Security & Compliance

EDR, SIEM, IAM and zero trust security platforms

Find partners

Bayside Cyber Consulting Limited

Bayside Cyber Consulting is a Preston-based information and cyber security consultancy helping organisations achieve ISO 27001 compliance and certification. Services include Cyber Essentials support, data protection and privacy advice, human resource risk management and cyber security consultancy for the GB smart metering sector. Consultants hold CISM, Certified Data Protection Officer and ISO 27001 Lead Implementer credentials, with experience across public sector bodies, corporations and UK energy suppliers.

Preston

Bioteknik

Bioteknik provides secure IT recycling and data destruction services for businesses across London and the South East, including Kent, Essex, Reading and Cambridge, with UK-wide collections for larger jobs. Services cover WEEE-compliant IT equipment disposal, certified data destruction compliant with GDPR and UK data protection laws, hardware refurbishing, refurbished equipment sales, and computer repairs from its Canterbury workshop, serving education, corporate and public sectors.

Canterbury

Collevo Consulting UK Ltd.

Collevo Consulting is a Bedford-based consultancy helping UK businesses achieve ISO 27001 certification by building information security management systems around their existing operations, so evidence comes from real work rather than audit preparation alone. It also covers ISO 42001 and ISO 20000, with AI governance and assurance services. Clients include managed service providers, engineering firms, logistics and supply chain businesses, and technology or SaaS companies.

Bedford

Compliance Direct Solutions Ltd

Rochdale-based consultancy delivering data protection and information security compliance services to businesses since 2019. Services include outsourced data protection officer support, GDPR compliance audits and a GDPR support desk, ISO 27001 gap analysis, ISMS implementation and internal auditing, plus CREST-certified penetration testing of networks, web, mobile and cloud environments. Also provides KnowBe4 cyber security awareness training on fixed-cost terms without subscriptions.

Rochdale

Computer Waste Recycling

Computer Waste Recycling provides nationwide IT asset disposal and recycling for businesses, with collections from London, Bristol, Peterborough, Leicester, Cambridge and Birmingham. The company recycles computers, laptops, servers, networking equipment, printers and monitors, and offers certified data destruction including hard drive shredding and onsite wiping. Each collection follows a chain-of-custody process with inventory audits, reporting and certification.

Leicester

CyberSecuritiesUK

CyberSecuritiesUK is a Liverpool-based accredited Certification Body for the UK Government-backed Cyber Essentials and Cyber Essentials Plus schemes. The company helps businesses demonstrate and improve their cyber security and resilience against online threats, working with around 100 customers each year. Alongside certification, it delivers IT support and compliance-related services, plus a free tool that checks whether an email address has appeared in a known data breach.

Liverpool

Digital Data Governance

Digital Data Governance is an IASME certification body helping UK organisations achieve Cyber Essentials and Cyber Essentials Plus certification. Each client works with a named UK-based assessor, with fixed fees, pre-assessment checks, unlimited retests and a live tracker included. A premium three-year package adds monthly scanning for ongoing compliance. The company also runs a partner programme allowing MSPs and advisers to offer certification under their own brand.

Southend-on-Sea

EthicAI

EthicAI is a University of Cambridge spinout providing AI risk assurance to help organisations deploy AI systems responsibly. Its BeehAIve platform is a scaleable AI assurance SaaS tool for detecting, assessing and governing AI risk before deployment. The company specialises in the global AI regulatory and standards environment, helping clients prepare for cross-border compliance and achieve third-party evidenced assurance. EthicAI serves public sector, financial services and professional services organisations and has worked with a legacy UK public sector body to map AI initiatives organisation-wide.

London, United Kingdom

Ex Cathedra Solutions Limited

ICT and management consultancy working with public and private sector organisations. Provides data protection officer (DPO) services, including a long-running contract supplying DPO support to a London Borough and its schools since 2018. Also publishes free DPO advice videos covering topics such as NHS data use and rights of access to relatives' medical records.

Barry

FIOR Group

FIOR Group provides the AI Agent Enforcement Gateway, which assigns cryptographic identities to AI agents and enforces least-privilege permissions before any action executes. The gateway governs both external agents arriving at an organisation's boundary and internal agents operating within it, blocking policy breaches in 0.3 milliseconds. FIOR Group offers pre-built Zero Trust templates that enable organisations to enforce AI agent governance in under an hour. The platform provides a full audit trail for every agent action, covering identity, permitted scope and enforcement decisions.

London, United Kingdom

Faultline Cyber & Security Ltd

Belfast-based consultancy assessing business exposure across cyber security, physical access, suppliers, governance and operational resilience. Services cover exposure assessments, governance, risk and compliance support, supplier and third-party risk reviews, and operational resilience planning. Works with directors and leadership teams to identify hidden risks before committing to tools, certification or technical testing.

Belfast

Holistic AI

Holistic AI provides an enterprise AI governance platform covering discovery, risk management, testing and compliance enforcement for organisations deploying AI at scale. The platform identifies shadow AI across enterprise ecosystems, tests models and agents for bias and risk across 40 or more risk dimensions, and automates compliance workflows for regulations including the EU AI Act, where non-compliance carries a maximum fine of €35 million under Article 99. Features include AI red teaming, LLM testing, bias auditing, policy enforcement and reporting. Holistic AI was named a Challenger in the 2026 Gartner Magic Quadrant for AI Governance Platforms.

