Assessment & Assurance

A clear, evidence-based view of where you are now and what needs to change.

A gap analysis is often the right starting point when an organisation has a target standard, contractual requirement, governance problem or concern about whether controls are genuinely working.

Scoped around the outcome

We begin by agreeing the target: for example ISO/IEC 27001 readiness, AI governance, privacy, information security, business continuity or a wider GRC objective. The assessment then concentrates effort where it matters rather than forcing every engagement through the same checklist.

What the work looks like

Review normally combines stakeholder interviews, documentation and evidence review, sampling, process walkthroughs and challenge of how controls operate in practice. A typical focused gap analysis is approximately 2.5–3 consultancy days, although scope can be larger where the environment is complex.

What you receive

A concise executive summary, detailed findings, prioritised remediation actions and a practical roadmap. Findings distinguish critical issues from improvement opportunities so leaders can make sensible decisions about sequencing and investment.

Start with the problem

Have a requirement worth discussing?

Tell us what you are trying to achieve, what is getting in the way and when you need to move.

Discuss Your Requirements