Cyber Security Risk Management Service
Provision of specialist Cyber Security Risk Management services; a process for identifying, analysing, evaluating and addressing an organisation's cyber security threats.
Features
- System discovery and baselining
- Identification and selection of security controls
- Implementation of security controls
- Assessment of security controls
- Preparation of documentation suite
- Authorisation of security controls
- Monitoring of security controls
- Secure by Design
- Supply chain and supplier assurance
Benefits
- Risk-based, mission-driven methodology
- Risks assessed early and continuously
- Security architecture developed early with periodic lifecycle updates
- Delivers increased capability to protect, detect, react and restore
Pricing
£500 to £1,500 an instance a day
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
1 5 4 7 5 7 9 1 4 5 6 2 3 9 4
Contact
Logan Risk Ltd
Logan Risk Frameworks Team
Telephone: 07909560625
Email: Frameworks@loganrisk.com
Planning
- Planning service
- Yes
- How the planning service works
- Our service helps buyers to gain an early understanding of their capability's cyber security risk. It also delivers a cyber security system architecture baseline whilst recommending the necessary controls to be implemented in order to successfully manage and monitor cyber security risk throughout the capability's lifecycle, often as part of a wider, integrated risk management framework.
- Planning service works with specific services
- Yes
- Hosting or software services the planning service works with
-
- Cyber security risk assessment
- Secure architectures and data flow capture and mapping
Training
- Training service provided
- Yes
- How the training service works
-
Cyber security best practice training for cloud security.
Cyber security awareness training.
Cyber security threat and risk management training. - Training is tied to specific services
- No
Setup and migration
- Setup or migration service available
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- No
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security audit services
- Certified security testers
- Yes
- Security testing certifications
- Other
- Other security testing certifications
-
- CISSP
- CCP
Ongoing support
- Ongoing support service
- No
Service scope
- Service constraints
- None.
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
-
Working days: within 12 hours
Non-working days: within 48 hours - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Support levels
- We provide technical manager level query support to our clients. This is available 9am-5pm on working days, via email or telephone. We aim to respond to queries with 12 hours during working days or within 48 hours for non-working days. This service is provided gratis as part of our service provision.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- No
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Equal opportunity
Fighting climate change
As a sustainably focused SME, we commit to achieving environmental benefits throughout the performance of our duties. Our Environmental, Social and Governance (ESG) policies outline our commitment to considerate and sustainable business practices which reduce climate risks. We actively educate our personnel in environmental behaviours and their benefits, advocating sustainable travel, utilising remote working and video conferencing where appropriate, and increasing our recycling. Our activities make use of working environments which uphold our ethos through our paperless practices, provisions of waste recycling facilities and efficient energy control. Use of high carbon travel is kept to a minimum and our company is encouraged to use environmentally friendly methods of transport, electric/hybrid vehicles, and car-sharing where applicable. Site visits and in-person meetings are organised to engage across a broad range of stakeholders over consecutive days to try and maximise value against travel environmental impact, as well as the use of conferencing calls where suitable to further minimise travel.Equal opportunity
As an equal opportunities organisation, we commit to identifying and tackling inequality throughout the performance of our duties. Our company ethos promotes open, honest, dialogue and a level of empowerment and co-design of business initiatives regardless of role or responsibility. Our flexible and inclusive structure model and equality policies drive our approach throughout the delivery of all activities. Our Board is committed to proactively managing and addressing workforce inequalities. We recruit personnel using methods open to all suitably qualified candidates, internally and externally, ensuring through due diligence that all employment equality, gender pay gaps and modern slavery issues are addressed and complied with. Where possible, we commit to ensuring representation of the veteran community within our associate network and supply chain and are signatories on the Armed Forces Covenant. Whilst the nature of our activities may dictate some working practices, we will always ensure to cater for parental responsibilities, disabilities, and flexible working needs. We provide flexible working environments that promote an engaging and suitable work-setting for our staff.
Pricing
- Price
- £500 to £1,500 an instance a day
- Discount for educational organisations
- No