Risk & Compliance
Gap assessment against the framework you are held to, and the evidence pack to prove it.
What this involves
An assessment mapped to the standard that applies to you, a remediation plan with owners and dates, and documentation your auditors will accept. We hold ISO 9001:2015 and ISO/IEC 27001:2022 ourselves, so we know what the evidence has to look like.
Included in the engagement
More in Security
Cybersecurity →Identity & Access
Single sign-on, privileged access and least privilege that survives delivery teams.
Cloud Security Posture
Continuous configuration review across all three hyperscalers, enforced in code.
AI & Agent Security
Threat modelling for model-backed systems, including the agents with credentials.
Data Protection & Privacy
Classification, encryption, masking and residency, including what may reach a model.
Tell us what the outcome has to be.
An hour with the engineers who would do the work, and a written view on feasibility and rough cost.
Get in touch