Our Services

5 Core Services, Scoped to Your Business.

Each service is scoped to what your business actually needs — on its own, or combined with another, as makes sense for you. Exact scope and next steps are confirmed on a free discovery call.

SVC 01 One-Time Project
DPDP Readiness Assessment
Know exactly where you stand with the Digital Personal Data Protection Act 2023. A structured gap analysis, risk classification, and a prioritised remediation roadmap — delivered in 5–7 business days.
Book Assessment Call →

What You Receive

📋
Data Inventory & Flow MapEvery category of personal data your company holds, where it lives, and how it moves. The foundation of compliance.
⚖️
Legal Basis AssessmentAre your consent flows valid? Is your data collection justified under DPDP? Each processing activity reviewed.
🎯
Gap Analysis ReportEvery gap mapped against the DPDP Act and Rules. Colour-coded by severity: Critical, High, Medium, Low.
🗺️
Remediation RoadmapPrioritised action plan — what to fix first, what can wait, rough cost-effort estimates for each item.
📄
Policy Templates (3)Privacy Notice, Consent Record template, and Data Breach Notification procedure — ready to customise.
🎤
Findings PresentationLive 60-minute walkthrough with your leadership team. Q&A included. Recorded for your records.
Assessment ModuleWhat We Review
Data DiscoveryCustomer data, employee records, vendor data, website/app collection, CCTV, payment data
Consent & NoticePrivacy notices, consent mechanisms, opt-out flows, cookie policies, third-party data sharing
Rights & ObligationsData Principal rights handling, DPO/DPBO requirements, grievance mechanism
Security PostureAccess controls, encryption at rest/transit, breach response capability
Vendor ComplianceData Processing Agreements with SaaS vendors, cloud providers, and third-party processors
Significant Fiduciary CheckAssessment of whether your business may be classified as a Significant Data Fiduciary
SVC 02 One-Time Project
IT Process Audit
A full operational review of your IT infrastructure — security posture, vendor contracts, tool stack, incident readiness, and IT governance. 3–4 weeks including one on-site visit.
Book IT Audit Call →

What You Receive

🔐
Security Posture ReviewFirewall, endpoint protection, patch management, access controls, password hygiene, MFA coverage.
📦
Tool & Licence AuditFull inventory of every tool, SaaS, and licence — identify duplicates, unused seats, and cost leaks.
📑
Vendor Contract ReviewRenewal dates, auto-renewals, SLAs, exit clauses — so you're never caught off-guard.
🚨
Incident Response AssessmentDo you have a plan? Is it documented and tested? We assess readiness and provide a gap-fix template.
🗺️
IT Governance ReportRoles & responsibilities, change management, IT policy documentation gaps. What a mature IT function looks like for your size.
📈
12-Month IT RoadmapPrioritised, costed recommendations for the next year — with quick wins, medium-term improvements, and strategic initiatives.
SVC 03 Monthly Retainer
DPDP Compliance Retainer
Ongoing DPDP compliance management after your assessment. Monthly advisory, incident response support, policy updates, and quarterly board-ready compliance reports. Requires SVC 01 first.
Discuss Retainer →

Monthly Scope (~6 hrs/month)

Remediation progress tracking (monthly)
Incident response support (on-call via WhatsApp)
Policy & notice updates as regulations evolve
Data breach assessment & notification guidance
New vendor/SaaS DPA review (up to 2/month)
Quarterly board compliance summary report
Regulatory updates & impact assessment
Annual re-assessment at preferential rate
SVC 04 Monthly Retainer
Fractional IT Head
CTO-level IT leadership without the full-time hire. Vendor governance, IT roadmap execution, security oversight, technology decisions, and board-level IT reporting. 3-month minimum.
Discuss Fractional IT →

Monthly Scope (~9 hrs/month)

Monthly IT review meeting with leadership
Vendor negotiations & contract oversight
IT roadmap progress tracking & adjustments
Security incident review & escalation support
Technology procurement decisions & approvals
IT team mentoring & hiring guidance
Board/management IT reporting (quarterly)
On-call availability for urgent IT decisions
SVC 05 Workshop Session
AI Adoption Workshop (Foundation)
Practical. Jargon-free. Half-day, hands-on session that gets your team using AI tools safely and effectively in daily work — with clear boundaries on what's safe to do with business and customer data. Branded materials. Certificates issued.
Book a Workshop →

What You Receive

🖥
Branded Slide DeckClient logo, colours, and 2–3 industry-specific examples. Reusable for new joiner onboarding.
📓
Participant WorkbookPractical prompts, do's and don'ts with business data, quick reference card. Printed or digital.
🏆
Post-Session Quiz & Certificates10-question quiz. Pass certificate per participant. Evidence of AI & data-handling training for auditors.
🎥
Session Recording (On request) Full recording for future onboarding. Never pay for re-delivery to new joiners.
30-Day Follow-Up Q&A Call30-min group call two weeks after for questions that came up while using AI tools day-to-day.
📝
Training RegisterSigned attendance log. Formal evidence of who was trained and when.
Session ModuleWhat We Cover
AI Tools LandscapeWhich everyday AI tools are safe, useful, and appropriate for your team's work
Practical PromptingGetting useful, accurate output from AI tools for real day-to-day tasks
Data Safety BoundariesWhat business and customer data should never go into a public AI tool, and why — tied to DPDP obligations
Team Use Cases2–3 examples tailored to your industry, built with you before the session
Add-On For Past Clients
Annual DPDP Re-Assessment
A lighter-touch, 3–4 day re-check of your DPDP posture a year on — regulatory changes, new tools, new vendors, and any drift since your last assessment. Available exclusively to past DPDP Readiness Assessment clients.
Discuss Re-Assessment →