Independent Cybersecurity Consultancy — Surrey & Greater London

Straightforward security advice. No jargon. No fear-mongering.

Most businesses discover they have a cybersecurity problem in the worst possible way. Our job is to make sure that never happens to yours.

Arrange a Conversation See what we do

About Us

CyberPM Security is a small, independent firm based in Guildford, Surrey, working with small and medium-sized businesses across Surrey, Greater London and the wider South East. Between us we have over forty years of combined experience in corporate IT security, financial services, and offensive security testing.

We start with a conversation, not a contract. We'll tell you what actually matters, what can wait, and what you honestly don't need to spend money on. If we're not the right fit for your organisation, we'll point you to someone who is.

What We Do

Penetration Testing

Controlled, authorised testing of your networks, web applications, and wireless infrastructure, with a plain-English report and remediation plan you can actually act on.

Security Audits & Health Checks

A pragmatic review of your policies, controls, and configurations. We identify genuine risks rather than generating paperwork for its own sake.

Incident Response

If something has already gone wrong, call us first. We help contain the incident, preserve evidence, and get you back up and running with your reputation intact.

Certification Support

Preparation and assessment for Cyber Essentials and Cyber Essentials Plus, along with supply-chain security questionnaires that increasingly come with larger contracts.

Staff Awareness Training

Honest, engaging sessions on phishing, social engineering, and day-to-day security habits. Your people are your first line of defence — treat them like it.

Virtual Security Lead

For organisations without an in-house security function, we provide ongoing advice and oversight on a retainer basis. A steady hand without a permanent payroll cost.

The Team

Nick Williams, Principal Consultant and Founder
NW

Nick Williams

Principal Consultant & Founder

Fifteen years in corporate IT security and Big Four advisory before founding the firm in 2019. Client-facing lead on audits and incident response. CISSP, OSCP.

Priya Nair, Senior Penetration Tester
PN

Priya Nair

Senior Penetration Tester

Leads our technical testing practice. Previously secured banking infrastructure for eight years before deciding she'd rather find the holes than patch them. OSCP, CREST CRT.

Danny Osei, Junior Security Analyst
DO

Danny Osei

Junior Security Analyst

Handles vulnerability scanning, report preparation, and the tedious-but-vital groundwork. Joined us via an apprenticeship after a career change from logistics.

Ruth Holloway, Practice Manager
RH

Ruth Holloway

Practice Manager

Keeps the certifications, contracts, and invoicing in order, and gently reminds everyone that clients expect replies before Christmas. Previously managed a legal chamber.

What Clients Say

"Nick gave our partners a presentation that was the first time anyone explained this stuff without making me feel stupid." — Managing Partner, Surrey legal practice (name withheld)

Contact

The first conversation costs nothing. Email or call, and if it's urgent, say so in the subject line.