Written advisory report
- Findings by area
- Low, medium or high risk ratings
- Recommendations
- Suggested owners
Data & Privacy Advisory
Data and privacy advisory is an independent review for Australian organisations with a bespoke platform or CRM where no one has recently asked the hard questions about hosting, access, backups or breach response. We sit with the platform developer, document the answers and produce a risk rated plan leadership can hand to its MSP.
Describe the problem in a sentence or two. Please do not send credentials or sensitive records.
The accountable team stays involved from scoping through the final walkthrough. Specialist capability is added where the evidence needs it, with responsibilities agreed before work starts.
Deliverable status
A fixed price quote for one nominated platform is agreed before work starts. The Pricing page explains how fixed scope advisory and follow on delivery are handled.
Scope
Recent work
Method
Kick off
Discovery
Draft
Walkthrough
A custom CRM was built years ago. The MSP runs the network and devices. Someone still needs to look at the software itself as well. The bespoke platform's developer may be the only person who fully understands it. Leadership sits between them.
The OAIC's Notifiable Data Breaches reports regularly identify compromised credentials, human error and access control failures among breach causes.
The answer is not a two hundred page audit. It is an independent review of hosting, encryption, access, backups, supply chain and incident response, with the answers and next steps written down.
Choose the right starting point
Boundaries
Triggers
Practical details
No. We are not your MSP and we do not want to be. The MSP runs the network, devices and infrastructure. We sit at the application and data layer, often the bit no one is reviewing right now. The report is written so your MSP can pick up the actions that are theirs to do.
Scoping call