Expertise

Cyber threat intelligence & risk

Turning public vulnerability data and recognised frameworks into decisions leaders can act on.

The problem

Where the risk really sits

Security teams are flooded with vulnerability data and compliance obligations, but struggle to turn either into a clear picture of where their real exposure sits.

What DeTrust does

DeTrust builds threat intelligence and risk assessments from public CVE/CWE data and aligns them to recognised frameworks — ISO 27001/27005, NIST CSF, NCSC guidance and DORA — evidence first.

The differentiator

Advice built by someone who engineered the methods

  • Led the Turing Cyber Threat Observatory (Azure, MISP, Microsoft Sentinel, Splunk), aggregating OSINT and mapping CVE/CWE patterns at scale.
  • Authored the cross-sector vulnerability-patterns report across identity, government, healthcare and finance — SQL injection (CWE-89) dominates healthcare with 150 CVEs, over five times finance.
  • Risk and framework alignment applied across 11 client projects (ISO 27005, ISO 27002, SABSA, DORA).

Research behind this domain

Published, peer-reviewed evidence

The risk-concentration analysis and cross-sector vulnerability research behind DeTrust's threat intelligence.

From the research programme

Intelligence in practice

Bar chart of CVE volumes by year across sectors
CVE volumes by year across sectors — from the CWE analysis.
Open-source threat-intelligence platform dashboard
An open-source threat-intelligence platform (OpenCTI), of the kind used in cyber-threat-observatory work.

Intelligence-driven. Evidence first.

Tell the founder what you're working on. Every enquiry is read and answered personally.

Book a consultation