All services

Service portfolio / 05

Governance, risk & compliance

Translate policies and external requirements into responsibilities, controls and evidence people can maintain.

Explore the scope

Service scope

The work.
The context.
The next step.

A useful governance programme explains what matters, who owns it and how progress is demonstrated. Start with business obligations and operating reality, then build an evidence plan around the relevant framework.

01

Framework readiness

Scope gap assessments and improvement plans around frameworks such as ISO 27001, SOC 2 and NIST CSF.

02

Enterprise risk & policy

Organise risks, policies, control ownership and review cycles around how the business operates.

03

Regulatory readiness

Map applicable requirements and evidence needs for India-focused programmes, including CERT-In considerations.

04

Third-party & audit support

Assess supplier dependencies, organise assurance evidence and coordinate remediation ahead of independent reviews.

Readiness and implementation support are distinct from an independent certification, attestation or regulatory determination.

When this is useful

A starting point
that fits your need.

  • An upcoming audit or customer review
  • A growing supplier ecosystem
  • Policies that are disconnected from operations

Deliverables to define in your scope

A requirements and control gap assessment

Risk register and remediation ownership

An evidence plan and review calendar

How an engagement works

Scope the work around your business.

Start with the question.
Make the outcome clear.

Discuss this service