Security & compliance services
Engagements scoped to a specific outcome — a certification, a clean penetration test, a governed AI programme — with a firm price before you commit.
Compliance & certification
ISO 27001 consulting & implementation
Design and implement an ISO/IEC 27001 Information Security Management System and prepare for certification audit.
Learn moreSOC 2 readiness & audit support
Get ready for a SOC 2 Type I or Type II examination: scope the Trust Services Criteria, close gaps, and support the audit.
Learn moreAI governance & ISO 42001
Stand up an AI management system aligned to ISO/IEC 42001 and emerging AI regulation, covering risk, transparency and oversight of AI systems.
Learn moreData privacy — DPDPA, GDPR & cross-border
Build a data protection programme that stands up under the EU/UK GDPR, India’s DPDP Act and other regional privacy laws.
Learn moreSecurity testing
Penetration testing & VAPT
Vulnerability assessment and penetration testing for web and mobile apps, APIs, cloud and internal networks, with a report you can share with customers.
Learn moreCloud security assessment & architecture
Review and harden AWS, Azure and Google Cloud environments against a recognised benchmark, and design guardrails that keep them that way.
Learn moreCybersecurity consulting
Broad security advisory for teams that need a security strategy, a roadmap and hands-on help — not just an audit.
Learn moreData loss prevention
Endpoint and network DLP strategy and implementation support.
IAM architecture
Zero-trust identity, SSO and privileged access design.
Mobile application security
Static and dynamic analysis for iOS and Android apps.
Security leadership
Virtual CISO (vCISO)
An experienced security leader on a fractional basis to own strategy, governance, customer assurance and board reporting.
Learn moreGRC consulting & automation
Run governance, risk and compliance as one programme — and automate the evidence collection so audits stop consuming your team.
Learn moreSecurity awareness & training
Phishing simulation and role-based secure-development training.
Incident response readiness
IR planning, tabletop exercises and retained response support.
Not sure which of these you need?
That's what the assessment call is for. We'll map your situation to the right engagement — or tell you if you don't need one yet.
