Advisory & assurance

Meet your obligations with confidence

Compliance doesn’t have to be painful, and it shouldn’t be a tick-box exercise that leaves you no safer than before. We help you reach the standards that genuinely matter to your organisation.

For many organisations — especially those holding personal information, financial data or valuable intellectual property — compliance isn’t optional. We help you reach the right standard in a way that makes you more secure as well as compliant.

Standards we support

Where compliance meets real protection

  • New Zealand’s Privacy Act 2020 — your core obligation for handling personal information
  • ISO/IEC 27001 — the international standard for information security management
  • The NIST Cybersecurity Framework (CSF 2.0) — a widely recognised way to structure and measure your whole security programme
  • The New Zealand Information Security Manual (NZISM) — the NCSC’s benchmark, especially relevant if you work with or supply the public sector
  • GDPR and HIPAA — where you handle data subject to these cross-border regimes

We align our recommendations with trusted New Zealand guidance from the NCSC — including the NZISM — so you’re building on solid, locally relevant foundations.