TCS’s Gavin McPaul discusses how he got his start in cyber and the benefits of working out of picturesque Donegal.
“From an early age, I’ve always been fascinated by technology: phones, laptops, any new gadgets really,” says Gavin McPaul, the head of enterprise vulnerability management at Tata Consultancy Services (TCS).
His family soon noticed his skill in the area of IT and at home he became the go-to person for all things tech related. “And I still am, unfortunately,” he jokes. “Towards the end of secondary school, I knew I wanted to pursue a career in IT.”
But like many young people at that stage of their lives, he was unsure of the educational direction he wanted to take, especially as his research showed him just how vast the IT sector was, indicated by the sheer volume of courses available at his chosen college, ATU Letterkenny.
He explains: “One course immediately jumped out at me because of its title, Computing with Computer Security and Digital Forensics. It sounded incredibly interesting, and I’m certainly glad I made that choice. It was towards the end of my degree that I realised I wanted to specialise in penetration testing.”
How have you progressed in your career as quickly as you have?
I believe my quick progression comes down to curiosity. I’ve always been driven to learn new things, take on more responsibility, question the status quo to find better ways of working, and I’m always interested in helping other people.
When I first started at TCS, we had a large team, but much of the work was individual projects. I made an effort to speak to everyone, understanding how they approached their tasks. I quickly realised everyone had their own methods. This led me to create a central collaboration space where ideas could be shared, benefiting the entire team and new joiners alike.
My curiosity and fresh perspective straight out of college meant that within my first five months, I identified an opportunity for improvement with one of our applications. This was a significant career boost, demonstrating my ability and knowledge. It got me noticed by senior leadership and opened doors to new projects.
What aspects of the TCS culture do you believe make it an attractive place to begin a career?
What I truly appreciate about TCS is the incredible team environment. An office space with genuine collaboration and where you can learn from team members is invaluable, especially early in your career. Nobody at TCS wants to see you fail. There’s a robust support system ready to guide you in the right direction.
As a large consultancy, our core goal at TCS is to support clients through their technology transformation journeys. Working with numerous clients across diverse sectors means there are always opportunities to explore and specialise in areas of interest. Our clients are often undergoing significant transformations, actively seeking fresh ideas and innovative solutions, and they truly value the insights and solutions we bring.
What does a typical day look like for you?
The most exciting aspect of cybersecurity and penetration testing is that no two days are the same; you truly never know what challenges might arise. I’m fortunate to work with one of our financial services clients in the US, collaborating with an excellent team spread across the US, Ireland and India. As a lead within their offensive security team, I’m currently helping them transform their entire penetration testing programme.
As the technical lead for our teams in Ireland and India, I provide advice, guidance and support on all aspects of penetration testing. Our core goal for the client is to secure their applications and data from external threats.
Beyond that, my work is diverse and includes meeting potential new clients, building out new capabilities, developing internal training programmes, interviewing and onboarding new resources, and helping manage our team of 10 people, which we’re looking to expand by another six.
What do you enjoy most about living and working in the north-west?
I love the beauty and quiet of living in Donegal. We’re fortunate to have several large organisations here, which is fantastic for our county. These provide great opportunities for people living in the area, especially with a local university like ATU Letterkenny feeding directly into places like TCS.
I feel incredibly fortunate to have found a cybersecurity career in Donegal, working here since college and still being given opportunities to further my career with TCS, even after six years.
What advice would you give someone looking to start a career in cybersecurity or penetration testing?
We all leave college with the same degree after four years, but what truly sets you apart from everyone else? Most students haven’t considered this question, so they often don’t have an immediate answer. When I interview graduates, I’m really looking for passion and genuine interest in cybersecurity. Often, this shines through in what they’ve done outside of their degree. Here are a few things I always recommend to students.
Sign up for any IT or cybersecurity societies at your college. If there isn’t one, take the initiative to start it. Attend conferences like BSides, IRISSCON, or OWASP local chapters. Get involved in ‘capture the flag’ competitions, like Zero Days CTF or the many free online options. These are fantastic for hands-on experience and for networking with other students and industry professionals. You can even prepare for them through your college society.
Create a LinkedIn account. It’s an excellent way to connect with like-minded people, and recruiters are always on the lookout there. During summer, reach out to companies about internship programmes. They offer invaluable insight and hands-on industry experience.
If you can, pursue certifications. In Ireland, anyone can access industry-recognised certs like CompTIA Security+ or Pentest+ for free, funded by the Irish government. Research areas you’re interested in, read blogs, follow specialists, or even start a personal project.
If application penetration testing interests you, get to know OWASP – it will become your best friend in this field.
TCS are currently recruiting for application penetration testing roles. Click here to apply.
Don’t miss out on the knowledge you need to succeed. Sign up for the Daily Brief, Silicon Republic’s digest of need-to-know sci-tech news.







