6 firms name this framework on its website
IRM Consulting & Advisory
Toronto consultancy offering virtual CISO, GRC, AI governance, security architecture, DevSecOps, privacy, penetration testing and awareness training for Canadian and US organizations.
- GRC advisory
- Audit and certification
- Privacy
- Pen testing
- AppSec
- +3
- SOC 2
- ISO 27001
- CMMC
- CIS Controls
- GDPR
- +3
Kobalt.io
Compliance and security firm offering gap assessments, audit readiness, vCISO, penetration testing and incident response, with a fixed-fee CPCSC programme for defence supply-chain vendors.
- GRC advisory
- Audit and certification
- Pen testing
- IR and forensics
- MDR and SOC
- +1
- CPCSC
- CMMC
- NIST 800-171
- SOC 2
- ISO 27001
- +6
Secure State Cyber
Cybersecurity consultancy with offices in Halifax and Toronto offering technical cybersecurity review, management and compliance support, GDPR and data privacy officer service, awareness training and threat intelligence.
- GRC advisory
- Privacy
- Training
- Threat intel
- ISO 27001
- GDPR
SecureOps
Boutique managed security services provider offering co-owned MDR, custom 24/7 SOC services, infrastructure security (firewall, VPN, segmentation, SASE), vulnerability management and security staffing.
- MDR and SOC
- MSSP
- Vulnerability mgmt
- GDPR
Software Secured
Manual penetration testing for web, API, mobile, cloud, infrastructure, AI and IoT; secure code review, red teaming, threat modeling, PTaaS and developer training on the OWASP Top 10.
- Pen testing
- Red team
- AppSec
- Cloud security
- Training
- SOC 2
- HIPAA
- ISO 27001
- PCI DSS
- GDPR
- +1
Vumetric
Penetration testing and security assessment provider covering network, application, API, specialized (medical device, IoT, SCADA/ICS), red team and social engineering testing, plus vulnerability assessment.
- Pen testing
- Red team
- Vulnerability mgmt
- AppSec
- OT and ICS
- PCI DSS
- SOC 2
- ISO 27001
- GDPR
- OWASP
- +1
// more
Other frameworks
- ISO/IEC 27001
- SOC 2
- PCI DSS
- NIST Cybersecurity Framework
- NIST SP 800-171
- CMMC
- CPCSC
- ITSG-33
- CIS Controls
- PIPEDA
A firm appears here only when its own website names the framework. That is not a statement that it is certified, accredited, or qualified for it. Confirm with the firm. How the directory works.