OpenSpaces EmblemOpenSpaces
Home/Cyber Security

Cyber Security

Security practice people will actually follow

Awareness, data loss prevention and defensive practice, designed around how the organisation really works β€” because a policy nobody follows protects nothing.

The problem

What organisations run into

Policy without practice

A signed policy exists, and daily behaviour is unchanged, because nobody rehearsed the situations it covers.

Awareness training as a formality

An annual slide deck and a quiz, forgotten within a week.

Data leaving without a trace

Sensitive material moves through personal channels, and the organisation only learns about it afterwards.

What we deliver

How this domain works

  • Scenario-based awareness

    Sessions built on incidents that plausibly happen in this organisation, rehearsed rather than described.

  • Data loss prevention practice

    Classification, handling rules and channel discipline, applied to the client's real document types.

  • Incident rehearsal

    A walkthrough of who does what in the first hour, with the gaps written down.

  • Technical tracks

    Deeper programmes for security and infrastructure staff, scoped per engagement.

Engagement

From first conversation to handover

The same four steps apply across every domain. Order matters here β€” each step depends on the one before it.

  1. Scope

    A working session to name the capability gap and the constraints around it β€” budget, calendar, existing tools.

  2. Design

    A written programme outline: modules, hours, exercises and the deliverable each participant produces.

  3. Deliver

    Onsite, online or hybrid, in cohorts sized so every participant gets time with an instructor.

  4. Hand over

    Materials, assessment results and a short report on what the cohort can now do that it could not before.

Case study

Data Loss Prevention & Threat Defense Audit

Executed end-to-end security hardening, internal DLP policy compliance, and red-team phishing simulation for 200+ employees.

88%Phishing Vulnerability Drop
100%Endpoints Protected
<15mMean Incident Response Time
ISO/IECCompliance Alignment

For enterprises

Teams, not just seats

Capability assessment, a programme mapped to your roadmap, and placement or implementation support once the training is done.

Request a proposal β†’