What types of organisations do you work with?
We work with organisations of varying sizes, from small and growing teams to established businesses operating in regulated environments.
Do you work with specific frameworks (e.g. SOC 2, ISO)?
Yes. We align assessments with recognised frameworks where appropriate, tailoring the approach to your objectives and regulatory context.
Is this internal audit or consultancy?
Our work sits at the intersection of assurance and advisory. We provide independent insight while remaining practical and outcome-focused.
How long does a typical engagement take?
Engagement length depends on scope and complexity. Smaller reviews may take 1–2 weeks, while larger projects are delivered over several weeks.
Do you offer fixed pricing?
Where scope is clearly defined, fixed pricing is available. For evolving or complex engagements, day-rate or phased pricing may be more appropriate.
Can you support audit preparation?
Yes. We regularly support audit readiness, evidence preparation, and control walkthroughs.
Do you offer ongoing support?
Yes. Retained and on call advisory services are available for organisations requiring continuous assurance input.
Is your work confidential?
Absolutely. Confidentiality is treated as standard across all engagements.

Expertise in IT SOX compliance, ITGCs, and security controls across global enterprises, specialising in audit preparation, cloud migration governance, and IT risk management