Skip to main content
Operational Security

Security & Confidentiality

We handle sensitive information for every engagement. Our security practices reflect the same standards we advise our clients to implement.

Data Protection Practices
  • All client communications encrypted in transit using TLS 1.3
  • Secure document exchange protocols with access logging
  • No cloud storage of sensitive client data without explicit written consent
  • PGP encryption available for highly sensitive communications
  • Data retention policies aligned with GDPR minimisation principles
Confidentiality Standards
  • All engagements conducted under mutual NDA from first contact
  • No client names disclosed publicly — ever
  • No project details shared without explicit written consent
  • Case studies thoroughly anonymised with client approval
  • Chinese wall procedures for competitive engagements with conflict disclosure
Operational Security
  • Device security: Full disk encryption, secure boot, hardware security keys
  • Network security: VPN mandatory on untrusted networks, secure DNS
  • Access control: Principle of least privilege applied to all project data
  • Incident notification: Immediate notification protocols for any suspected breach
  • Clean desk: No sensitive materials left unattended or visible during travel
Insurance & Liability
  • Professional Indemnity (E&O) Insurance: €2M coverage
  • Cyber Liability Insurance: Coverage for data handling obligations
  • Contractual protections: liability caps, warranties, and indemnification provisions
  • Insurance certificates available upon request during engagement discussions
Secure Communication Methods
  • PGP key available on request for encrypted email
  • Signal available for urgent or sensitive communications
  • Virtual meetings conducted on end-to-end encrypted platforms only
  • Secure file transfer via client-approved portals or encrypted channels
  • No sensitive information transmitted via standard email without encryption

Questions About Our Security Practices?

We are happy to discuss our security measures in detail during initial consultations. All conversations are confidential.

Request Consultation