THE RESOURCE VAULT

Practical Resources

ISO 27001 for the Boardroom: What Senior Leaders Actually Need to Know

Information security is now a board-level responsibility — but ISO 27001 reads like a manual for specialists. Here's what senior leaders actually need to understand, oversee and ask about it. Plus a free, board-ready one-page guide to download.

CyberSolace Novel Forensic Log Analysis Capability

When a financial services firm faced 100GB of breach data and no known indicators of compromise, traditional investigation methods collapsed. CyberSolace's AI-powered analysis delivered a second-by-second attack timeline — enabling precise, confident remediation.

France Sparks Europe’s Tech Resilience Pivot

France is turning “digital sovereignty” into something measurable: map dependencies, score resilience, and use procurement to shift the market. In a more fragmented geopolitical climate, expect other European states to follow—because heavy reliance on a few foreign platforms is a strategic continuity risk.

Cyber Risk in the Boardroom: The UK’s New Governance Code Explained

In April 2025, the UK Government published the Cyber Governance Code of Practice—a framework setting out the governance actions boards and directors must take to manage cyber risk. Reinforced by an October 2025 ministerial letter to UK business leaders, the Code establishes five principles with 22 specific actions covering risk management, strategy, people, incident response, and assurance.

Cyber Incident Response Self Assessment

A short, business-focused assessment designed to evaluate how well your organisation would respond to a cyber incident. It helps identify strengths, gaps, and the areas most likely to fail under pressure. The focus is on leadership, coordination, and recovery — not tools or technical jargon.

Is Your AI Secure? Try Our Self-Assessment Framework

With 80% of employees using unapproved AI tools and only 6% of organisations having an advanced AI security strategy, the gap between AI adoption and security maturity is creating unprecedented exposure. Our framework examines seven critical domains—from shadow AI and third-party vendor risks to regulatory compliance with the EU AI Act—helping organisations assess their AI security posture before incidents or enforcement actions force their hand.