01 Management System Assurance

Independent audit of QMS, ITSM, BCMS and ISMS against agreed criteria. Implementation and remediation support is available as a separate advisory engagement, with independence safeguards.

02 AI Systems Assurance

Independent assessment of AI/ML systems: data pipelines, model lifecycle, evaluation evidence and human oversight. Hardening and remediation support is available as a separate advisory engagement.

03 Penetration Testing & Red Teaming

Authorised testing of applications and networks under rules of engagement, with evidence and prioritised remediation recommendations.

06 Security Architecture & Hardening

Security architecture, segmentation, hardening and monitoring baselines for cloud and on-premises platforms. Independent assurance of the resulting controls is scoped separately when required.

07 Cloud Platform Services

Landing zones and platform controls for regulated cloud workloads — identity, network, logging and shared services. Independent assurance of the platform is scoped separately when required.

08 Secure Software & Platform Engineering

Secure design and delivery of software and platforms: threat modelling, DevSecOps practices and lifecycle verification — with an evidence trail for later independent review.

10 Security Awareness & Training

Role-based security awareness and competence training for management and technical teams in regulated environments.