macc /
EN FR
Book a meeting
Back to services
01 FOUNDATION

Cyber risk & compliance

Map risk, structure compliance, prioritise what matters — without drowning teams in audit work.

Frameworks we work with
  • NIS2
  • DORA
  • AI Act
  • ISO 27001
  • NIST CSF
  • EBIOS RM

When we step in

  • 01

    NIS2, DORA or AI Act just hit your scope — and you need a landing path, not a firm that adds 200 controls.

  • 02

    You are starting an ISO 27001 or NIST CSF certification — and want a realistic scoping before signing with an auditor.

  • 03

    A customer hands you a 400-line security questionnaire — and your internal team is already stretched.

Sub-services

  • Cyber maturity assessment (NIST CSF, CIS, ISO 27001)
  • NIS2 · DORA · AI Act readiness
  • Risk analysis (EBIOS RM or proprietary)
  • Security policy, charter, procedures
  • Third-party / supply-chain risk management
  • Customer security questionnaire response

Methodology

Duration
Typical engagement: 2 to 8 weeks
Deliverable
Executive deliverable + prioritised action plan
Team
MACC senior consultant, direct delivery
Book a meeting Reply within 48 working hours