Cyber Security Advisory
Protecting your company, your data and your reputation.
Cyber security advisory that makes risks tangible at leadership level and translates them into effective, demonstrable protective measures.
Services at a glance
- Cyber Security Assessments
- Security Strategy & Roadmap
- CISO as a Service
- Governance, Risk & Compliance
- Security Awareness Programmes
- Incident Response Preparation
- Vendor & Third-Party Risk Management
- ISO 27001 and NIS-2 Advisory
What is Cyber Security Advisory?
At its core, it is about treating cyber risks as what they are: business risks. Rather than individual technical tools, the focus is on understanding risk, clear responsibilities and demonstrable measures. We translate complex security topics into decisions that management and the board can actually make.
Who is the advisory suitable for?
It is aimed at Swiss companies that want to steer security actively, from SMEs to corporations. It becomes especially relevant once sensitive data, regulatory obligations or critical services are involved, where an outage costs money or has legal consequences straight away.
How do we work?
In four steps that build on one another, from the initial assessment to ongoing review.
- Assessment. We determine the maturity level, identify the critical assets and uncover the greatest risks.
- Strategy & roadmap. We prioritise measures by risk and impact and anchor them in an actionable roadmap.
- Implementation. We support the implementation of measures and the build-up of the necessary governance.
- Review. We measure effectiveness and adapt the measures to the changing threat landscape.
Which standards and regulations do we cover?
We align with the frameworks that matter most to Swiss companies: ISO 27001, the EU NIS-2 directive and governance, risk & compliance. We also explicitly include the risk posed by suppliers and third parties, which is where many incidents begin.
What is CISO as a Service?
Experienced security leadership on a part-time basis, without having to fill a full-time role. We steer the security programme, prioritise measures and report clearly to management and the board. It is especially useful for organisations that want to professionalise security but do not yet have a dedicated CISO role.
How does a collaboration begin?
Usually with a no-obligation intro call and a short initial assessment. From there, the next sensible steps emerge – without committing to a large programme.