Cyber maturity assessment
Uncover the security gaps your dashboard isn't showing you.
Benchmark your cyber posture across six core domains. Get a pragmatic maturity score, identify priority gaps, and receive an executive briefing built for board-level clarity.
What gets assessed
Governance & Risk
Ownership, accountability and readiness to evidence your controls.
Identity & Access
Who can get in, with what, and how tightly it is controlled.
Data & Cloud Protection
Where business data lives, how it is configured and whether you can recover it.
Infrastructure & Endpoints
Remediation discipline and device protection.
Detection & Response
Stopping fraud, spotting intrusions and rehearsing the response.
Third-Party & AI Risk
Supplier assurance and governance of AI tools in day-to-day use.
How your result is read
Answers are normalised to a common scale, weighted by question and domain, and read as a risk posture rather than a single precise number. "I don't know" is recorded as a visibility gap, not a failure. Read the methodology.
- 0–19ReactiveSecurity happens after something breaks. Exposure is largely unknown.
- 20–39Compliance-DrivenEffort is shaped by audits and customer questionnaires rather than real risk.
- 40–59StructuredCore controls are defined and mostly applied, with visible gaps.
- 60–79ProactiveControls are owned, measured and tested before incidents force the issue.
- 80–100Exposure-LedInvestment follows measured exposure, evidenced and continuously improved.
What you get back
An AI-written executive summary
Written for a board audience, grounded in your specific answers, industry and size.
Your top three gaps
The weakest answers, what each one means for the business, and the engagement that closes them.
A record you can revisit
Create an account to keep every assessment and track how your score moves.
