Two Levels of Security Leadership
Choose operational CISO support, strategic board advisory, or both—depending on your organization’s stage and needs.
Fractional CISO
Part-time security leadership for day-to-day operations, program development, and team management.
You Need This If:
- Building security program from scratch
- Managing security team or vendors
- Implementing technical controls
- ISO 27001 certification needed
- Incident response capability required
What You Get:
- 1-3 days per month availability
- Security strategy and roadmap
- Policy and procedure development
- Vendor management and oversight
- Staff security training
- Incident response planning
Investment: £36K-£60K per year
Board Advisor / NED
Independent advisor to your board for cyber risk governance, oversight, and fiduciary duty fulfillment.
You Need This If:
- Pre-IPO or major fundraising
- Board needs cyber risk expertise
- Independent voice required
- AI governance oversight needed
- Regulatory compliance pressure
What You Get:
- Quarterly board meeting attendance
- Board-level risk reporting
- Independent risk assessment
- Management challenge function
- Regulatory guidance
- Investor/auditor interface
Investment: £15K-£60K per year
Combined Engagement: Fractional CISO + Board Advisory
For organizations that need both operational security leadership and board-level governance, we offer combined packages that provide continuity from program implementation to board reporting—with better value than separate engagements.
£60K-£90K per year (save 15-25% vs. separate engagements)
Our Ideal Client Profile
We work best with growing UK businesses at inflection points where security becomes business-critical.
Revenue Stage
£5M-£50M revenue: Large enough to need professional security leadership, not yet large enough for full-time CISO hire to make economic sense.
Growth Profile
Scale-ups and high-growth: Preparing for Series B/C, international expansion, or major customer wins that require security maturity.
Sector Focus
Tech, FinTech, HealthTech, SaaS: Sectors where security and compliance are board-level concerns and competitive differentiators.
When to Engage Us
You’re at the right stage if you’re facing any of these situations:
- Investors asking about cyber risk governance in due diligence
- Board requesting clearer security reporting and oversight
- Deploying AI systems and need governance frameworks
- Regulatory compliance becoming business-critical (GDPR, DORA, FCA, etc.)
- Major customers requiring ISO 27001 or SOC 2
- Security incidents revealing gaps in leadership and response
Why Growing Businesses Choose Us
We’re not consultants who deliver reports and leave. We’re not MSSPs selling you tools. We’re strategic partners who help you govern cyber risk effectively.
Business-First Approach
We speak business language, not security jargon. ROI-focused recommendations your board can actually understand and approve.
No Vendor Bias
We don’t sell tools or services. Independent advice focused solely on your business needs, not commission targets.
AI Era Expertise
Deep expertise in AI security governance—from agentic AI threat modeling to EU AI Act compliance strategies.
Start Immediately
No 3-6 month CISO recruitment cycle. We can start within days, not months, when you need expertise now.
Scale With You
Flexible engagement models that scale as you grow—from 1 day/month to full board advisory as needs evolve.
Knowledge Transfer
We build capability in your team, not dependency on us. Goal is to make ourselves less necessary over time.
Let’s Discuss Your Security Leadership Needs
Book a 30-minute consultation to explore whether fractional CISO, board advisory, or a combined engagement is right for your organization. No sales pitch—just an honest conversation about your needs and how we might help.
Response time: Within 24 hours | All consultations are confidential and obligation-free
Or explore our thinking first:
