What I do
Intentional product security, designed and embedded into your delivery process.
When security practices are designed intentionally, evidence gathering stops being a separate task, and threats become clearer.
What a regulator, the customer questionnaire and the auditor want is produced by the engineering work itself, at the time it happens.
- A security operating model sized to your team and business need
- Threat modelling and architecture reviews your engineers actually use
- ISO 27001 and client evidence generated from the way your teams work
- Regulatory obligations such as EU Cyber Resilience Act built into how the product is made
Published
Security expertise from Bedrock Cyber.
EU Cyber Resilience Act Preparation
Planning and preparation for implementers of the EU Cyber Resilience Act
EU Cyber Resilience Act: Are You Ready?
The reporting requirements of the EU Cyber Resilience Act come into force in September 2026
Nobody Wants To Steal Your Sensor Data
Why we can't evaluate all businesses by the standard confidentiality model