Service

Threat Informed Defence

Defence built from the threat up, not the checklist down. We combine real-time threat intelligence, MITRE ATT&CK-aligned assessment methods, and New Zealand context to deliver practical recommendations tailored to your environment.

How we run an engagement

01

Crown jewel identification

Assess critical assets, systems, and data. Understand where risk concentration sits before mapping controls to it.

02

Control and detection review

Evaluate detection coverage, alert quality, incident response playbooks, and business continuity readiness against your actual threat profile.

03

MITRE ATT&CK mapping

Align current controls against relevant adversary tactics and techniques. Identify gaps in prevention, detection, and response with specificity — not generics.

04

Threat chain analysis and hunting

Examine kill chains affecting backup architecture, recovery testing, and continuity planning. Hunt for evidence of adversary presence across your environment.

What you get

  • Security posture assessed against real, active adversary tactics
  • Controls prioritised where they change outcomes — not where they look good
  • Risk quantitatively linked to threat intelligence data
  • Clear maturity baseline you can track over time
  • Practical detection and response improvements your team can implement

Why it matters

Most assessments tell you what controls you have. Ours tells you if they work.

Checklist-based assessments measure compliance, not resilience. We map your controls against the specific tactics and techniques adversaries use against organisations like yours. The output is a prioritised improvement plan grounded in real threat data — not a framework gap report.

Find out where your defences actually stand

A conversation with Tom takes 30 minutes. We will tell you honestly whether a threat-informed defence assessment is the right next step for your organisation.

Talk to Tom