Our services
From IT audits such as SOC 2, ISAE 3402 and DigiD to risk management, compliance with ISO 27001, NIS2 and DORA and practical support with information security. Everything under one roof, from Eindhoven.
Overview
Six disciplines, one partner
Choose the service that fits your question, or describe your situation and we will think along about the right combination.
IT-Audit Services
Independent assurance reports for service organizations, prepared to the highest professional standards. Together we determine which type of report fits your situation and what your clients or regulators expect.
For whom: SaaS providers, hosting and service organizations
Security
From vulnerability scans and penetration tests to the implementation of security standards. Practical and risk driven: we test what really matters and report our findings clearly and reproducibly.
For whom: Organizations that want to know and strengthen their resilience
Compliance Services
We assess whether your organization complies with relevant laws, regulations and standards, and report clearly where you demonstrably comply and where you do not yet. No paper exercise.
For whom: Organizations under NIS2/DORA supervision, healthcare and government
Risk Services
Independent assessment of your IT risk management and internal controls, so you demonstrably stay in control of your IT risks, including towards regulators and accountants.
For whom: Risk, compliance and IT management
Internal Audit
Independent internal IT audits that objectively assess processes, systems and controls. No checklist, but clear findings and observations your organization can act on itself.
For whom: Organizations with an internal audit need or function
Secure Audit Platform
Our own digital audit platform: real-time insight into progress, secure exchange of evidence and clear reporting. Included with every audit.
For whom: Everyone who goes through an audit with us
How we work
A fixed, transparent process with our own platform as the common thread.
Introduction & scope
A no-obligation conversation about your question, framework and organization. You receive a clear quote with a fixed schedule.
Planning & fieldwork
Interviews, document review and testing according to the agreed work program. Short lines with your own auditor.
Findings & report
No surprises afterwards: we discuss findings along the way. You receive a clear report with our findings and conclusions.
Opinion & follow-up
Assurance report or certificate, plus a look ahead to next year. Continuous auditing instead of a single snapshot.
Looking for an IT auditor?
Every organization is unique. Get in touch for a no-obligation conversation about IT audit, compliance or risk management.