well beyond their experience, or a new security product has solved a genuine operational problem.
The nomination does not necessarily have to originate with the person or organisation being recognised. One of the benefits of awards such as the Cyber OSPAs is the opportunity for colleagues and others across the profession to identify outstanding work and ensure that it receives appropriate recognition.
What matters is being able to demonstrate why the performance is exceptional.
Nominations Close 19 January 2027
With nominations now open, prospective entrants have several months in which to identify the appropriate category, examine the judging criteria and develop a strong evidence-based submission.
Leaving that process until immediately before the deadline risks overlooking precisely the evidence that makes an entry compelling. Organisations considering nominations should therefore begin identifying potential candidates and gathering supporting information early.
The Cyber OSPAs offer the UK cyber security community an opportunity to recognise excellence across the breadth of the profession: from established leaders and high-performing teams to innovative products, international initiatives and the emerging professionals who will help shape its future.
Nominations close on 19 January 2027 and entry is free.


