Background
My background is in IT operations and security compliance: running
service management under ITIL, working in ServiceNow, and network security.
That work comes down to one thing: knowing exactly what’s in place,
what isn’t, and being able to prove it. I now do the same for small and
mid-size businesses facing those questions from regulators, insurers and
clients.
Most small businesses are not failing compliance on purpose. They are
running a website, a booking system, a mailing list and a handful of cloud
tools, each set up at a different time by a different person, and nobody
has ever looked at the whole thing against what the standards actually
require. That is the job.
You get one point of contact for the whole engagement, and where the work
touches an industry with its own rules and its own way of doing things, I
bring in an adviser who has actually worked in it. You are never handed to
an account manager, and nothing is sent offshore.
We are not a law firm and we do not sell software. We assess, document, and
hand you the evidence.
I assess your systems and documents against published standards, identify
where the gaps are, and give you the documentation to show you have
addressed them. This is not legal advice.