top of page

Cyber Security Maturity Assessment

Know exactly where you stand — and what to do about it.

Most organisations have made security investments over time — but few have a clear picture of whether those investments are working, where the real gaps are, or what to prioritise next. The Cyber Security Maturity Assessment answers those questions directly.

Using the NIST Cybersecurity Framework (CSF 2.0) as a foundation, I conduct a structured review of your security controls, governance practices, third-party risk exposure, and compliance position. The output is a prioritised risk register and a practical 90-day roadmap — not a list of problems, but a sequenced plan for addressing them.

What you receive:

  • A clear assessment of your current security maturity

  • Identification of your highest-priority gaps and exposures

  • A board-ready executive summary

  • A 90-day improvement roadmap with sequenced, practical actions

  • A follow-up call to walk through findings and answer questions

How it works:

  1. Discovery call — understanding your business, your concerns, and your goals

  2. Assessment — a structured review across your people, processes, and technology

  3. Report and roadmap — delivered within an agreed timeframe

  4. Debrief — a walkthrough of findings and recommended next steps

Most clients follow the assessment with an ongoing advisory retainer — so that the roadmap actually gets delivered, not filed.

bottom of page