Cybersecurity capabilities

Start with the security decision in front of you.

Choose the situation closest to yours. Yojo will confirm the relevant service, the information needed to define it, and whether the requirement is a fit.

Decision path

Start with the situation, not a service name.

Choose the closest operating concern. The service boundary is confirmed only after the environment, decision owners and available information are understood.

Security advisory and assessments

The current picture is incomplete

Leaders have findings, audit points, or technical concerns but no single view of which issues need a decision first.

Questions to resolve

  1. Which systems and dependencies matter to the decision?
  2. Which concerns need immediate treatment, further analysis, or explicit acceptance?

What to prepare

  • Nominate a sponsor and the people authorised to confirm business and technical information.
  • Provide agreed records, system access, and current ownership information in a safe and timely manner.
Frame a security assessment

Cybersecurity starting points

  1. 01

    Security advisory and assessments

    The current picture is incomplete

    Leaders have findings, audit points, or technical concerns but no single view of which issues need a decision first.

    Questions to resolve

    1. Which systems and dependencies matter to the decision?
    2. Which concerns need immediate treatment, further analysis, or explicit acceptance?

    What to prepare

    • Nominate a sponsor and the people authorised to confirm business and technical information.
    • Provide agreed records, system access, and current ownership information in a safe and timely manner.
    Frame a security assessment
  2. 02

    Governance, risk and compliance

    Decision rights are unclear

    Policies name functions but do not show who can approve treatment, accept exposure, fund remediation, or resolve a control exception.

    Questions to resolve

    1. Who can make each security decision and who implements it?
    2. Which obligations apply to the agreed part of the organisation?

    What to prepare

    • Confirm applicable legal, regulatory, contractual, and internal obligations with the appropriate advisers.
    • Nominate decision-makers, control owners, and people responsible for maintaining records.
    Discuss a governance requirement
  3. 03

    Cloud, application and infrastructure security

    The technology estate has changed

    Migration, rapid deployment, acquisition, or platform growth has changed trust boundaries and ownership faster than review practices.

    Questions to resolve

    1. Which workloads and data flows are most important to business operations?
    2. Which human and machine identities can cross important trust boundaries?

    What to prepare

    • Provide an accurate inventory, architecture information, and named owners for the included assets.
    • Arrange least-privilege access and safe working windows for the agreed review activities.
    Frame a technical security review
  4. 04

    Managed detection and response

    Alert queues lack business priority

    Teams receive signals without enough asset, identity, or business information to decide what deserves investigation first.

    Questions to resolve

    1. Which systems, identities, and behaviours require detection coverage first?
    2. Which useful signals are available and where are the known blind spots?

    What to prepare

    • Name technical and business contacts who can receive, assess, and act on escalations.
    • Provide authorised access to the telemetry sources included in the operating agreement.
    Review detection and escalation coverage
  5. 05

    Incident response and recovery

    The response plan is untested

    A document exists, but decision-makers and operating teams have not worked through a realistic sequence together.

    Questions to resolve

    1. Who can authorise containment, downtime, external communication, and recovery?
    2. Which services must recover first and what do they depend on?

    What to prepare

    • Ensure the relevant executive, technical, legal, communication, and operational decision-makers participate.
    • Provide current plans, contacts, service dependencies, supplier information, and known response constraints.
    Plan an incident-readiness session
  6. 06

    Cybersecurity specialist support

    A delivery commitment needs temporary capacity

    The internal team has a defined security task but cannot complete it within the required working window.

    Questions to resolve

    1. What work must the specialist complete or support?
    2. Who owns delivery and which decisions remain with the client?

    What to prepare

    • Name the delivery owner and provide timely direction, decisions, supervision, and feedback.
    • Provide approved access, equipment, internal policies, safe working arrangements, and required induction.
    Define a specialist support requirement

Six connected starting points

Compare the decision each service helps frame.

  1. 01Security advisory and assessmentsWhich systems and dependencies matter to the decision?
  2. 02Governance, risk and complianceWho can make each security decision and who implements it?
  3. 03Cloud, application and infrastructure securityWhich workloads and data flows are most important to business operations?
  4. 04Managed detection and responseWhich systems, identities, and behaviours require detection coverage first?
  5. 05Incident response and recoveryWho can authorise containment, downtime, external communication, and recovery?
  6. 06Cybersecurity specialist supportWhat work must the specialist complete or support?