Consultancy Packages

IT Governance is a leading global provider of IT governance, risk management and compliance consultancy solutions.
For more information about any of our services, or to get a tailored quote, please call us on +44 (0)333 800 7000 or request a call using our contact form.

COVID-19: remote delivery options

We would like to reassure our clients that all training and consultancy services will go ahead as scheduled during the current COVID-19 situation. As a company that fully embraces flexible and remote working, we have adjusted our delivery methods to allow us to provide consultancy services, penetration tests and training remotely where necessary. Please also refer to our COVID-19 policy.

Corporate and Enterprise Consultancy

If you are a large enterprise and our fixed-price solutions don’t suit your needs, we can create and deliver a consultancy service designed specifically for your organisation.

Learn more about our corporate and enterprise consultancy

Our consultancy expertise

Whatever your IT governance, risk management or compliance needs – and whatever your budget – we have consultancy options to suit you.

From fixed-price packaged solutions to bespoke consultancy services and corporate consultancy services, we can help you meet your objectives efficiently and cost-effectively.

Our unique combination of technical expertise and practical experience managing hundreds of projects around the world means we can deliver a complete solution, managing your project from start to finish.

However large or small your organisation, we can offer cost-saving and risk-reducing solutions based on international best practice and frameworks: we help small businesses meet their data protection requirements and advise global enterprises on their most security-critical issues.

We’re independent of vendors and certification bodies, and encourage our clients to select the best fit for their needs and objectives.

Our multidisciplinary teams can undertake rigorous penetration testing of your systems and networks, manage your implementation projects, and provide executive expertise to your board and develop a suitable risk mitigation strategy.

Want to know more about consultancy services? 

If you would like to know more about any of our consultancy options, or simply have a question, speak to one of our consultancy experts today.  

Contact us

Types of consultancy

Off-the-shelf consultancy packages

Live Online

With our Live Online consultancy service, you can buy consultancy support by the hour.

We will deliver the assistance you need by whatever combination of email, live chat, telephone and Webex that works for you, and at a time that suits you.

One of our consultants will usually be available within hours to answer your questions about subjects including the GDPR (General Data Protection Regulation) and data protection, ISO 27001 and information security, the PCI DSS (Payment Card Industry Data Security Standard), and the Cyber Essentials scheme.

Find out more about Live Online consultancy


Our fixed-price FastTrack consultancy packages have been designed with smaller organisations in mind.

They provide consultancy support over a set period to help you implement management systems and prepare for certification to international standards such as:

We also provide a DSP Toolkit FastTrack consultancy service for small and medium-sized organisations that must register with NHS Digital.

Find out more about FastTrack consultancy

Health checks

As well as our wide range of security and penetration testing solutions, we offer fixed-price health checks.

These evaluate your policies, processes and procedures to help identify and priorities the areas in which you need to take action to secure your organisation and meet international best practice.

Subjects covered include cyber security, business continuity management and IT service management.

Find out more about health checks

Consultancy packaged solutions

Our fixed-price packaged solutions combine consultancy services with books, software, training and professional services in bundles to suit all needs and budgets.

From basic support to full implementation, we can provide the right package for most organisations’ requirements – and if none of our off-the-shelf packages are right for you, we can create a bespoke package.

Our packaged solutions cover the Cyber Essentials scheme, ISO 27001-compliant ISMS (information security management system) implementation, and data breach response.

See all our consultancy packaged solutions

Bespoke consultancy

If none of our off-the-shelf solutions suit your requirements, we can put together a bespoke package that combines online support and on-site activity with whatever other products and services you need.

Learn more about bespoke consultancy

Consultancy by subject area

We offer consultancy in a wide range of subject areas, including:

GDPR and data protection consultancy

We can supply a wide range of consultancy services to help you achieve and maintain compliance with the DPA (Data Protection Act) 2018 and UK GDPR, and the EU GDPR. From conducting gap analyses and data flow audits to providing contract and legal services, and acting as your EU or UK representative, we have everything you need to comply with your data protection and data privacy obligations.

