Consulting Services
The people behind the platform.
When you need another person on the team rather than another tool, ShieldIQ's Dublin-based consultants step in. Fixed-scope engagements, plain-English deliverables, and the same team who built the platform you can run yourself.
Better together
Platform + consulting, integrated.
Most clients use the ShieldIQ platform for day-to-day GRC and call on our consultants for strategic projects, compliance programmes and incident response. Start with the free platform and add expert support when you need it.
Virtual CISO (vCISO)
Cost-effective security leadership for Irish SMEs. We act as your dedicated CISO β developing your security strategy, managing risk, overseeing compliance, and providing ongoing advisory support without the overhead of a full-time hire.
- Month 1 risk assessment & security baseline
- Q1 security roadmap & policy suite
- Ongoing quarterly reviews & board reporting
- Incident response planning & oversight
GRC Consultancy
Practical governance, risk, and compliance support tailored for Irish SMEs navigating GDPR, NIS2, DORA, and ISO 27001. We close compliance gaps, prepare you for audits, and build sustainable GRC processes.
- Compliance gap analysis & scoping
- Remediation planning & implementation
- Pre-audit preparation & documentation
- Ongoing compliance monitoring
Strategic Security Planning
Multi-year cybersecurity strategies that align with your business goals. We run workshops with your leadership team, define target security maturity, and build a practical implementation roadmap with clear milestones.
- Leadership workshops & stakeholder alignment
- Current vs target state assessment
- Multi-year implementation roadmap
- Vendor framework & technology selection
Risk Assessment
Structured risk assessment mapped to the framework of your choice, with a costed remediation plan you can hand to your board. Every finding links back to a control, every control links to an owner.
- Framework-aligned risk register
- 5Γ5 likelihood Γ impact scoring
- FAIR-lite quantitative loss expectancy
- Remediation backlog with effort estimates
Security Awareness Training
Role-based training, phishing simulations, and reporting you can evidence to an auditor. Delivered as a programme, not a one-off video β because awareness decays without reinforcement.
- Role-based training modules
- Quarterly phishing simulations
- Executive & board briefings
- Evidence exports for auditors
Incident Response Prep
Playbooks, tabletop exercises, and on-call retainer options. When the bad day comes, you already know who's doing what β and the regulator-facing clock doesn't catch you off guard.
- Playbooks for your top 5 scenarios
- Annual tabletop exercise
- GDPR/NIS2/DORA notification templates
- On-call retainer options