Access review
Who has access to what, including leavers, admin rights and shared accounts.
An independent check of the controls you already have. We compare what is configured, what is written down and what actually happens day to day, then show you where they differ.
Last reviewed

Policies and settings drift over time. People leave but keep access, firewall rules pile up, and documents describe processes nobody follows any more. An audit finds those gaps.
We review your controls against good practice and any standard you work to, then give you clear findings and evidence you can share with clients, insurers and auditors.
Who has access to what, including leavers, admin rights and shared accounts.
Firewall rules, segmentation, remote access and wireless setup.
Servers, laptops, Microsoft 365 or Google Workspace settings.
Whether documents match what people actually do.
Whether backups exist, are protected, and can be restored.
Findings, evidence and recommendations in a clear, shareable format.
Agree the scope and any standard to audit against.
Examine settings, records and documents.
Interview staff and sample real activity.
Findings, evidence and recommended fixes.
A broad review of your IT controls, accounts, devices and cloud services.
A focused review of firewalls, network design and remote access.
Security settings, sharing and identity configuration in your cloud tenancy.
A review against a specific standard such as ISO 27001, Cyber Essentials or PCI DSS.
A focused network audit is quicker than a full IT security audit.
Auditing against a formal standard adds evidence gathering.
The number of locations, networks and platforms involved.
Whether the report needs to be shared with third parties.
Every audit is quoted at a fixed price once the scope is agreed.
Get a quoteIt is an independent review of your security controls, checking that they are set up correctly, documented and working as intended.
An assessment looks at risk and what could go wrong. An audit checks your existing controls against a defined standard or policy and records the evidence.
Once a year is a sensible baseline, with additional reviews after major changes such as a new IT provider or office move.
Yes. The report includes a summary suitable for sharing with clients, insurers or auditors.
A short call, no obligation. We'll listen, ask a few questions and suggest a sensible first step.
Tell us a little about your business. We'll arrange a short, no-obligation conversation and suggest a sensible first step.
The Leather Market
London Bridge