Back to services Frameworks we work with
Cyber risk & compliance
Map risk, structure compliance, prioritise what matters — without drowning teams in audit work.
- NIS2
- DORA
- AI Act
- ISO 27001
- NIST CSF
- EBIOS RM
When we step in
- 01
NIS2, DORA or AI Act just hit your scope — and you need a landing path, not a firm that adds 200 controls.
- 02
You are starting an ISO 27001 or NIST CSF certification — and want a realistic scoping before signing with an auditor.
- 03
A customer hands you a 400-line security questionnaire — and your internal team is already stretched.
Sub-services
- Cyber maturity assessment (NIST CSF, CIS, ISO 27001)
- NIS2 · DORA · AI Act readiness
- Risk analysis (EBIOS RM or proprietary)
- Security policy, charter, procedures
- Third-party / supply-chain risk management
- Customer security questionnaire response
Methodology
- Duration
- Typical engagement: 2 to 8 weeks
- Deliverable
- Executive deliverable + prioritised action plan
- Team
- MACC senior consultant, direct delivery
Book a meeting Reply within 48 working hours