Governance, Risk, Assurance and Information Security Services

Pragmatic advisory and professional training for organisations where trust and accountability matter.

Calm, structured support in complex environments

Poleis helps organisations translate governance, risk, compliance and information security expectations into practical, sustainable ways of working, aligned to real operating environments, not just documentation.

What we do

Governance & assurance

Decision rights, operating models, controls and reporting that stand up to scrutiny across regulated and high-expectation environments.

ISO/IEC 27001 readiness

Scope, gap analysis, SoA and internal audit support, structured, proportionate and evidence-aware throughout.

Operational resilience

Practical alignment for resilience and regulatory expectations (e.g., DORA / NIS2 / GDPR).

PCI-DSS advisory and support

Scoping, gap analysis, Risk-based advisory and PCI-DSS security requirements

AI governance & assurance

Scope, gap analysis, ISO/IEC 42001 AI management systems readiness

Training & capability

ISC2, ISACA, CompTIA Security and customised programmes designed to build sustainable capability across teams and organisations.

Policy & framework documentation

Regulator-aligned policies and governance frameworks, including information security, data protection and risk documentation, tailored to organisational context.

Assessment & review toolkits

Structured toolkits for security reviews, gap analysis and control assessments, supporting evidence-based decisions and repeatable assurance activities.

Templates & working artefacts

Practical templates and working documents, including risk registers, SoAs, DPIA templates and control mappings, built for real-world use.

Professional training

Poleis delivers certification-aligned security training and tailored programmes, including ISC2, ISACA and CompTIA Security pathways, plus customised workshops.