info@secroot.in
+91 9967805748

About Us

Who Are We

SecRoot was formed in the year 2015 with a complete focus on providing advanced and specialized services in IT Governance, Risk and Compliance.

We aim to provide awareness and assistance to corporate, individuals, and government & non-government institutions about cyber risks and their prevention and mitigation. Information and communications technologies offer organizations outstanding benefits, and opportunities to build or maintain their competitive advantage. However, these technologies also create a complex risk landscape that executives must manage effectively to meet stringent regulations and compliance mandates. Enterprise security is not only a technology issue but also a business issue that requires executive sponsorship and governance to develop a security-conscious enterprise culture able to protect critical assets and client interests.

VISION

To help nations, governments and businesses around the world defend themselves against cybercrime, reduce their risk in the connected world, comply with regulations and transform their operations

We are a group of multi-domain and highly qualified industry experts who came together to address increasing cyber risks.

Our Values

We act in a manner that exemplifies what we expect of each other and our firms' clients.

We bring out the best from the combined talents and experiences of our teams and cultures, creating strong and successful relationships. We listen to and challenge different points of view in order to arrive at the right conclusions. We encourage timely, clear and constructive two-way communication.

We are professional first and foremost, committed to objectivity, quality and service highest standards.

METHODOLOGY

Secroot information security assessment is a combined unique blend of the best practices followed in information security management standards. The program of the IS audit is derived from combining various standards as well as the expertise of the domain-specific teams over the years. Also, the vulnerability assessment and penetration testing methodology that we follow is a repeatable and documented security assessment methodology. Our methodology that is kept up-to-date according to changes in the threat environment and industry best practices provides consistency and structure to information security audit and VAPT. Secroot always try to be one step ahead by keep it IS program and techniques updated with new tools, processes, techniques, or as trend develops. Our methodology is a comprehensive blend of the following methodologies and IT Security industry best practices:

  • ISO 27001:2022 Information Security Management Standard
  • ISO 22301:2019 Business Continuity Management Standard
  • PCI-DSS v4.0, PA-DSS
  • NIST SP 500-53,853 Technical Guide to Information Security Testing and Assessment
  • NIST SP 500-115 Technical Guide to Information Security Testing and Assessment
  • HIPAA (Health Protection & Prevention Act) and/or Data Privacy Law
  • Open Source Security Testing Methodology Manual (OSSTMM) from the Institute for Security and Open Methodologies (ISECOM)
  • SANS Security Controls

  • Why SecRoot

    1. We are up to date with the latest as well as the most harmful security vulnerabilities that affect most organizations.
    2. We take deadlines seriously and make every effort to complete the given work well before time.
    3. We follow a structured methodology in all our services which is a combination of manual as well as automated techniques which negate the possibility of any error occurrence.
    4. We have worked with top notch clients and handled their security concerns in the most professional way so you can trust us for doing a good job with your firm too.