Skip to main content
Promotional banner for the pentest readiness checklist
Steel FYI

Steel FYI

Practical security solutions for every budget

Visit Website

About

Steel FYI offers fractional information security and cyber security consultancy focused on small businesses, startups, and charities. Services include fractional CISO support, a transparent retainer to operate infosec tasks, and pragmatic ISMS design, implementation and operation to prepare organisations for ISO 27001 certification. The firm offers impartial audits of ISMS in line with requirement 9.2, help to understand GDPR compliance, and a 3-phased approach with typical timelines of around 3-6 months to build an evidence base for external audit. Steel FYI promotes a free 30 minute consultation and states a mission to provide affordable, practical security advice while funding pro bono advisory services for charities.

Related Vendors

Omni Group Consulting
Omni Group Consulting
Navigating Your Path to Certification Success

Omni Group Consulting, LLC offers consulting and advisory services for certification readiness and ongoing compliance. The firm provides gap assessments and internal audits (ISO 27001) executed to ISO 19011 and delivers a team of Information Security executives who serve clients in oversight and advisory roles, including virtual CISO (vCISO) engagements. Their services emphasize developing and implementing an information security program, managing company compliance requirements, producing audit artifacts and reporting metrics, and delivering employee awareness training and compliance audit observations. Omni positions itself to guide clients through certification journeys and to align security roadmaps with organizational strategy, culture, and resources.

View Profile ›
PCG DACH
PCG DACH
Transforming Your Cloud Security Landscape

Public Cloud Group (PCG) is a cloud and security services provider and certified partner of leading hyperscalers (AWS, Azure, Google Cloud). PCG offers cloud transformation, managed cloud operations, and AWS Managed Services alongside Compliance-as-a-Service and ISMS implementation. The company supports standards such as ISO 27001, TISAX, SOC2 and BSI C5 and guides clients "from gap analysis to audit." PCG also provides virtual CISO services, red team tests, Business Continuity services, Microsoft 365 security and cloud operations for Azure and Google Cloud. Services described include consulting, ISMS software implementation, and AI-powered continuous optimization and managed cloud operations.

View Profile ›
CyAdviso
CyAdviso
Cybersecurity Leadership Tailored for Fintech Success

CyAdviso provides virtual CISO (vCISO) services and cybersecurity consulting focused on fintech. Their vCISO offering delivers outsourced cybersecurity leadership, ongoing support, and strategic guidance while integrating with client IT teams. Services include initial gap assessments (noted for ISO 27001), policy development, implementation of security controls such as access management, threat detection and incident response, and continuous compliance monitoring. The team cites experience across frameworks including ISO 27001, PCI-DSS, SOC2 and GDPR. Typical delivery notes an initial assessment and strategy phase taking about 4 to 8 weeks followed by ongoing services. The site references pricing (e.g., "1499/ month") and invites prospects to book a free consultation.

View Profile ›
Promotional banner graphic asking if you are ready for PCI DSS 4.0 with a call-to-action to get the guide