After an incident
Confirm what happened, why it happened, and what should change.
ASSESSMENTS & RCA
We help teams understand what happened, where the gaps are, and which actions matter first after incidents, readiness reviews, or security program uncertainty.
WHEN THIS HELPS
Confirm what happened, why it happened, and what should change.
Check whether roles, evidence, and procedures are ready.
Turn scattered findings into a short, defensible action list.
ASSESSMENT OPTIONS
Best for: Teams preparing for incidents, audits, or NIS2 discussions.
A focused review of roles, processes, escalation paths, and response readiness.
Best for: Teams that need to understand a confirmed incident or recurring issue.
A structured investigation that explains what happened, why it happened, and what should change.
Best for: Leaders who need a clear view of security priorities.
A program-level review across procedures, monitoring, ownership, and response capability.
HOW IT WORKS
We agree on the decision you need to make, the systems or incidents in scope, and the evidence available.
We review logs, documents, interviews, controls, and timelines to separate assumptions from confirmed facts.
We set the concrete actions: who does what, how much effort it takes, and in what order.