Services from One Dot Zero to manage AI & cyber security risk.
Our service offerings
Security Strategy, Governance, and Advisory
Security Strategy, Assessment & Advisory: Regulatory Risk Analysis· Cyber security strategy & road mapping · Framework Alignment · M&A Assurance Advice · CISO-as-a-Service · Crown jewel asset identifcation & protection · Gap Analysis & Cyber Health Checks
Governance, Risk & Compliance: Governance Structure analysis & advice· Executive Briefing & Education · Board reporting
Strategic digital native advice focused on secure outcomes
A well governed cyber security capability should match your risk appetite, regulatory obligations, and commercial strategy. Talk to us to understand your current state and develop an appropriate and well governed strategy to sustain optimal security posture and digital capability.
Digital Forensics & Incident Response
First Response, Incident Response & Digital Forensics: Emergency incident response and containment· Digital Forensics · Ransomware response · Preparation & Tabletop exercises
Managed Detection & Response: 24×7 SoC monitoring and response · Threat hunting · Detection engineering · SIEM architecture & management
Prepare & Respond to Incidents
A data breach can be the worst day in the life of a business. One Dot Zero helps preserve your sanity, minimize damage, and get you back on your feet.
Readiness & Resilience
Identity & Access Management: Priveged Access Management (PAM) · Identity Governace · Access governance · Zero trust
Human Risk & Security Culture: Phishing simulation · Role-based training · Risk measurement · Culture assessment
Secure Architecture: Secure reference Architecture design & delivery · Technology & vendor assessment · Control consolidation & Rationalisation · Optimisation
Attack Surface Management: Attack Surface Management (ASM) provides continuous visibility of everything an organisation exposes to the internet or any other accessible surface. One Dot Zero services include: external attack surface discovery · shadow IT and forgotten-asset identification · exposure prioritisation based on exploitability · integration & remediation workflows.
Threat Modelling: Systematically identify how a system, product, or business process could be attacked. One Dot Zero services include: facilitated modelling workshops for development and architecture teams · model validation · blast-radius assessment · integration and design choice modelling
The best time to prepare for a breach is yesterday... The second best time is now.
With identity now the primary attack vector — most breaches involve compromised credentials rather than exploited software. Integrate readiness & resilience where it is cheapest and most effective.
Security Transformation, AI Assurance, Space Cyber Security
Security Architecture: Reference security architecture for Cloud, on premise and OT/SCADA environments
Security Transformation: Uplift & transform your security posture under a predictable, comprehensive, and governed programme · AI & Security Strategy · Capability & assurance roadmaps · Programme delivery · Post-incident rebuild · M&A integration
AI Safety & Assurance: AI tested and governed before it reaches production· AI security assessment · AI penetration testing · AI governance · Data governance
Space Cyber Security: Ground segment architecture · Mission architecture · Link security · Supply chain security assessments
Security Transformation, AI Safety & Assurance, and Space Cyber Security
Transform your security capability and posture by architecting a cohesive set of controls for your digital estate.
Testing, Audit, & Compliance
Penetration Testing & Red Teaming: External & internal Penetration Testing· Web & API Penetration Testing · Facility Red teaming ·
Supply Chain Security & 3rd Party vendor assessment evaluates the security posture of the vendors an organisation shares data or connectivity with. Services include: risk-tiering the vendors & partners · designing proportionate assessment processes · validating certifications and evidence
CMMC, IRAP, & ISM Uplift & Assessment: IRAP Asessment & reporting· IRAP Readiness & Uplift · SSP & SRMP · Cloud assessment
The best time to prepare for a Breach is Yesterday... The second best time is now.
Know who your critical suppliers are, what access and data they hold, and how you’d detect and respond if one of them were compromised.
Privacy, Personally Identifiable Information (PII) Management, Information Management
A strong privacy awareness & capability matters. One Dot Zero can deliver: Data mapping and classification · retention and minimisation design · consent management
Data Loss Prevention (DLP): Protects sensitive information from leaving the organisation through unauthorised channels. DLP services include: policy design· vendor selection · deployment across endpoints, email, and cloud applications
Data Security Posture Management (DSPM): does your organisation understand where sensitive data is stored and why? DSPM continuously discovers and classifies data across cloud platforms, SaaS applications, and data stores, then maps who and what can access it. Services include: platform selection, deployment, and integrating findings into remediation workflows · surfacing shadow data· identifying over-permissive access, and misconfigured repositories
Privacy done well reduces both compliance risk and the blast radius of any future incident.
Surface shadow data, over-permissive access, and misconfigured repositories before an attacker or auditor does. Ensure that you business aligns to the relevant privacy legislation, and has the necessary & effective controls in place.
Your organisation may have a cyber security program in place, but is it supporting the strategic goals of the business? How do you compare to your peers?
Not only can One Dot Zero provide a benchmark we can determine your level of maturity and match that to your desired destination.