How We Can Partner Together to take Your Business to the Next Level
-
Digital and Cloud adoption
Advisory and Project delivery services to help clients transform themselves
- Process Optimisation and Customer Experience
- Future State Definition
- Becoming a Cloud and Data-centric organisation
- Cultural and Operational transformation
- Cloud Center of Excellent (CCoE) setup
- Adoption of native Cloud platform and Security capabilities
- Cloud maturity assessment and uplift
- Cloud exit transition planning, delivery and assurance
-
Cybersecurity Capability Uplift
Leading the Security and Digital Transformation of Enterprises, Public Sector Agencies, Critical National Infrastructure, and Small businesses.
- Cybersecurity Programme Delivery
- Cybersecurity Maturity Assessment
- Improving the security of Platforms, Systems and Data
- Data Governance implementations
- Becoming Identity-centric and Secure by Design
- Trust and Compliance services
- Ransomware readiness and recovery
- Cybersecurity Operations Transformation
- Threat Intelligence and Incident Response Readiness
-
Technology Due Dilligence and Compliance
Validation of Technology capabilities: IT assets, systems, processes, policies and procedures with the intent to identify, assess and identify key risks in Technology and Operational functions which in turn provides a view into risks to business functions
- IT Strategy & Roadmap
- Platforms & Applications
- Initiatives, Projects, and Spend Prioritisation
- Infrastructure and Security
- Business of IT and Processes
- Investments & Business Case
-
Workforce Structure and Contract Design
This work is usually commissioned at a point of change: a restructure, an outsourcing, work coming back in-house, or a claim that has exposed how far the arrangements on paper have moved from the arrangements in fact. The engagement begins with the model as it operates today and ends with structures, contracts and processes the organisation can run without further help.
- A review of the staffing model against the work as it is actually performed, with a redesign where the two have parted
- Contracts and statements of work for outsourced and offshore teams, defining scope, responsibility and change control so that each party knows what it has agreed to
- Working time and rest break compliance designed into the operating model, together with the records that demonstrate it
- Role design that provides for reasonable adjustments and neurodiversity from the outset rather than by exception
- Grievance and issue-handling procedures that resolve matters at the earliest stage
- Preparation for a claim, should one come: chronologies, evidence and record-keeping that will withstand a tribunal's scrutiny
-
Audit and Assurance
Vikram worked in the Economic Crime and Cybersecurity Audit team of one of Europe's largest banks, testing whether the controls the bank relied on did what they were meant to do, and reporting the answer to senior management and the audit committee. He brings the same discipline to organisations that want an independent view of their controls before someone else takes one.
- Independent review of a control environment against the standards it claims to meet
- Third-party risk management: assessing suppliers and their services against the organisation's control frameworks and service requirements, from onboarding through to exit
- Testing of whether controls are designed properly and operate in practice, with every finding traced to evidence
- Readiness for external review: the control environment and its documentation in order before the reviewer arrives
- Follow-up on agreed actions, confirming that the gap was closed and not just the finding
- Reporting to boards and audit committees in language a non-specialist can act on