Case Study
Portfolio cyber maturity programme
Mega-Cap PE · Phased Assessment & vCISO AdvisoryRequirement
A Mega-Cap Private Equity firm required an agile cyber consultancy to lead its engagement with Portfolio Companies on cybersecurity. The firm required new PortCos to be assessed and existing PortCos brought into a new framework, with a range of assessments undertaken. Once onboarded, the firm required regular touchpoints with each PortCo to track and guide cyber posture improvement and risk reduction.
Action taken
CFGI conducted multi-stage assessments with deep-dives into core areas of cybersecurity and provided risk-optimised recommendations to drive value creation during the holding period. CFGI managed a portfolio-wide view of cyber risk using a best-class Cyber Risk Quantification platform, identifying outliers that pose outsized risk to the portfolio. CFGI also provided vCISO advisory to PortCos on a regular basis to guide optimal decision-making about cyber transformation and BAU activities.
Outcomes
- Strategic direction to PortCos enabled risk-based and cost-effective remediation measures based on organisational context and probable cyber threats.
- Sizeable reduction in portfolio cyber risk delivered alongside value creation for the Private Equity firm.
- Portfolio-wide dashboard giving consolidated and individual PortCo risk and remediation progress views to fund management.