Skip to main content

Introducing the Conosco Security Division

One thing you’ll notice is that I quite like to blog about what I’m up to at Conosco. As the CEO for a private company, this may be somewhat unusual, and it would certainly make other company Boards nervous. 

Thankfully not ours. 

We believe that being ‘open’ betters the understanding among our staff, future employees, clients and prospects of what Conosco does, how we do it, and what we strive for. It also follows an ethos that I believe has helped mature the Information Security community – sharing knowledge that adds insight and value to its members. This approach has allowed the Information Security community to build strong bonds,  improve its members’ collective defences and lower the barrier to knowledge proliferation as a result.

Conosco has a new and niche security offering for the SME market that has benefitted from such open thought, opinion sharing and an honest approach to solving our clients’ genuine security needs. The new Conosco Security Division provides our clients with a single point of ISO27001:2013-accredited contact through which to manage multiple and differing security services requirements, from consultant-led engagements to technical solutions procurement, testing, remediation, audits and more.

We remove the complexity of having to source, negotiate and engage with multiple security vendors, and ensure that our clients achieve the strongest possible ROI from each one. We deliver bespoke security strategies and full-scope roadmaps so that our clients can build resilient businesses. As a result, the Conosco Security Division positions us perfectly as today’s most well-rounded MSP in the marketplace.

Launching the Conosco Security Division has enabled us to add further value to our award-winning managed computing and project capabilities through the merging of our in-house InfoSec skillset – which provides the Division with secure foundations – with a number of diverse security industry leaders including Darktrace, Webroot and SureCloud.

With this approach, I believe we will continue to see Conosco setting the tone for the MSP market and contributing to the technology community as a whole.

It is my passion (indeed, job) to ensure Conosco continues to set the best example of what ‘beyond IT’  looks like through our excellent service delivery and offering. This drive is not only to pursue commercial success, but to provide those working within, and with Conosco with the best possible experience and levels of satisfaction. Perhaps this is why we’ve just won ‘Best place to work in Security’ at the Computing Excellence Awards 2017?

Conosco has been supporting its clients for more than 15 years. We continue – every day – to invest a significant effort and energy at our UK and South African bases ensuring that we always provide our clients with the most appropriate, secure solutions, at the right price point, for their very different needs. 

Get in touch if you’d like to be part of the Conosco Security Division’s growth story…


Popular posts from this blog

Designing a GDPR-compliant consent workflow for eCommerce

It's been quite a journey for me, to date, as I find my way along the twisty path that is understanding GDPR.

Through attempting to better understand what 'compliance' for the Photobox Group looks like, and in a renewed attempt to better understand its likely impact upon us, something I've found hard to find are good examples of 'GDPR compliant' user interfaces for eCommerce around the provision of user consent.

Ultimately we need to ensure that for each and every GDPR-relevant interaction our brands have with our customer's data, we have their appropriate consent.

The question is, how granular the explicit Opt-In requirements need to be?

The ICO does a good job of publishing high-level 'consent guidelines' as below:
Explicit consent requires a very clear and specific statement of consent. Keep your consent requests separate from other terms and conditions.Be specific and granular. Vague or blanket consent is not enough.Name any third parties who wi…

My first month as a numbers

It's been a busy few months as I moved from a wonderful few years spent with the Photobox Group to becoming Chief Executive for Conosco.

Playing to my 'purple' nature, here are some simple numbers to tell the tale of my first month as a CEO:
1 - organisational restructure0 - resulting redundancies4 - new members appointed to a newly-created Leadership Team spanning the UK and South Africa1 - tailored leadership skills course completed by the new Leadership Team20 - minutes that each leadership team member was asked by me to spend completing a self-analysis questionnaire~0 - the number of cynics asked to engage with the exercise1 professional lifetime - the time that the positive impact the individual questionnaire results that were presented to them will last on each of them (ask them, they agree.)62 minutes - the time it took us to escape from 'Escape Rooms' in London32 - the floor we ate lunch at in the Shard where we celebrated our offsite as a new Leadership te…

A SOC is cooking - with a sprinkle of Machine Learning and SRE

This week sees the start of an exciting new chapter in our ever-maturing InfoSec story, with our Group Security team forming a new Security Operations Centre (SOC).

It has been founded using key staff from our existing Network Information Security (NIS) and AppSec analyst capabilities and I believe we are taking an interesting approach to the its creation that sees us using our ASV (Surecloud) as our first internal SOC client:

The rationale is simple - Surecloud's consultants are tasked with poking and probing our applications, network and supporting infrastructure (all BAU as part of our PCI-DSS routines), and our SOC is challenged to be able to report back to the testers what it is they did.

To achieve this the new SOC team has been empowered (provided time, creative freedom, engineering resource access and budget) to architect whichever technical solution(s) they require to be gain the required insight, and so a Red/Blue team dynamic is born between 'them' and the '…