Cyber Security Maturity Assessment
The maturity assessment involves comparing your organisation’s current security measures against the criteria of PGI’s Cyber Security Maturity Model, which has been developed based on a wide range of security industry standards and best practices, such as ISO 27001, PCI DSS, NISD, GDPR and CIS.
Features
- Consultants will evaluate 139 data points
- Compare current model with industry standards
Benefits
- Create a stronger security culture within the company
- Ensure your organisation is prepared against security threat landscape
- Understand what actions must be undertaken to improve your security
Pricing
£675 to £1,500 an instance a day
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
4 7 1 6 1 8 1 7 8 0 4 1 6 8 7
Contact
Protection Group International Limited
Mike Tipson
Telephone: 020 4566 6600
Email: bidteam@pgitl.com
Planning
- Planning service
- Yes
- How the planning service works
-
The maturity assessment involves comparing your organisation’s current security measures against the criteria of PGI’s Cyber Security Maturity Model, which has been developed based on a wide range of security industry standards and best practices, such as ISO 27001, PCI DSS, NISD, GDPR and CIS.
Our consultants will evaluate 139 data points (processes, policies and
controls) within 15 key business areas that have a bearing on your
company security posture (covering technology, people, processes, and physical security). They score these using a 6-point scale that ranges from 0 (non-existent) to 5 (optimised) - Planning service works with specific services
- No
Training
- Training service provided
- Yes
- How the training service works
-
PGI offers the highest level of cyber security training for business and government professionals, delivering a one-stop training environment to combat the growing cyber threat for all industry sectors. Our Consultancy and Training Staff and Associates combine the skills drawn from both practical experience in the industry and expertise in developing and delivering training courses, education programmes, mentoring and career development support.
The current global deficit in cyber security skills is estimated at nearly three million professionals and growing. We are helping to narrow this skills gap by:
• Designing, developing and resourcing national cyber security teams
• Transforming, growing, certifying and testing organisational workforces for government, critical infrastructure and businesses
• Training, developing and certifying existing specialists and new cyber security practitioners
• Running reskilling programmes to grow more cyber security professionals in key sectors
• Developing enterprise risk management staff for organisations of all sizes
• Building and increasing the knowledge of government and corporate leaders
• Educating global, medium and small companies on how to operate securely in a digital world - Training is tied to specific services
- No
Setup and migration
- Setup or migration service available
- Yes
- How the setup or migration service works
- PGI's experts would work with you to understand your requirements and to help you determine the most appropriate location for the services required. These could be hosted on premise or elsewhere, and PGI will work with the client to ensure that all appropriate security measures are considered.
- Setup or migration service is for specific cloud services
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- Yes
- How the quality assurance and performance testing works
-
PGI's consultants work with you to review, refine and/or create policies, processes, procedures, cyber security awareness training and technical controls. We can also carry out Penetration Testing, Vulnerability scanning and various security configuration reviews with clear and defined plans in order to mitigate, and/or improve cyber security across multiple areas of the business. This will give you confidence that your organisation's systems and procedures are practical, fit for purpose, and that your workforce know what is expected of them.
We are certified to the QG Quality Management Standard and ISO 9001. From an information security standpoint, PGI is ISO 27001:2017 certified and work to a risk assessment procedure aligned with these security industry best practices (including ISO 27005 - the international standard for Risk Management).
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security incident management
- Security audit services
- Certified security testers
- Yes
- Security testing certifications
-
- CREST
- Cyber Scheme
- Other
- Other security testing certifications
-
- CompTia Security +
- CompTia Network +
- CompTia Advanced Security Practitioner
- Certified Information Systems Security Professional
- Certified Information Security Manager
- ISO 27001 Certified ISMS Lead Auditor
- General Data Protection Regulation (GDPR) Practitioner
- Cyber Essential Plus Certified Assessors
Ongoing support
- Ongoing support service
- Yes
- Types of service supported
- Hosting or software provided by your organisation
- How the support service works
-
Continuous improvement is an important aspect of remaining
compliant with a number of regulations; this is why many
organisations find benefit in repeating these assessments at
regular intervals (e.g. annually). This provides a consistent
metric for key stakeholders (e.g. Senior Management,
the Board, Regulators, or shareholders) to measure and
demonstrate continuing improvement and increasing
maturity levels
Service scope
- Service constraints
- PGI have no constraints on the services we provide. Work can be carried out on site or remotely, depending on client requirements.
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Responses will normally be within one working day, unless in the middle of an incident / project when response times will usually be quicker. Weekend response times may be different, depending on contractual requirements.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Support levels
- Support levels would be agreed on a project by project basis. Cost for support will be determined based on client requirements. Typically each client will be assigned a lead contact, who may be one of PGI's consultants or may be part of the sales team. This will depend on the nature of the project being undertaken.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Security Clearance (SC)
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau
- ISO/IEC 27001 accreditation date
- 28/04/2022
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- Yes
- Any other security certifications
- CREST
Social Value
- Social Value
-
Social Value
- Equal opportunity
- Wellbeing
Equal opportunity
PGI is an equal opportunity employer, with a strong focus on Diversity, Equity and Inclusion.Wellbeing
PGI provides staff with support across mental and physical health.
Pricing
- Price
- £675 to £1,500 an instance a day
- Discount for educational organisations
- Yes