vCISO leadership
A senior security leader working with your executive team on a part-time or interim basis and accountable for the security program.
Not every organization needs, or can recruit, a full-time chief information security officer. A Dark Pools vCISO provides that leadership on demand: setting strategy, building the security program, preparing for ISO 27001, NIST and POPIA requirements and reporting to the board. The work is sized to your risk and budget.
A senior security leader working with your executive team on a part-time or interim basis and accountable for the security program.
Gap analysis and remediation support for ISO 27001, the NIST Cybersecurity Framework and POPIA, ahead of audits or regulatory review.
Policies, standards and governance structures that give every security decision a clear owner and a documented basis.
Facilitated scenarios such as ransomware, a data breach or insider misuse, testing decisions, communications and escalation.
A virtual CISO performs the role of a chief information security officer on a part-time or interim basis: owning the security strategy, prioritizing investment, overseeing controls and reporting risk to leadership and the board.
No. Certification is issued by an accredited certification body. We prepare you for the audit by closing gaps, building the evidence and supporting you through the process.
POPIA is South Africa's Protection of Personal Information Act. Readiness work maps where personal information is processed, assesses the security safeguards around it and helps put in place the processes the Act requires. We provide security advice, not legal advice.
A facilitated discussion in which leaders and responders work through a realistic incident scenario step by step. It exposes gaps in plans, roles and communications without touching production systems.
Scope vciso & security advisory with a security lead. We will tell you plainly what you need, and what you do not.