Service

Cybersecurity Consulting

Independent, engineer-led advice that translates into real security improvements — not just reports. Our consultants have personally implemented and supported the products they recommend.

Most security consulting firms advise from a distance. iconnet does not — our consultants draw on direct operational experience across Thailand's financial services, government, manufacturing, and enterprise sectors. Engagements can stand alone or feed directly into implementation by the same team, removing handoff risk.

Consulting service areas

Security assessment

Network & perimeter gap analysis, firewall rule-set review, endpoint posture check, risk-ranked findings.

Architecture design

Security blueprints, zero-trust network design, segmentation & DMZ planning, cloud & hybrid design.

Compliance advisory

ISO 27001 gap assessment, PDPA (Thailand) review, NIST CSF alignment, BOT/SEC guidance, policy drafting.

Partner & product selection

Partner-neutral evaluation, RFP/RFI drafting, proof-of-concept scoping, TCO & ROI modelling.

Incident readiness

IR plan development, tabletop exercises, playbooks per threat type, detection & escalation workflows.

Security roadmap

Multi-year improvement plan, budget & priority sequencing, lifecycle planning, annual review.

How an engagement works

Rapid assessment

3–5 days

Focused gap analysis with prioritised findings.

Project engagement

2–4 weeks

Full architecture design or compliance-readiness programme.

Advisory retainer

Ongoing

Monthly hours for a virtual CISO or architecture-review function.

Deliverables you can use: a one-page executive summary, technical findings with risk ratings, a prioritised remediation plan, architecture diagrams, and policy documents in ISO/PDPA format — available in English or Thai.

Typical consulting scenarios

Financial institution

A bank needs to pass a BOT IT-risk examination. We assess against the BOT circular, map findings to controls, and deliver a remediation roadmap with a regulator-ready evidence pack.

Manufacturing company

A manufacturer is merging IT and OT networks. We design a segmentation architecture that isolates production systems and scope the implementation to follow.

Enterprise procurement

An enterprise is issuing an NGFW RFP. We write the technical requirements, run a PoC of shortlisted partners, and deliver a scored comparison — decisions on merit, not sales pressure.

Talk to a security specialist

Tell us about your environment and goals. Our engineers will help you scope the right solution — no obligation.