Not a framework score. A senior read on which obligations genuinely apply to your business — your contracts, the Privacy Act, your customers’ terms, your sector’s rules — and where you’re falling short.
One 30-minute conversation. A one-page read back within 48 hours.
A 20-minute walkthrough to talk it through. That’s the whole thing.
What’s driving the question, what you’re contractually and legally on the hook for, and what’s actually in place today.
Which obligations we think bind you, where the gaps are, and what we’d do in what order. One page, not forty.
We go through it together. You keep the one-pager either way.
And one we’ll tell you for free: if ISO 27001 isn’t actually required in your situation, we’ll say so in writing — even though we sell it.
Because the fastest way to show you how we work is to do a small piece of it properly.
It’s timeboxed to two hours of our time. If your situation needs more than that, the one-pager will say so plainly and tell you what the paid assessment would cover. No obligation, and you keep it either way.
Most organisations we do this for have gaps that recur — which is why our recommendations usually end with something ongoing rather than a one-off project. We’ll be upfront about that on the call.
Pick a 30-minute slot. No prep needed.
Context, governance, technical posture, evidence.
Within 48 hours. One page.
Twenty minutes. You decide what, if anything, happens next.
Tell us who you are and what’s driving this. We’ll come back within one business day to lock in a time.