Services
Engagements shaped around your requirements.
Vortigen Cyber provides independent technical assessment, incident support and strategic advice. Scope is agreed around the needs of the organisation, the systems involved and the level of assurance and support required.
Security assessments
Independent security assessments and penetration testing of internal and external infrastructure, networks, wireless, remote access services and business-critical systems.
The work combines manual testing, targeted automation and technical validation. Findings are reviewed in context so reporting focuses on genuine exposure rather than a long list of scanner output.
- Internal and external infrastructure testing
- Network and wireless security assessments
- Vulnerability assessment and verification
- Security architecture review
- Remediation advice and retesting
Web application and API security assessments
Manual security testing of websites, web applications and APIs to identify weaknesses that could expose data, accounts or business functions.
Testing is tailored to how the application works, including the roles, workflows and trust boundaries that automated scanners often miss.
- Authentication and access control
- Session management
- Input validation and injection risks
- Business-logic weaknesses
- API security and sensitive-data exposure
- Remediation advice and retesting
Microsoft cloud security reviews
Reviews of Microsoft environments including Microsoft Entra ID, Microsoft 365, Azure, Dynamics 365 and Power Platform.
The assessment considers identity, privileged access, configuration, logging, governance and data protection. Automated recommendations are checked manually and assessed against the organisation's needs.
- Identity and access management
- Multi-factor authentication and Conditional Access
- Privileged roles and administrative accounts
- Microsoft 365 and Azure configuration
- Security monitoring and audit logging
- Data protection and compliance controls
Incident response and forensic investigation
Support before, during and after a cyber incident.
A robust response depends on responsibilities, decision-making, communications, evidence handling and access to specialist support being agreed before an incident occurs. Vortigen Cyber helps organisations put in place a practical incident response framework, test how it works and improve it over time.
When an incident is suspected or confirmed, Vortigen can help establish what happened, identify the systems and data affected, preserve evidence and support practical recovery decisions.
- Incident response framework and playbooks
- Preparedness exercises and testing
- Initial incident assessment
- Technical and forensic investigation
- Evidence collection and preservation
- Compromise scoping
- Recovery advice
- Post-incident review
Security advice and governance
Independent advice for boards, senior leaders and organisations that need a clear view of cyber risk.
Support can include security strategy, governance, risk reviews, incident preparedness and independent assurance. Vortigen also supports organisations preparing for investment, growth or changes in ownership.
- Board and executive advice
- Cyber security strategy
- Risk and control reviews
- Incident preparedness exercises
- Security programme assurance
- Investor and transaction readiness
Typical outputs
Clear evidence and clear next steps.
Executive summary
A concise view of material exposure, impact and priority actions.
Technical report
Evidence, risk, affected systems and practical remediation guidance.
Prioritised plan
Actions ordered around the routes that most effectively reduce risk.
Follow-up
Discussion, clarification and retesting where required.
Discuss a requirement
Start with the problem, not a product.
We work with you to identify the issue and the required outcome.