What we do, and how we do it.
AssureDR is built around four interconnected pillars. Engagements can be scoped individually or as a complete programme — depending on where your organisation stands today.
Inspect
Know exactly where you are exposed.
Most organisations have DR documentation. Far fewer have an accurate picture of whether it would hold under real conditions. Our maturity assessments close that gap.
We conduct a structured review of your infrastructure, recovery dependencies, data retention policies, and existing DR documentation. We test assumptions, map single points of failure, and quantify the business impact of each failure scenario in terms your board can act on.
The output is a prioritised findings report and a plain-language executive summary — not a generic framework checklist. Every finding is tied to a specific system, a specific consequence, and a specific recommendation.
- DR maturity assessment
- Infrastructure dependency map
- Data retention and location audit
- Prioritised risk register with executive summary
Architect
Recovery design aligned with ISO 9001 & ISO 27001.
We design cyber recovery architectures that are specific to your infrastructure, your RTO and RPO commitments, and the regulatory environment you operate in.
There is no universal DR architecture. The right design depends on your stack, your tolerance for data loss, your budget, and the recovery time your business can genuinely absorb. We work through each of these constraints with you before a line of design is drawn.
All designs are aligned to ISO 9001 and ISO 27001 requirements. We cover cloud failover, hybrid environments, on-premise replication, and multi-region strategies. Where vendor selection is required, we advise independently — we hold no reseller agreements and receive no referral fees.
- Cyber recovery architecture design
- ISO 9001 & ISO 27001 alignment documentation
- RTO/RPO target validation
- Implementation roadmap with cost estimates
Validate
Confidence that your people can execute the plan.
A DR plan that has never been tested under realistic conditions is not a plan — it is a document. We design and run the exercises that tell you whether your recovery capability is real.
We run two types of exercises: technical stress tests that validate your recovery systems under load, and structured tabletop simulations that walk your IT and leadership teams through a realistic incident scenario. Both are designed to surface gaps in people, process, and technology — not just infrastructure.
Every exercise produces a findings report. Gaps are documented with severity ratings and remediation guidance. We can run subsequent exercises to verify that gaps have been closed and that your team's confidence in the plan is well-founded.
- Test plan and scenario design
- Facilitated executive tabletop exercise
- Technical stress test execution
- Findings report with remediation guidance
Assure
Continuous compliance. No drift.
Disaster recovery is not a one-time project. Infrastructure changes, teams change, and regulations evolve. Our ongoing retainers ensure your DR posture keeps pace.
Configuration drift is one of the most common reasons DR plans fail when they are needed. Systems are updated, dependencies change, and the recovery architecture that was validated six months ago no longer reflects the environment it is meant to protect. Our retainers are designed to prevent that.
Retainer engagements include scheduled review cycles, continuous compliance monitoring against ISO 9001, ISO 27001, and Cyber Essentials, and access to our consultants for advisory support between formal reviews. You maintain a current, tested DR posture without the overhead of managing it internally.
- Scheduled DR posture review cycles
- Continuous ISO 9001 & ISO 27001 compliance monitoring
- Configuration drift detection and remediation
- On-demand advisory access between reviews
Independent. Practitioner-led. Specific.
No vendor affiliations
We hold no reseller agreements and receive no referral fees. Every recommendation is made on its merits.
Senior consultants throughout
The consultants who scope your engagement are the consultants who deliver it. No handoffs to junior staff.
Small client base by design
We work with a limited number of clients at any one time. That is how we maintain the quality of our work.
Not sure where to begin?
Most engagements start with an Inspect — it gives both parties a clear picture of where you stand and what the right next step is. If you already know what you need, we can scope accordingly.