naar hoofdinhoud

Cyber Security

Build cyber security that holds up under scrutiny, from regulators, from auditors and from attackers. We work with financial institutions and regulated businesses to turn security from a set of policies into a capability you can evidence.

Scott Beange Projective Group

Scott Beange

Head of Data Management

Contact me

The threat landscape facing financial services has changed, and so has what supervisors expect.

Under DORA, NIS2, the FCA and PRA operational resilience regime, CBEST and TIBER-EU, you now have to show not just that controls exist, but that they work as intended. The question has moved from “do we have a policy?” to “does our security posture actually protect us?”

Our cyber security practice works with you across five connected domains: governance, risk assessment, security, threat intelligence and testing. Together they form a complete capability, from strategy through execution to continuous improvement, combining strategic governance, hands-on technical engineering, rigorous adversarial testing and continuous threat awareness. It is the full lifecycle that regulators, auditors and independent assessors expect to see in place.

How we work with you

Why Projective Group

We don’t stop at recommendations. From assessment through target operating model design to implementation, we help you close the gap between what regulators expect and what your organisation can demonstrate, with the confidence that controls will hold up when tested.

We combine deep cyber security expertise with our data, risk and compliance, transformation and payments capabilities, so you get a single team that understands both the technical controls and the regulatory context they sit in. And our threat intelligence is backed by our own fraud intelligence capability, giving you insight into real fraud typologies, not just generic threat feeds.

  • 20+ years supporting financial institutions with cyber and operational resilience programmes
  • 200+ client engagements delivered across cyber security and operational resilience
  • End-to-end Cyber Security Training design, covering controls, risk and the business across a three-lines-of-defence model, from broad staff-wide training to bespoke e-learning module development

Ready to strengthen your cyber security posture?

Speak to one of our experts today

Lightrock logo
Insights

Why vulnerability management is now a board-level operational resilience issue

This article looks at why supervisors and directors now expect vulnerabilities to be found, prioritised and fixed as a matter of governance, not just good housekeeping. Read it to see what that shift means for how your organisation manages, and evidences, its security posture.

We're ready to get started! Are you?