Risk Resiliency | Impact Makers

Risk & Resiliency

We use industry standards and frameworks to support businesses in achieving their strategic objectives while minimizing risk and increasing their security posture.

Our risk and security experts evaluate your environment and your controls to ensure your data, processes and people are protected from malicious activities. We partner with the business and IT to ensure the most critical controls are in place and operating effectively. We help to build and ensure governance processes are in place to ensure effective controls are in place to protect the business while ensuring it can continue to deliver results.

Business Continuity Planning (BCP)

We can assist you develop the key components of a Business Continuity Plan (BCP). These four areas are essential to ensure that an organization can continue its critical functions during and after a disaster or disruptive event.

Fractional CISO and Security Staffing Support

We offer staff to bolster security teams, or work in the role of the Chief Information Security Officer on a part time basis.

3rd Party Risk Management Assessments

We conduct a third-party risk assessments which are crucial for ensuring that your organization is protected from potential risks associated with external vendors or service providers.

HIPAA Assessments

HIPAA (Health Insurance Portability and Accountability Act) We assess compliance and adherence to rules and regulations designed to protect the privacy and security of patients’ health information.

Service Organizational Control 2 Readiness

We perform SOC2 readiness audits using a framework for managing and protecting customer data based on five “trust service principles”: security, availability, processing integrity, confidentiality, and privacy.

Penetration Testing

Offered through trusted partners.

COMPETENCIES / SKILLS

Broad IT Subject Matter Experts

Business Continuity Planning

Information Security Governance

General IT Audit Expertise

Disaster Recovery

Disaster Recovery and Incident Response Expertise

GAO Yellow Book Government Auditing Standards

CERTIFICATION

Certified Information Systems Security Professional (CISSP)

Security+

Certified Information Systems Auditor (CISA)

CRISC

PMP