Resources
The actual deliverables.
Full sample reports, not summaries of them. Same structure, same finding language, same remediation sequencing you would receive — built in-house on representative scenarios. DATADEFENZ does not publish client names or logos. Every figure and finding shown on this site is drawn from sample deliverables built in-house.
ISO 27001 Gap Assessment
A full assessment against all 93 Annex A controls and clauses 4–10, with findings rated by severity, evidence notes, and a sequenced closure plan. The Annex A Explorer on this site is built from the same control taxonomy.
NIS2 Applicability & Gap Assessment
Applicability determined and documented first — essential, important or out of scope — then assessed against the Article 21 measures and the reporting clocks.
NIS2 Master Compliance Assessment
The workpaper we assess against, not a summary of it. Seven sheets: applicability against Articles 2–4, all 45 NIS2 provisions with the exact Directive phrasing alongside a plain-English requirement and a worked example, 123 mappings to ISO/IEC 27001:2022 clauses and Annex A controls graded by strength, an evidence, gap and action register, a management summary, and the scoring methodology. Yours to use — no email required.
Enterprise Risk Assessment
Manufacturing-sector sample. Scenario-based risk identification with a documented scoring method, treatment decisions, owners, and a board-level summary.
Security Awareness Program — Quarterly Report
What a quarterly run cycle produces: departmental risk scoring, simulation results by lure type, training completion, and the behaviour trend across the quarter.
Sample Policy Set
Information Security Policy, Access Control Policy and Backup Policy — written to be followed rather than filed. Shows house style, structure and control mapping.
Capability Overview
The full practice in one document: six service categories, engagement models, and how the compliance and technical halves are delivered by one team.
