Services
Five services.One team.
Everything we offer is delivered by the same people, from the same building, on the same platform. Offensive, defensive and intelligence work feed each other. Pick what you need now; add the rest when it makes sense.
CRESTISO 27001 · ISO 9001Duxford
What we do
Managed SOC (SOC365)
24/7 detection and response with named analysts, engineered detections, deception and our own threat intelligence.
Penetration testing
CREST-accredited testing of networks, applications, APIs, cloud, wireless and people, with retest included.
Virtual CISO
Security leadership on retainer: strategy, risk, board reporting and supplier assurance.
Consulting
ISO 27001, NIS2 and DORA readiness, security engineering, incident response planning and tabletop exercises.
Cyber Essentials auditing
Certification and Plus audits with a readiness check first, so you pass first time.
Supporting capabilities
The disciplines behind the services
What sets the work apart is the integration of offensive, defensive and intelligence skills in one team.
Detection engineering
Detections created and tuned for your environment, mapped to MITRE ATT&CK, cloud identity risks and current adversary tradecraft.
Digital forensics
Evidence acquisition and investigative analysis that stands up in incident response, insurance and legal processes.
Threat hunting
Hypothesis-driven hunts, indicator sweeps and behavioural analysis to find quiet intrusions before they become loud ones.
Threat intelligence
Our own holdings: phishing domains, adversary infrastructure, leaked credentials and dark-web activity, correlated against your telemetry.
Cloud and identity security
Azure, Microsoft 365, AWS, hybrid cloud and the identity infrastructure that now forms the real perimeter.
OT and IoT security
Industrial, maritime, logistics and operational environments, approached with OT-aware methods rather than IT assumptions.
Sectors
Where we work
- _01Financial servicesBanks, insurers, payment firms and fintechs facing fraud, ransomware and regulatory scrutiny — FCA, DORA and PCI DSS.Regulated
- _02Legal servicesFirms protecting client confidentiality and completion funds from payment diversion and data extortion.Confidentiality
- _03HealthcareClinical systems, patient data, medical devices and the suppliers around them.Safety-critical
- _04Maritime and logisticsVessel OT, ports and terminals, telematics and shore-side operations.OT
- _05RetailStore estates and e-commerce after the 2025 UK retail attacks: service desks, storefronts and peak trading.PCI DSS
- _06Defence, research and government contractorsPatient state espionage, supply-chain compromise and an explicit assurance regime.DEF STAN
- _07Trade bodies and membership organisationsMember data, events and portals defended for organisations without a security team.Members
- _08Energy, manufacturing, technology and moreOT/ICS, production lines, cloud-native platforms and everything in between — the method is the same, the application differs.All sectors
Start a conversation
Tell us what is keeping you busy.
We will point you at the right service, or tell you honestly that you do not need one yet.