Standards certification and empowerment
Cross-border business runs on standing in a recognised standard. We take an organisation to certification and keep it in good standing afterwards.
Certification
Distance, language and currency no longer limit who you can transact with. Standing in a recognised standard does. Every party must comply and remain in good standing under the provisions of standards for information security, payment card security, customer service, and environment, health and safety.
We are experienced, qualified and internationally affiliated to design, develop, deliver and carry an organisation through to full certification — and to provide the post certification work that keeps it in good standing with the certifying body.
Information security and privacy awareness
People remain the weakest link in every corporate aspiration, whether that is information security compliance, cultural development, service delivery or complaints management.
Organisations spend heavily to reach a quality milestone and then find the benefit missing, or the programme not mature at the point it was projected to be. That is usually traced to the workforce not fully understanding the concept, or not cooperating with the principles behind it. Information security awareness is the standing example.
We deliver training, instructor-led or virtual, that gives the workforce ownership of the process before and after implementation. Having spent money on technology, an organisation is still left with staff who will either expose or protect the information in their hands.
ISO standards security vitamins
A training solution for organisations complying with ISO 27001 to ISO 27005, which keeps staff awareness current with what the certifying body expects. It advises on what users need to know now, rather than what they needed to know at the last audit.
Security awareness is a mandatory requirement of ISO 27001. This meets it without the conventional class-based sessions, which have not proved effective. Delivery is from the cloud or on site; the cloud version is cheaper and easier to manage. Content can be customised, or taken as-is from our library.
Work that usually runs alongside this
IT infrastructure health assessment
A structured review of the ICT estate — hardware, software, configuration, access and security risk — ending in a remedial plan your team can work through and your auditors can follow.
Read morePenetration and vulnerability testing
Every live network carries weaknesses. Testing finds them, proves what they expose, and produces an improvement path that can be measured rather than asserted.
Read moreInsider threat detection
The people already inside hold legitimate access, and the traditional tools log almost none of what they do with it. Behavioural analytics close that gap.
Read moreGet to certification and stay there
Request a readiness assessment against the standard your regulator holds you to.