Find out more about GDPR and data protection consultancy

Cyber security consultancy

From cyber reviews and health checks to incident response consultancy and advice on preparing for SOC (System and Organization Controls) 2 audits, our cyber security experts can help organisations of all types and sizes – in both the public and private sectors – to address their cyber security risks efficiently and effectively.

We have also been approved to provide 69 cyber security services via the UK government’s Digital Marketplace for Cloud support.

Find out more about cyber security consultancy

ISO 27001 and information security consultancy

We’ve been leading ISMS implementation projects since our team carried out the world’s first successful ISO 27001 certification project.

To date, more than 800 organisations have achieved ISO 27001 certification with our help. From gap analyses and internal audits to our managed service, we have everything you need to ensure your ISO 27001 project is successful.

In fact, we’re so confident in our methodology that we offer a 100% certification guarantee.

Find out more about ISO 27001 consultancy

Security testing, Cyber Essentials and PCI DSS services

We can undertake security and penetration testing, perform annual audits for compliance with international standards and provide professional advice on your information security strategy.

As a PCI QSA (Payment Card Industry Qualified Security Assessor) company, we can provide the practical guidance you need to improve your security and comply with the PCI DSS. Our PCI DSS consultancy services include scoping, gap analysis, remediation support and audit.

We are also an IASME-licensed certification body for the UK government’s Cyber Essentials scheme.

Find out more about security testing, Cyber Essentials and PCI DSS services

ISO 9001 quality management consultancy

An initial free, no-obligation assessment will give you an overview of where you are against the requirements of ISO 9001 – and what you need to do to bring your existing practices into alignment with the Standard. This will include a fixed-price proposal of what our ISO 9001 consultants will do to help you implement a QMS (quality management system) and achieve certification to the Standard.

Find out more about ISO 9001 consultancy

ISO 20000 IT service management consultancy

We can help you achieve ISO 20000 certification for all or part of your service delivery organisation. Services can be provided in a flexible way to suit the needs of your organisation.

All ISO 20000 consultancy engagements are delivered using experienced consultants. We ensure that you are ready to identify conformance, strengths and weaknesses within existing processes and to drive improvements leading to full conformance to ISO 20000.

We will work with your organisation to prepare for the ISO 20000 audit and, following successful certification, our consultants will also be able to help you maintain conformance, providing whatever support you require on an ongoing basis either ad hoc or as part of a managed service contract.

Find out more about ISO 20000 consultancy

View all consultancy services

Why work with IT Governance?

Our consultancy delivery methods are guaranteed to suit all budgets, timescales and project approaches. We can deliver face-to-face consultancy wherever you need it and, thanks to our online delivery, we can also provide cost-effective remote consultancy and in-house training anywhere in the world.

  • Flexible, global delivery
  • Ongoing support
  • 100% certification guarantee
  • Free, no obligation advice
  • Transparent pricing
  • Unbiased, impartial and vendor-neutral
  • Integrated approach to compliance
  • Multi-disciplinary teams

What our customers say about our consultancy services

We can help you start a project within days of our first contact, and complete it well within your target dates, as our clients will tell you.

‘I would have no hesitation in recommending IT Governance to others. The main advantage was their flexibility. IT Governance tailored their services, to our specific needs.’

– Paul Berry, Senior Project Manager, Martin Dawes Solutions

‘We turned to IT Governance as they had the expertise and experience of helping organisations comply before and so took the stress away, allowing us to concentrate on other things.’

– Anil Pitalia, CEO, SpaMedic

Some of the companies we've worked with

No project is too big or too small for us.

We have a wide range of consultancy delivery methods, guaranteed to suit all budgets, timescales and project approaches – wherever you are, whatever your sector.

We’ve successfully executed projects with public- and private-sector organisations of all industries and sizes, from micros to multinationals, all around the world.

This website uses cookies. View our cookie policy
SAVE 10%