Cybersecurity & Privacy Consulting

Experts, No Matter Your Industry

Our cybersecurity and privacy consultants have experience in all major industry and business segments, both private and public.

Need Guidance on Cybersecurity or Privacy Issues? Our Experts Can Help You

In addition to our ISO-based information security consulting, JBW Group’s consultants use that same expert knowledge to assist with any cybersecurity or privacy issue you might have. For example, our consultants can help identify cybersecurity or privacy issues with processes, make recommendations for improvement and guide employees in implementing new systems.

Consultation services include, but are not limited to:

  • Business Continuity: Developing business continuity planning documentation.
  • Risk Management: Developing risk methodology and implementation.
  • Knowledge Management: Reviewing and updating documentation as directed.
  • Progress Reviews: Reviewing customer’s progress on issues, improvement activities, etc., between audits.
  • Evidence Collection: Gathering evidence for demonstrating conformance with multiple compliance frameworks.
  • Cybersecurity or privacy impact assessments
  • Guidance on ISO management system specification changes and advising on updates and transition requirements and specific impacts on your ISMS.
  • ISMS and PIMS Health Check: Assessing ISMS and/or PIMS readiness for internal and certification audits.

Other frameworks

While our focus is on the use of ISO standards as a foundation for information assurance, our experts continue to follow and implement other critical and alternative standards and relevant security guidance:

  • The National Institute of Standards and Technology (NIST): Including the NIST Cybersecurity Framework (CSF), Special Publications in the 800 series (SP800), and other guidance and implementation specifications.
  • Cybersecurity Maturity Model Certification (CMMC): This includes interpretations, guidance, and requirements related to the CMMC, Third Party
  • Assessment Organization’s, criteria, and guidance.
  • International Criteria: Including, for example, the General Data Protection Regulation (GDPR).
  • Privacy Compliance: The California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), along with other state-sanctioned personal identifiable information security and privacy controls.
  • CIS: Critical Security Controls Version 8 and the CIS Community Defense Model  Version 2.0.
  • Health Insurance Portability and Accountability Act (HIPAA) rules, interpretations, requirements, and criteria for Processors and Controllers.

 

How Can We Help?

Our advisory, consulting and second-party audit services are tailored to each company we serve.

Let's Talk

  • Trust
  • Plain Dealing
  • Tailored Services
  • Safety First
  • Attention to Details

“JBW Group ISO consultants had that rare diplomacy and empathy so necessary to build rapport with our management and get their support.”
—Financial Services Company