Experts in Information
Security

TRUSTED SERVICES
CREST LogoPen Test LogoOVS Mobile LogoOVS Apps LogoCyber Essentials Certification
PCI DSS CertificationBSI CertificationBSI Certification

ISO 27001
Consultancy
and Auditing

Guaranteed ISO 27001 certification
Tailored ISMS implementation
Highly skilled auditors
Find out more

GDPR Consultancy
and Training Specialist

Pragmatic and tailored
approach to GDPR compliance
Find out more

Leading PCI QSA
Company

Pragmatic and tailored
approach to PCI DSS
compliance
Find out more

Trusted and
Accredited
Penetration Testing

Maximising the benefits from your pen testing. Assessment tailored to your organisation’s needs. Free retest of high or critical vulnerabilities.
Find out more

URM makes
Cyber Essentials
certification easy

Achieve Cyber Essentials and Cyber Essentials Plus certification with our team of qualified experts.
Find out more

Team of Experienced
SOC 2 Consultants

If you need to comply, attest, or prepare for
a SOC 2 report (be that Type 1 or Type 2)
URM provides a full range of services.
Find out more

On Thursday 11 July,  Lisa Dargan, Matt Thomas and Martin Jones from URM completed the
3 Peak Challenge (Ben Nevis, Scafell and Snowdon) in order to raise funds for Sarcoma UK and specifically a leiomyosarcoma (LMS) research project in memory of Martin’s wife who lost her life to LMS in 2021.

The 3 Peaks Challenge was organised and co-ordinated by Challenge Central. Alan Cook, Events Director at Challenge Central supporting and validating the event, has been impressed by their performance, commitment and resilience.

“Where teams are looking to complete the 3 Peaks Challenge within 24 hours, we typically allocate 11 hours to travelling and 13 hours to hill time, i.e., getting up and down the 3 mountains.  Whilst the travel time was impacted by the closure of the main A82 trunk road between Fort William and Glasgow, Matt, Lisa and Martin smashed the hill time target by over an hour in a very impressive 11 hours and 51 minutes, and in line with their 23 hour target.    I could see how super motivated they were to complete the challenge and raise money for a very worthy cause and in memory of Martin’s wife, Win.  I was also conscious of them feeling they didn’t want to let down those people who had already generously donated money to Sarcoma UK.   The Team was positive from start to finish and was very cohesive constantly supporting each other and showed great resilience in dealing with a range of adversities including testing weather conditions on 2 of the mountains, injuries and equipment failure (shoes falling apart). What impressed me just as much as their performance was the commitment of one of their work colleagues, Rachael, to drive in excess of 300 miles to support them on the last leg of the challenge at Snowdon.  Amazing!
In summary, it was a pleasure to support such a determined trio achieve their goals and help raise money for a very important Sarcoma cancer research project.”

If you would like to donate to this fund, please go to this Just Giving page.

URM Consulting Services (URM)

URM Consulting Services (URM) is dedicated to providing high quality, cost-effective and tailored consultancy and training in the areas of information and cyber security, data protection, business continuity and risk management.

URM's mission, through its consultancy, cyber testing, auditing and training services, along with risk management software (Abriska), is to assist you achieve the levels of information security, data protection and business continuity which are commensurate with the objectives and culture of your organisation, and which also meet international standards, regulations/legislation and recognised best practice.

Having assisted over 400 organisations achieve ISO 27001 certification, URM is ideally placed to help you certify your information security management system against the Standard or transition from the 2013 version of the Standard to the 2022 version.

Find out more

URM's services include conducting data protection impact assessments (DPIAs), developing records of processing activities (ROPAs) and conducting data subject access request (DSAR) redactions.

Find out more

URM’s qualified security assessors (QSAs) pride themselves on their pragmatic approach to both compliance and assessments and will work with you to find the most appropriate and sensible way for you to meet the requirements of the Standard, including v4.0.

Find out more

As an accredited Cyber Advisor (Cyber Essentials) and Certification Body, URM is ideally placed to provide you with reliable and cost effective cyber security advice and help you achieve Cyber Essentials and Cyber Essentials Plus certification.

Find out more

As a CREST-accredited organisation, URM is able to provide penetration testing services against all assets associated with your organisation, location or service, e.g., external and internal networks, cloud environments, web or mobile applications.

Find out more

If you’re looking to understand whether SOC 2 is the right approach for you, what efforts are required to comply or attest, or prepare for a SOC 2 report (be that Type 1 or Type 2), URM can provide you with a full range of services.

Find out more
Our experts are the ones to trust
when it comes to your cyber security
CREST LogoPen Test LogoOVS Mobile LogoOVS Apps Logo
PCI DSS CertificationCyber Essentials CertificationBSI CertificationBSI Certification
WebinarSOC 2: What, Why and How
11:00 am
,
Wednesday
25
September
2024

In this webinar, URM’s consultants guide you through all the key aspects of SOC 2 including pitfalls to avoid and the success criteria.

Read more
USB stick, Padlock, Keys

5 Golden Rules for Implementing ISO 9001

Sue West
|
Senior Quality Management Consultant at URM
Published
25
July
2024

URM’s blog offers advice and guidance on how to implement and maintain an ISO 9001-aligned QMS and receive the maximum benefit from your investment.

Read more
Thumbnail of the Blog Illustration
Data Protection
Published
18/7/2024
ICO Enforcement Action January – June 2024

URM’s blog reviews ICO enforcement activities for the 1st half of 2024, highlighting trends & shifts in how it enforces against data protection breaches.

Read more
Thumbnail of the Blog Illustration
Cyber Security
Published
12/7/2024
Access Control, Administrative Accounts and Password-Based Authentication in the Cyber Essentials SAQ

URM’s blog offers advice on answering questions in the Cyber Essentials SAQ which relate to access control, admin accounts and authentication methods.

Read more
Thumbnail of the Blog Illustration
Information Security
Published
10/7/2024
A Guide to the Certificate in Information Security Management Principles (CISMP)

URM’s blog discusses everything you need to know about the CISMP, including its benefits, who it’s suited to, the topics the CISMP covers, and more.

Read more
"
Enjoyed the redacting exercise at the end, which was interesting to see how people would redact the information differently I found this really useful to apply to SARs I might receive going forward, and that it's down to interpretation.
How to Manage Data Subject Access Requests (DSARs) Course