Cybersecurity assessmentSee the control gaps before an incident makes them visible.
We assess current cyber posture across governance, protection, detection, response and recovery, then translate technical and process gaps into clear investment priorities.

Standalone service
Cybersecurity assessment
A risk-based assessment of cybersecurity governance, controls and resilience against defined outcomes.
A precise scope starts with the right question.
- 01
Which cyber risks are material to critical services, systems and data?
- 02
How does the current posture compare with the organisation’s target outcomes?
- 03
Which control improvements deserve funding and ownership first?
When a cybersecurity assessment should come first
A cybersecurity assessment establishes a broad view of governance, protection, detection, response and recovery before leadership commits money to isolated controls or tests.
It is the right starting point when a South African organisation needs to understand its current security posture, set a defensible target and sequence improvement. The result is a risk-led roadmap, not a pass-or-fail badge and not a substitute for technical testing where exposure needs to be proven.
Consider this service when
- Leadership cannot see which cyber gaps create the most material business exposure.
- Security activity exists, but ownership, target outcomes and investment priorities are unclear.
- A board, audit committee or programme sponsor needs an independent baseline and improvement roadmap.
Evidence designed for action.
Final coverage follows the agreed target, authority, materiality and evidence available. These are the core outputs around which the engagement is built.
- 01
Current and target cybersecurity posture profile
- 02
Risk-ranked control and resilience gaps
- 03
Executive and board-level assessment summary
- 04
Phased cybersecurity improvement roadmap
Criteria agreed before testing begins.
- NIST Cybersecurity Framework 2.0
- ISO/IEC 27001 control context
- POPIA security safeguards where applicable
Applicability and final criteria are confirmed during engagement scoping.
Also in Technology assurance
Related services
Start with the target