London, United Kingdom

Image Angel

Image Angel provides invisible forensic watermarking technology for content platforms, enabling operators to trace the source of leaked content. Watermarks are embedded imperceptibly into images and media files at the point of distribution, preserving content quality while providing a mechanism for rapid leak attribution. The service is built for compliance with the UK Online Safety Act and the EU Digital Services Act, supporting platform operators in meeting their obligations under both regulatory frameworks.

North West, United Kingdom

Intelance Digital Enablement Services

Intelance is a Uxbridge-based UK advisory and assurance firm helping leadership teams assess, build and operate trustworthy technology, AI, cyber and data governance. Services include ISO 27001 consulting and managed services, Cyber Essentials certification support, AI governance aligned to ISO/IEC 42001 and the EU AI Act, data governance, enterprise architecture, supplier assurance reviews, independent technology audits and M&A due diligence. It provides independent assurance when boards, investors, auditors or insurers require proof.

Uxbridge

MiTech Solutions Limited

MiTech Solutions Limited provides IT and compliance consultancy to professional services, healthcare and technology businesses. Services include ISO 27001 information security management system implementation, Lexcel auditing and consultancy, Cyber Essentials support and IT consultancy. The founder is an ISO and Lexcel certificated auditor with a background in the legal industry, and the company has operated globally for over 20 years.

Norwich

Regola Digital Consulting

Regola Digital Consulting is a Devon-based Cyber Essentials Certification Body working with IASME to assess organisations across the UK through online assessment. It helps small businesses improve resilience to cyberattacks, guiding them towards Cyber Essentials, Cyber Essentials Plus, Cyber Assurance and ISO27001 certification. Having assessed nearly 150 organisations, it provides practical advice and hands-on support to businesses at any stage of their cyber security journey.

Torquay

RightCue

RightCue provides cyber security compliance and assurance services to organisations in defence, healthcare, financial services and technology. An NCSC Assured Service Provider and CREST accredited, the company supports certification against ISO 27001, Cyber Essentials, IASME and other frameworks, alongside penetration testing, IT audits, vulnerability assessments, virtual CISO and data protection officer services, ISMS consulting, and cyber incident response. Operating since 2009 from Basingstoke.

Basingstoke

Romano Security Consulting Ltd

Romano Security Consulting is a cyber security consultancy based in Macclesfield that helps businesses achieve compliance with frameworks including ISO 27001, SOC 2, ISO 42001 and the DSP Toolkit. Services include virtual CISO support, cyber security audits, risk management, incident management and business continuity. The company designs and implements Information Security Management Systems and delivers training courses covering cyber security awareness, quality management and environmental management systems.

Macclesfield

SFX Tech

SFX Technology is a Cardiff-based IT asset disposal and WEEE recycling company serving organisations across Cardiff and South Wales. It collects redundant computers, laptops and other electronic equipment from businesses, with certified data destruction on every device. As a T11 licensed facility it refurbishes equipment for reuse where possible, and operates an asset buy-back scheme for high-value hardware such as laptops and servers. Collections are free for qualifying quantities.

SecurityMetrics, Inc. (UK)

SecurityMetrics provides PCI DSS compliance and cybersecurity services to small businesses, enterprises and sectors including healthcare, retail, hospitality and government. Offerings cover PCI audits, HIPAA and GDPR compliance support, HITRUST and CMMC assessments, ASV vulnerability scanning, penetration testing, card and PII data discovery, incident response with forensic investigation, and workforce training in cybersecurity, PCI and HIPAA.

Northampton

ServQual

ServQual is a Bracknell-based cyber security and compliance company offering governance, risk and compliance services alongside its SUSAN platform, an AI-driven tool covering privacy management, continuous monitoring, automated data discovery and third-party risk. Services include ISO 27001, SOC 2, GDPR and UK GDPR readiness, DORA and NIS2 resilience, managed SOC, Microsoft and CyberArk identity security, AI and LLM security testing, incident response and corporate training.

Bracknell

TMW Resilience

TMW Resilience helps organisations meet regulatory and cyber security requirements through AI Governance as a Service, Cyber Essentials programmes, TISAX and ISO certification support, security health checks, a virtual DPO service, cyber attack recovery planning and NHS DSPT compliance. Based in Leamington Spa, the company combines regulatory knowledge with operational experience to turn compliance obligations into practical, actionable outcomes.

Leamington Spa

Think Cyber Security

Think Cyber Security develops Redflags, a human cyber risk management platform that combines on-device behavioural telemetry with pre-emptive nudges delivered at the point of decision. Unlike traditional security awareness training, Redflags monitors what employees actually do and intervenes in real time when risky behaviours occur, covering risky clicks, data mishandling and policy violations. The platform also provides visibility into AI tool usage and applies controls to keep organisations compliant. Reporting tracks behaviour trends, risk reduction and engagement over time.

London, United Kingdom

Tikos

Tikos provides AI assurance technology for organisations responsible for AI systems that affect health, safety or rights. The TIKOS platform includes Evaluate for AI model and system auditing, assessment and compliance mapping, Explain for transparency and explainability features, and Explore tools, designed for use throughout the AI system lifecycle. It maps to EU AI Act, NIST AI RMF, GDPR Article 22, ISO 42000 and sectoral regulations from the FCA and MHRA. Sectors served include defence, healthcare, critical infrastructure and financial services.

South West, United Kingdom

Showing 337–360 of 364 providers

Search all 364 providers

Are you a Security & Compliance provider?

Get listed and reach thousands of potential customers looking for security & compliance services.