Our Services

IT Audits & Reviews 

IT Audits and reviews for risk based and compliance requirements.

These may be conducted independently or in conjunction with a security review, financial audit, internal audit or other form of attestation engagement.

Information and Communications Technology
& Smart Systems (ICT&SS)

MAS Cyber Hygiene & TRMG

ISO / IEC 27001, 27018, 42001

System Configurations

Customised audits & reviews

Security Testing 

Security testing to identify vulnerabilities in your organisation's infrastructure and applications.

We use a combination of automated tools and manual testing for pre-commissioning and regular security testing requirements.

Infra & Application

Vulnerability Assessment (VA)

Penetration Testing (PT)

Red Teaming

Source Code Review

Systems Security Acceptance Test (SSAT)

Cybersecurity & Risk Advisory 

A wide spectrum of cybersecurity and risk advisory services from strategic management to technical controls in the areas of governance, risk and compliance.

Governance & Architecture

Certification Advisory

Policy and Process Development

Security By Design

Risk Assessment

Risk Management

Our Certifications and Licenses

Company

ISO/IEC 27001:2002 Certificate
CSA Cyber Trustmark Advocate Level
Crest PT Certificate
CSA Cybersecurity Services Regulation Office License

Cybersecurity Services Regulation Office License
CS/PTS/C-2022-0156

IMDA Data Protection Trustmark

Individual

CIA Certificate
CISA Certificate

Certified Information Systems Auditor

CISM Certificate

Certified Information Security Manager

CISSP Certificate

Certified Information Systems Security Professional

CCSP Certificate

Certified Cloud Security Professional

Crest CRT Certificate

Certified Registered Penetration Tester

OSCP Certificate

Offensive Security Certified Professional

OSCE3 Certificate

OffSec Certified Expert 3

OSWE Certificate

OffSec Web
Expert

OSED Certificate

OffSec Exploit Developer

OSEP Certificate

OffSec Experienced Penetration Tester

OSWP Certificate

OffSec Wireless Professional

About Us

About Us
Assure IT: Your Partner in Technology Governance, Risk Management, and Compliance (GRC)

Assure IT, founded in 2014, is a Singapore-based professional services firm specialising in technology governance, risk management, and compliance.

Recognising that technology risk, including cybersecurity risk, is among the most critical enterprise risks today, we adopt a holistic, end-to-end framework to deliver our core services in IT audits; security testing; and advisory.

Our holistic approach integrates People, Processes, Technology in the design, implementation and evaluation of controls. This is enabled by our interdisciplinary team of experienced professionals from both government and commercial sectors, with expertise from industries such as ICT, Defence, Banking & Finance, and Manufacturing.

Our end-to-end, Protect, Detect, Respond approach offers a systematic and comprehensive methodology for managing technology risks. This approach strengthens our clients' preventive controls, enhances their threat detection and response capabilities, and ensures continuous business resilience in an ever-evolving and complex cyber landscape.

Our key value propositions include:

  • A senior team of professionals with extensive experience in government and commercial domains from multiple industries
  • An inter-disciplinary team comprising industry veterans from operations, risk and audit functions
  • Strategic to tactical level capabilities that encompass governance, architecture, roadmap development to deep technical skills

Our Testimonials

Assure IT provided us with high quality IT audit services; and could be relied upon to meet the tight timelines that we had. We would highly recommend their services to other organisations.

Deputy Director, Agency

Assure IT performed their work well and with independence. They were able to deliver the assigned project way before our deadline.
No Supervision/intervention required by the agency in performance of their services. They have demonstrated high level of technical competency, completed the audit on time, comprehensive and clear reporting of audit findings.

Senior Manager, Agency

Assure IT is prompt in responding our queries and always keep us posted on the audit progress.
They are able to incorporate Management requests/concerns in the audit as well. Overall, we are satisfied with the level of service received.

Head, Internal Audit Office, Institute of Higher Learning

Assure IT performed security scanning, which includes both public facing web portal and mobile application. Assure IT is prompt in addressing to our queries and request during the entirety of the project period.
Assure IT provides necessary assistance and remediation advices with regard to the services they are providing.
Despite the short notice and urgency of the service required, Assure IT is able to facilitate and produce the deliverable as per agreed timeline.

Project Manager, System Integrator

Great experience working with … and the Assure IT team. Communication during the project term was smooth and team was able to give their input and opinions on how to address the requirements posed by the licensing authorities.
Limitations and targets were also aligned early on and realigned along the project period which was flexibility that we greatly appreciate having.
Deliverables were all achieved as scheduled and we would be glad to work with Assure IT again given the opportunity.

Finance and Operations, FinTech