home / directory / services

// service

Privacy and data protection in Canada

Privacy impact assessments, program design, and breach readiness under Canadian and international law.

11 firms list this service

Full service · Greater Toronto Area, Ontario

3Tenets Consulting

Penetration testing, AI and LLM security, threat and risk assessment, incident resilience, privacy impact assessment and governance/vCISO services.

  • Pen testing
  • AppSec
  • GRC advisory
  • IR and forensics
  • Privacy
  • NIST CSF
  • CIS Controls
  • ISO 27001
  • MITRE ATT&CK
  • OWASP
Focused · Ottawa, Ontario

C3SA

Cybersecurity organization offering consulting, systems integration, training and cyber ranges, incident response and threat intelligence, with compliance work for ITSG-33, CMMC, CPCSC and SOC 2.

  • Architecture
  • IR and forensics
  • Threat intel
  • Privacy
  • ITSG-33
  • CMMC
  • CPCSC
  • SOC 2
Focused · Montreal, Quebec

CyberSpective

Montreal-based firm offering virtual CISO, privacy impact assessments, cybersecurity maturity assessments and audits, vendor risk, governance consulting, penetration testing and awareness training across Canada.

  • GRC advisory
  • Privacy
  • Pen testing
  • Training
  • Audit and certification
  • SOC 2
  • PIPEDA
Full service · Concord, Ontario

Cyberwall

Ten managed security services including 24/7 managed SOC, MDR, SIEM as a service, endpoint, identity and cloud security, plus consulting in incident response, penetration testing, compliance and privacy.

  • MDR and SOC
  • MSSP
  • IR and forensics
  • Pen testing
  • GRC advisory
  • +3
  • SOC 2
  • PIPEDA
  • HIPAA
  • PCI DSS
  • ISO 27001
Full service · Pointe-Claire, Quebec

EthiSecure Services Inc.

Quebec firm offering audit and compliance, security consulting and advising (architecture, vulnerability assessment, risk analysis, policies, virtual CISO and privacy officer roles) and training and certification.

  • Audit and certification
  • GRC advisory
  • Architecture
  • Vulnerability mgmt
  • Privacy
  • ISO 27001
  • PCI DSS
  • HIPAA
  • SOC 2
Full service · Toronto, Ontario

IRM Consulting & Advisory

Toronto consultancy offering virtual CISO, GRC, AI governance, security architecture, DevSecOps, privacy, penetration testing and awareness training for Canadian and US organizations.

  • GRC advisory
  • Audit and certification
  • Privacy
  • Pen testing
  • AppSec
  • +3
  • SOC 2
  • ISO 27001
  • CMMC
  • CIS Controls
  • GDPR
  • +3
Full service · Toronto, Ontario

ISA Cybersecurity

Compliance management, risk and privacy assessments, penetration testing, vulnerability management, cloud and data security, incident response and readiness, managed EDR and SIEM, awareness training.

  • GRC advisory
  • Privacy
  • Pen testing
  • Vulnerability mgmt
  • Cloud security
  • +4
Full service · Vancouver, British Columbia

Kobalt.io

Compliance and security firm offering gap assessments, audit readiness, vCISO, penetration testing and incident response, with a fixed-fee CPCSC programme for defence supply-chain vendors.

  • GRC advisory
  • Audit and certification
  • Pen testing
  • IR and forensics
  • MDR and SOC
  • +1
  • CPCSC
  • CMMC
  • NIST 800-171
  • SOC 2
  • ISO 27001
  • +6
Full service · Anjou, Quebec

Secur01

Anjou, Quebec firm offering managed protection and SOC-as-a-service, vulnerability scanning, penetration testing, vCISO, incident response planning, awareness training and Law 25 compliance evaluation; French and English.

  • MDR and SOC
  • Pen testing
  • Vulnerability mgmt
  • GRC advisory
  • Privacy
  • +3
  • Law 25
Focused · Halifax, Nova Scotia

Secure State Cyber

Cybersecurity consultancy with offices in Halifax and Toronto offering technical cybersecurity review, management and compliance support, GDPR and data privacy officer service, awareness training and threat intelligence.

  • GRC advisory
  • Privacy
  • Training
  • Threat intel
  • ISO 27001
  • GDPR
Full service · Ottawa, Ontario

TwelveDot Incorporated

Ottawa technology and security consulting practice offering virtual CSO, ethical hacking, cloud, mobile and IoT assessments, ISO 27001 implementation and audit, breach mitigation and incident response.

  • GRC advisory
  • Pen testing
  • Cloud security
  • Audit and certification
  • IR and forensics
  • +1
  • ISO 27001
  • OWASP