Cybersecurity and Resilience
Risk assessment, security frameworks, business continuity and incident response.
Request an initial assessmentCybersecurity is not only technology. It is how an organization understands its risks, puts suitable controls in place and keeps working when something goes wrong.
We provide comprehensive security and organizational resilience strategies, including risk assessment, safety culture enhancement and crisis management. We implement standards such as ISO 2700x, NIST, CSA STAR, FedRAMP and business continuity frameworks.
What it covers
- Cyber risk and security maturity assessment
- Security strategy and program based on ISO 2700x and NIST
- Security policies, standards and procedures
- Business continuity and disaster recovery planning
- Incident response planning and crisis management
- Security awareness and culture for staff
- Alignment of security measures with the GDPR and Law 124
Frequently asked questions
Cybersecurity and Resilience
Where should we start with cybersecurity?
With a risk assessment. It shows which systems and data matter most, where you are most exposed, and which measures give the most protection for the effort they take.
Do we need ISO 27001 to be secure?
Not necessarily. ISO 27001 is a recognized way to organize security and to prove it to others, but the right measures can be put in place without certification. We advise based on what your customers and regulators require.
How is this different from a penetration test?
A penetration test finds technical weaknesses at a point in time. A security program also covers people, processes, continuity and incident response. Testing is usually one part of the program.
Services
Other services
AI Compliance and Security
EU AI Act, ISO/IEC 42001, risk assessment and governance frameworks for AI systems.
Learn moreGovernance, Risk and Compliance (GRC)
Integrated GRC frameworks, risk assessments, compliance audits and GRC platforms.
Learn moreCloud Security Architecture
Secure-by-design AWS, Azure and GCP environments, with monitoring and DevSecOps.
Learn moreSOX and J-SOX Compliance
Internal control assessments, risk management and audits.
Learn moreESG and Sustainability Reporting
ESG risk assessments, GRI and SASB reporting, and climate strategy.
Learn moreIT Strategy and Service Management
IT strategy, COBIT 2019, ITIL, ISO 20000 and technology adoption advisory.
Learn moreLet's talk about your next engagement.
Tell us about your engagement — we typically respond within one business day.
