A specialist practice inside an established firm.
Threat Risk Assessment is the dedicated risk practice of Cyber Electra Inc., a Canadian cybersecurity, privacy and compliance firm that has worked with organizations since 1999.
Risk work deserves its own discipline.
Threat risk assessment is often folded into a general security review, where it loses its edge and becomes a box to tick. We pulled it out and gave it a home, with one method applied consistently by people who do this work full time.
Sitting inside Cyber Electra means an assessment does not have to end at the report. When the findings point toward privacy, compliance or architecture work, the wider group can carry it forward without starting over.
What the practice holds to.
01
Method over theatre
Risk is scored on what an event would actually cost you and how likely it really is, without inflated severity or pressure tactics. The number is there to inform a decision, not to frighten a budget loose.
02
Written to be used
Plain, confident language. Findings a board can read and engineers can action, in one document, with no translator needed between the two.
03
Open by default
We publish reference work so our method is visible. When you can see how we think, you can judge how we score, before you have paid us anything.
At a glance
The essentials, for anyone deciding whether we are the right people for the work.
Since 1999
Cyber Electra has advised on security and risk
Aurora, Ontario
Canadian based, working worldwide
One method
Run the same way on every assessment
Open work
Reference threat models published in full
The firm behind the practice.
Cyber Electra has run security, privacy and compliance work for organizations since 1999. Threat Risk Assessment is one part of it.