Secure your business

A cyberattack tomorrow.Are you ready?

With AI, attacks are automated and no longer pick their target. We measure where you stand, then, if needed, we get your company ready: risk management, incident response, crisis exercises, trained teams.

Why

Tonight, 11:40 pm.
Monday, who does what?

  1. 11:40 pm

    A bot sweeps the internet and finds one of your machines left unpatched. It did not choose you: you were simply there.

  2. Overnight

    It gets in, settles and moves from one machine to the next, without a sound.

  3. Monday, 8 am

    Screens show a ransom note. Production, invoicing, email: everything has stopped.

  4. Monday, 10 am

    Your client asks what happened. If you are in scope of NIS2, the CCB expects an early warning within 24 hours. And nobody knows who should answer.

A scenario, not a mission. It happens to companies that thought they were too small to be a target.

The question is no longer if. It is when, and whether you will be ready.

What we check

Six functions,
read one by one.

The Cyber Diagnostic follows the CCB CyberFundamentals framework, aligned with ISO/IEC 27001. Six functions, and for each, two questions: is it written down, and is it applied?

  1. 1Govern

    Who decides, and who answers for it

    Security strategy, roles, policies, management involvement (NIS2, Article 20), supplier management.

    How we help We hold the security lead role and the committee, minuted every month.

  2. 2Identify

    What you have to protect

    Inventory of assets, data and systems, risk assessment.

    How we help We keep the risk register and its treatment plan up to date.

  3. 3Protect

    The basic protections

    Access and identities, strong authentication, backups, updates, team awareness.

    How we help We steer the action plan and train your teams.

  4. 4Detect

    Seeing it happen

    Logs kept, alerts defined, a named person to look at them.

    How we help We do not monitor for you: we check that monitoring exists and has an owner.

  5. 5Respond

    Knowing what to do

    Response plan, crisis roles, NIS2 notification (early warning within 24 hours, notification within 72 hours).

    How we help We prepare the procedure, exercise it on the table and support you when the day comes.

  6. 6Recover

    Getting back fast

    Recovery plan, tested backups, lessons learned after every incident.

    How we help We have recovery tested and draw the lessons with you.

Each function comes out with its level, the gap to target and the order of work.

What we do

First, see.
Then, be ready.

Phase 1 · The Cyber Diagnostic

Know where you stand

We measure your maturity against the CyberFundamentals framework, whether NIS2 covers you or not, find your blind spots and hand you the roadmap.

Phase 2, if needed · CISO as a service

Ready on the day it happens

If you want, we hold the role of your security lead: risk management, incident response and management, tabletop crisis exercises, training for your teams, management briefed every month.

The full process and what you receive

How

See, decide, get ready.

  1. 1

    See

    The Diagnostic: your maturity, your risks, your blind spots.

  2. 2

    Decide

    The roadmap, prioritised with your management.

  3. 3

    Get ready

    If needed, CISO as a service: procedures, exercises, training, every month.

Already have a recent audit? We start from it.

Contact

Let's talk about your security.
And let's start by seeing clearly.

What you risk, and where to start. A cyber, AI or transformation diagnostic, or ongoing support as a service: describe your situation and we come back with the step that fits.

Let's talk →

We do use AI, but we stay human-focused: a person reads your message and replies within 48 hours. The first thirty-minute call is free of charge.