Array of abstract analytical panels showing unlabelled bars, trend lines, gauges and matrices
05  /  Security consultancy

Security Consultancy

Assessment, planning, procedure and preparedness — delivered as professional advice an organization can actually maintain.

Advice That Survives Contact With the Organization

A security plan that nobody follows is worse than no plan, because it creates the impression of protection while providing none. Our consultancy work is therefore judged on a practical test: can this organization actually run these procedures, with the people and budget it really has, twelve months from now?

Every engagement produces documentation the client owns outright — assessments, procedures, plans and briefing material written in plain language for the people who have to use them.

OutputWritten assessment & documented procedure
Test appliedSustainable with real people and budget
OwnershipAll deliverables belong to the client
02  /  Services

Consultancy Services

Six advisory workstreams, engaged individually or in sequence.

Workstream 01

Security Risk Assessment

Identify vulnerabilities and exposure across people, premises, movement and information — and record them in a form that supports decisions rather than alarm.

Workstream 02

Threat & Risk Review

Evaluate relevant risks based on lawful, client-provided and openly available information. We do not speculate, and we do not present assumption as intelligence.

Workstream 03

Security Planning

Develop structured security procedures: access, movement, visitors, contractors, travel, incident reporting and escalation, each with a named owner.

Workstream 04

Crisis Preparedness

Prepare the organization for unexpected events — who decides, who is told, what is said, and how the situation is brought back under control.

Workstream 05

Business Continuity

Support continuity planning during disruption: critical functions, dependencies, minimum operating requirements and realistic recovery sequencing.

Workstream 06

Security Policy

Develop organizational security frameworks — policy, standards, responsibilities and review cycles — proportionate to the organization's size and exposure.

03  /  Method

How a Consultancy Engagement Runs

Scoping
Agree what is being assessed, what is out of scope, and what decisions the work needs to support.
Information
Collect only what is lawful, necessary and provided by the client or openly available. Sensitive material is handled under agreed terms.
Assessment
Structured review against the five-stage risk framework, documented with findings traceable to evidence.
Recommendations
Proportionate, prioritised and costed in effort as well as money — including measures we advise against.
Documentation
Procedures and briefing material written for the people who will use them, not for a filing cabinet.
Review
A defined review point, because an assessment describes a moment and organizations do not stay still.
Grid of assessment panels arranged in four labelled rows, each cell carrying a different number of intensity markers
Findings are recorded consistently so that exposure can be compared across sites, functions and time.

Consultancy is advisory work. It does not require security licensing in most jurisdictions, which is why it is our most widely available service — but local rules on professional advice, data handling and reporting still apply, and we confirm them before engaging.

Next step

Commission an Assessment

Most engagements begin with a scoped assessment of a single site, individual or function, and expand only if the findings justify it.