Bank of America to Acquire Cybersecurity Firm MDSec

Bank of America Acquires UK-Based Cybersecurity Firm MDSec in Bid to Expand Expertise

In a significant move to bolster its cybersecurity capabilities, Bank of America has announced plans to acquire UK-based information security consultancy MDSec Consulting Limited. The acquisition, which is expected to close in the fourth quarter of 2026 pending regulatory approvals, marks a strategic expansion of the bank’s presence in northern England and underscores the importance of investing in robust cybersecurity defenses.

MDSec provides technical information security consulting services and employs approximately 65 cybersecurity professionals based in Macclesfield, England. With this acquisition, Bank of America will gain access to a team with exceptional expertise in security capabilities development and innovation. “We have long admired the exceptional ability of the MDSec team and are delighted that Bank of America and its clients will now further benefit from their work,” said Kris Fador, chief information security officer at Bank of America.

For Dominic Chell, co-founder of MDSec, joining forces with one of the world’s leading financial institutions represents an opportunity to take his company’s ambition to the next level. “Joining one of the world’s leading financial institutions, one that reflects our culture of innovation and technical excellence, gives us an incredible opportunity to advance technical innovation,” Chell said.

The acquisition highlights the growing recognition within the financial sector of the critical importance of robust cybersecurity defenses. As financial institutions increasingly rely on digital channels for transactions and customer interactions, they are also becoming more attractive targets for cyber threats. By expanding its in-house cybersecurity expertise through this acquisition, Bank of America is positioning itself to better protect against emerging threats and stay ahead of the rapidly evolving threat landscape.

While the exact terms of the acquisition have not been disclosed, industry observers note that such deals often reflect a strategic effort by companies to bolster their defenses against increasingly sophisticated cyber threats. As the global cybersecurity landscape continues to evolve, it remains essential for organizations to prioritize investments in robust security measures and expert personnel to mitigate potential risks.

For individuals and businesses looking to protect themselves from growing cyber threats, this acquisition serves as a reminder of the importance of prioritizing cybersecurity best practices. This includes staying up-to-date with the latest software patches, using strong passwords and multi-factor authentication, and maintaining vigilant awareness of potential phishing and other social engineering tactics. By taking proactive steps to secure their digital presence, individuals can minimize their exposure to cyber threats and safeguard their sensitive information.


Source: SecurityWeek — 2026-07-30