Risk & Compliance
NDPA readiness: five questions to ask this quarter
Five practical questions that show how ready your organisation is for the Nigeria Data Protection Act 2023.
Sep 12, 2026 1 min read
Outsourced Assurance Roles
Compliance leadership without the full-time hire. Not every organisation needs, or can justify, a permanent in-house function, so we embed as your senior assurance leadership on a fractional, ongoing basis.
What is included
An outsourced DPO managing DPIAs, breach response, regulator liaison and ongoing NDPA and GDPR accountability.
An embedded lead to design, build and operationalise ISO 27001, 22301, 9001 and other management systems.
An outsourced lead auditor running independent internal audit programmes.
Ongoing oversight of your risk register, compliance calendar and regulatory reporting.
Roles
We act as your outsourced DPO, managing DPIAs, breach response, regulator liaison and ongoing NDPA and GDPR accountability.
We embed as your ISO Lead Implementer to design, build and operationalise management systems such as ISO 27001, 22301 and 9001.
We serve as your outsourced Lead Auditor, running independent internal audit programmes without the overhead of a full-time hire.
Ongoing oversight of your risk register, compliance calendar and regulatory reporting: senior expertise, fractional commitment.
Engagement models
A fixed number of days each month for steady, ongoing support.
A defined scope and end date, such as a certification project.
A small retainer with extra days available when you need them.
Day 1 to 2
Confirm scope, access and stakeholders.
Week 1
Review existing records, risks and obligations.
Week 2
Agree priorities and the first quarter's actions.
Ongoing
Monthly reports and regular check-ins.
Our approach
Understand your obligations, size and current maturity.
Typical deliverable: Needs summary
Agree the role, hours, reporting and escalation.
Typical deliverable: Engagement charter
Your named professional starts delivering against the plan.
Typical deliverable: Monthly work log
Regular reporting to your leadership on risks and actions.
Typical deliverable: Monthly report
Review the engagement and adjust as your needs change.
Typical deliverable: Quarterly review
FAQ
Risk & Compliance
Five practical questions that show how ready your organisation is for the Nigeria Data Protection Act 2023.
Sep 12, 2026 1 min read
Design, implement and certify management systems that turn compliance obligations into operating discipline.
Independent verification of management systems, technology, regulatory compliance and internal controls.
Vulnerability assessment and penetration testing, plus quarterly ASV scanning for PCI DSS.
Enquire about Outsourced Assurance Roles
Share a few details and a specialist will reply within one working day.
Tell us about your organisation and we will recommend the right path to compliance, within one working day.