Managed Detection & Response (MDR)
Continuous monitoring and response for organisations that will never staff a 24/7 security operations centre.
Read moreA response plan your team has rehearsed, including who decides, who speaks, and who to notify.
The middle of an incident is the worst time to work out who has authority to take systems offline, who talks to customers, and whether the breach is notifiable. Those decisions need to be made while everyone is calm.
We write response plans that are usable under pressure — short, role-based and specific — then run a tabletop exercise so the team has practised, and correct the plan based on where it actually broke.
Named roles with the power to isolate systems, engage external help and approve public statements.
Specific playbooks for ransomware, account compromise, data exposure and third-party breach.
Privacy Act notification thresholds, insurer requirements and contractual commitments identified in advance.
A tabletop exercise that surfaces the gaps while the stakes are still hypothetical.
Current capability, tooling and any existing plan reviewed against realistic scenarios.
A concise plan with roles, escalation, communication templates and scenario runbooks.
A facilitated tabletop with the people who would genuinely be involved, including executives.
The plan updated from what the exercise exposed, and a review cadence agreed.
Technical responders, an executive decision-maker, and whoever handles communications. Exercises that involve only IT miss most of the real friction.
When a privacy breach has caused or is likely to cause serious harm, notification is required as soon as practicable. We help you identify the threshold in advance; the legal determination should involve your lawyer.
We can support technical response and recovery. For incidents with legal or insurance implications, engaging a specialist forensics firm alongside us is usually the right call.
Continuous monitoring and response for organisations that will never staff a 24/7 security operations centre.
Read moreRecovery you have actually rehearsed, at a cost the business can justify.
Read moreAn independent view of your security position, expressed as risk the board can weigh rather than findings it cannot.
Read moreWe will tell you what we would do, roughly what it costs, and whether it is worth doing yet.