32 Threadneedle Street, London, EC2R 8AY, United Kingdom
Enhancing organisations’ ability to meet their strategic objectives through independent and expert insight into key risks
Our promise
Xcina Consulting will advise and support you with services to mitigate and manage risks and enable the highest levels of organisational resilience. Our risk management professionals will help ensure your organisation is best placed to achieve your strategic objectives with expert assistance to navigate an ever-changing operating, regulatory and technological environment. We will deliver excellent quality, value driven services tailored to your specific needs. We will act with speed and agility to meet your requirements and those of the regulatory context you operate within.
Production of business impact analysis, risk assessments and strategic advice Production and audit of business continuity plans Creation and running of crisis management scenarios Support testing of plans and remediation of issues identified Assess and/or take clients through to full accreditation to the ISO22301 standard Assess the business continuity capability of third party suppliers ...
Design, manage and evaluate projects and programmes Draft or review business case Ensure adequate project governance and appropriate methodology Establish and manage Project Management Office (PMO) Project review (pre/during/post-implementation) Project assurance reviews Project implementation; skilled project managers and team members ...
Information security governance and security risk management Security architecture and/or policy design and implementation Virtual Chief Information Security Officer (vCISO) Cloud – Software as a Service (SaaS), Infrastructure as a Service (IaaS), Platform as a Service (PaaS) Security awareness training and security architecture design Access control management, incident and response management Code reviews or penetration testing......
Global data protection legislation advice eg General Data Protection Regulation (GDPR) EU-US Privacy Framework; Data Protection Act 1998 (UK) Data protection compliance reviews and gap analysis Data security audits Information Commissioner’s Office (ICO) registration Data permeation maps Data privacy, analytics and forensics Data warehousing and storage architecture Virtual Data Protection Officer (vDPO) ...
Internal audit on an outsourced or co-sourced basis Specialist audits covering all aspects of technology, risk, compliance, finance and business operations IT audit Project and change audits Computer Assisted Audit Techniques (CAATs) End-User Computing Excel and Access analytics and forensics Effectiveness reviews of internal audit methodology, policies and procedures Training and methodology development support to improve the performance......
Conduct Risk Solvency II Know Your Customer (KYC) Anti-Money Laundering (AML) Bribery Act & Foreign Corrupt Practices Act MiFID Treating Customers Fairly Sarbanes-Oxley and Dodd-Frank compliance PRA and FCA authorisations and compliance Client Money / Assets Reviews Sanctions, PEPs and adverse media Charities Commission ...
Technical support on specialist risk areas Outsourced or co-sourced risk management solutions Design and implementation of pragmatic risk and governance frameworks Assessing the effectiveness of existing risk frameworks Risk management project / programme management and assurance Training, education and updates on latest risk management trends Board effectiveness reviews ...
Assurance visit programme for third party management against client policies or requirements Design, testing and audit of controls reports eg SSAE16, ISAE3402 and AAF01/06 Management of full procurement process, including: preparing statement of requirements; due diligence on providers; balanced scorecard evaluation of bids; recommendations to management; and contract negotiations Design, implementation and monitoring......