Crisis-ready in 30 days
A crisis unit that has met, rehearsed and knows who calls the regulator.
- Duration
- 4 weeks
- Price
- €8,000 to €15,000
- excl. VAT, indicative
Four practices, held by one team.

Services
Detection, response and operations, run for you around the clock.
A mid-size company cannot staff a security operations centre, and should not have to. What it needs is someone watching, someone who answers at three in the morning, and someone who makes sure the monthly work — patches, scans, cost reviews, control evidence — actually happens.
We run detection through a partner SOC under our supervision, with the alerts triaged by people who know your estate, and we keep the response side ready: an incident plan that exists before the incident, playbooks that have been exercised, and a forensics team on call.
The same retainer covers the operations nobody has time for. Vulnerability management with real deadlines, cloud security and compliance checks that run continuously, and FinOps so the cloud bill goes down rather than up. One contract, one contact, a monthly report your board can read.
Continuous detection, threat intelligence and vulnerability watch, with a named analyst on the other end.
Round-the-clock detection and response delivered white label with a PDIS-qualified partner, with use cases written for your environment and a named escalation path.
Continuous watch on what is exposed in your name: domains, certificates, leaked credentials and third-party breaches, filtered to what is worth acting on.
A continuous cycle with defined scan coverage, risk-based prioritisation and service levels for remediation, reported in terms the executive committee can act on.
Plans that exist before the incident, and a team that answers when it happens.
A response plan with named roles, decision thresholds and the regulatory notification clocks already built in, plus playbooks for the scenarios you will actually face.
On-call response with a PRIS-qualified partner: containment first, then evidence preservation, root cause, and the report your insurer and regulator will ask for.
Business impact analysis, continuity strategy and a recovery plan that has been tested, not just written, with the cyber scenario treated as a first-class case.
Security, cost and compliance work that has to run every month, run for you.
A standing engineering capacity that keeps the pipeline, the guardrails and the evidence working as your platform changes, with a named engineer and a monthly review.
Cost allocation, commitment strategy, rightsizing and waste elimination, typically returning fifteen to thirty per cent of the bill within the first quarter.
Posture management that runs every day and reports in the language of your control framework, so cloud evidence for ISO 27001 or SOC 2 is produced automatically.
A crisis unit that has met, rehearsed and knows who calls the regulator.
From applicability to a defensible compliance position, with the governance duties covered.
Detection and response around the clock, delivered with a PDIS-qualified partner, with detection use cases written for your environment and a single point of contact on our side.
Continuous scanning of what you own and what is exposed in your name, with findings filtered, prioritised and tracked to closure rather than published as a raw list.
Discuss this service — Vulnerability and attack-surface management
Standing engineering capacity that keeps pipelines, guardrails and compliance evidence working as your platform changes, with a named engineer and a monthly review.
Continuous cost management: allocation kept accurate, commitments managed, waste removed each month, and savings reported as measured figures.
Crisis-ready in 30 days gives you a tested incident plan, the playbooks, and the exercise that proves they work.