Vetting
Personnel Security Vetting & Insider Risk
Lawful, proportionate screening frameworks for the people inside the perimeter.
The situation
What the client receives
Schedule of deliverables
- Role-based vetting policy tied to access and asset sensitivity
- Lawful basis analysis, DPIA and retention schedule for screening data
- Vetting depth matrix (identity, right to work, references, qualifications, adverse media, financial probity where lawful)
- Insider risk indicators, escalation and case-handling procedure
- Joiner-mover-leaver control design
- Clearance support for EU institution and defence-adjacent engagements
Frameworks and standards
Assessment is carried out against named references, so a conclusion can be traced back to the requirement it was measured against.
- GDPR Art. 6 / 9 / 10
- ISO/IEC 27001 A.6.1–A.6.6
- ISO/IEC 27002:2022
- National employment law (per jurisdiction)
Related services
Discuss this engagement
Tell us about the roles in scope and the jurisdictions they sit in and we will set out the scope, the method and the reporting format.