Experts in Information
Security

TRUSTED SERVICES
CREST LogoPen Test LogoOVS Mobile LogoOVS Apps LogoCyber Essentials Certification
PCI DSS CertificationBSI CertificationBSI Certification

ISO 27001
Consultancy
and Auditing

Guaranteed ISO 27001 certification
Tailored ISMS implementation
Highly skilled auditors
Find out more

GDPR Consultancy
and Training Specialist

Pragmatic and tailored
approach to GDPR compliance
Find out more

Leading PCI QSA
Company

Pragmatic and tailored
approach to PCI DSS
compliance
Find out more

Trusted and
Accredited
Penetration Testing

Maximising the benefits from your pen testing. Assessment tailored to your organisation’s needs. Free retest of high or critical vulnerabilities.
Find out more

URM makes
Cyber Essentials
certification easy

Achieve Cyber Essentials and Cyber Essentials Plus certification with our team of qualified experts.
Find out more

Team of Experienced
SOC 2 Consultants

If you need to comply, attest, or prepare for
a SOC 2 report (be that Type 1 or Type 2)
URM provides a full range of services.
Find out more

URM Consulting Services (URM)

URM Consulting Services (URM) is dedicated to providing high quality, cost-effective and tailored consultancy and training in the areas of information and cyber security, data protection, business continuity and risk management.

URM's mission, through its consultancy, cyber testing, auditing and training services, along with risk management software (Abriska), is to assist you achieve the levels of information security, data protection and business continuity which are commensurate with the objectives and culture of your organisation, and which also meet international standards, regulations/legislation and recognised best practice.

Having assisted over 400 organisations achieve ISO 27001 certification, URM is ideally placed to help you certify your information security management system against the Standard or transition from the 2013 version of the Standard to the 2022 version.

Find out more

URM's services include conducting data protection impact assessments (DPIAs), developing records of processing activities (ROPAs) and conducting data subject access request (DSAR) redactions.

Find out more

URM’s qualified security assessors (QSAs) pride themselves on their pragmatic approach to both compliance and assessments and will work with you to find the most appropriate and sensible way for you to meet the requirements of the Standard, including v4.0.

Find out more

As an accredited Cyber Advisor (Cyber Essentials) and Certification Body, URM is ideally placed to provide you with reliable and cost effective cyber security advice and help you achieve Cyber Essentials and Cyber Essentials Plus certification.

Find out more

As a CREST-accredited organisation, URM is able to provide penetration testing services against all assets associated with your organisation, location or service, e.g., external and internal networks, cloud environments, web or mobile applications.

Find out more

If you’re looking to understand whether SOC 2 is the right approach for you, what efforts are required to comply or attest, or prepare for a SOC 2 report (be that Type 1 or Type 2), URM can provide you with a full range of services.

Find out more
Our experts are the ones to trust
when it comes to your cyber security
CREST LogoPen Test LogoOVS Mobile LogoOVS Apps Logo
PCI DSS CertificationCyber Essentials CertificationBSI CertificationBSI Certification
Q&A SessionCyber Essentials and Cyber Essentials Plus: Your Questions Answered
11:00 am
,
Wednesday
22
January
2025

Q&A session, in which one of our expert Cyber Essentials and Cyber Essentials Plus assessors will answer questions you and other organisations may have about the scheme, including requirements, costs, benefits and potential pitfalls.

Read more
USB stick, Padlock, Keys
WebinarPCI DSS v4 Deadline Looming
11:00 am
,
Wednesday
29
January
2025

This webinar will focus on providing you with hints and tips on how to address some of the more challenging requirements coming to life in March 2025

Read more
USB stick, Padlock, Keys
WebinarBeyond ISO 27001 - DORA and NIS 2
11:00 am
,
Wednesday
12
February
2025

URM and DNV will provide an overview of the Digital Operational Resilience Act (DORA) and the Network and Information Systems Directive 2 (NIS 2), two key components of the European Union's strategy to enhance cybersecurity and operational resilience across various sectors.

Read more
USB stick, Padlock, Keys

ISO 13485: Medical Devices-Quality Management System Explained

Stuart Moran
|
Senior Consultant at URM
Published
13
December
2024

URM’s blog explains what ISO 13485, which organisations it applies to, its relationship with regulatory frameworks such as the UK and EU MDR, and much more.

Read more
Thumbnail of the Blog Illustration
Cyber Security
Published
12/12/2024
Mitigating Cyber Risks: Why Cyber Essentials Matters More Than Ever

URM’s blog highlights the growing threat to cyber security in the UK and the importance of the Cyber Essentials scheme in mitigating these risks.

Read more
Thumbnail of the Blog Illustration
Data Protection
Published
6/12/2024
Are You Getting Cookies Compliance Wrong?

URM’s blog discusses the GDPR and PECR requirements on cookies, common noncompliant practices & how you can ensure your approach to cookies is compliant.

Read more
Thumbnail of the Blog Illustration
Data Protection
Published
22/11/2024
Updated Data Protection Laws Introduced by Chile and India

URM’s blog explores the different requirements introduced by these new laws, and the likelihood of a subsequent UK/EU adequacy decision for each nation.

Read more
"
Very good explanation of ISO 27001 auditing, with real use case experience which is very important for attendees.
Webinar 'ISO 27001 Internal Auditing, the 6 Pillars of Success'