Dr. Axiel Yaël Birenbaum Cybersecurity Consulting

Independent cybersecurity consultant offering tiered services to SME from cybersecurity audits up to CISO on demand.

Photography close up of a red flower.
Black and white photography close up of a flower.

Our services

Image for service

Tier 1 – Security Assessment

This tier offers a security assessment (penetration testing) tailored to the target type: internet application, website, or internal network.

The deliverable includes:

  • An Executive Summary for non-technical decision-makers.
  • A technical report with detailed findings for the SME’s IT team, including screenshots and remediation steps.

Services include:

  • Black-box or grey-box penetration testing (no or limited prior knowledge of the system), including:
  • Ping sweep of pre-determined network ranges
  • Port scan of target hosts
  • Vulnerability scanning
  • Exploitation of discovered vulnerabilities
  • Security posture assessment based on existing client reports
  • GDPR compliance assessment (Data Security section)
  • Mitigation strategies with steps for verification
  • System hardening recommendations
  • Prioritization guidance on resource allocation

Image for service

Tier 2 – Security Enhancement

In addition to Tier 1, this tier includes hands-on implementation of security hardening strategies, ensuring you can maintain an improved cybersecurity posture independently.

Additional services include:

  • Implementation support for patching vulnerabilities and applying mitigation strategies
  • Security infrastructure improvements, including:
  • Intrusion Detection System (IDS) setup
  • Automated software updates
  • Regular vulnerability scans
  • Secure data backups
  • Configuration hardening for third-party applications
  • Data encryption implementation
  • Adoption of a zero-trust security model
  • Consulting and training for the client’s in-house IT team
Image for service

Tier 3 – Continuous Security & Monitoring

This tier is aimed at SMEs requiring ongoing support. It includes all Tier 1 services, with Tier 2 as an optional add-on.

Additional continuous support services include:

  • Monthly security check-ins with the SME’s IT team
  • Regular website vulnerability assessments
  • Ongoing network monitoring, including:
  • IDS alert reviews
  • Recurring ping sweeps of designated network ranges
  • Scalability planning to adapt security infrastructure as the company grows
The following activities are not included in any package:
  • Physical penetration testing
  • Social engineering attacks or tests
  • Denial of Service (DoS/DDoS) attacks
  • Targeting clients of the SME
  • Application-layer manipulation
  • Client-side engineering