ABOUT PRACSYS SECURITY

Cyber security should help your business move forward.

Pracsys Security is a boutique cyber security consultancy for startups and small businesses. We help you work out what matters, make practical security decisions and build the right level of protection as your business grows.

Security advice should fit the business you are actually building

Security advice should fit the business you are actually building

Small businesses and startups are often caught between two extremes: security advice that is too basic to be useful, and enterprise frameworks that are far more complex than they need.

We started Pracsys Security to fill this gap and offer practical, proportionate security that takes account of your product, your customers, your risks and where your business is heading.


MEET THE FOUNDERS

Real experience. A partnership built around your business.

When you work with Pracsys Security, you work directly with us. Together, we combine technical security, governance and real-world business experience to help clients make security decisions they can actually act on.

team people
Cyber security strategy, architecture and technical security

Nadia Boreux

Founder

Nadia has more than 25 years of experience across IT and cyber security, working across security strategy, architecture and major transformation programmes. She has built security capabilities from the ground up, helped mature established functions and worked with teams to solve complex security challenges.

She now brings that experience to Pracsys Security, working alongside founders and teams to build security that fits their business.

Previously
team people
Regulatory compliance and practical governance

Kathryn Boreux

Founder

Kathryn brings more than 10 years of experience in regulatory compliance, specialising in software as a medical device and pharmaceutical manufacturing regulations. She has worked across internal governance, risk, compliance, supplier management and quality assurance, engaging directly with developers and product teams.

Her experience gives her a strong understanding of how risk, regulation and product development come together in practice. She knows how to translate complex regulatory expectations into governance and ways of working that are proportionate, practical and achievable, even when teams are small.

Previously

TESTIMONIALS

What people say about us

Nadia demonstrated exceptional technical brilliance and strategic vision, designing a CI/CD-driven detection engineering capability aligned to MITRE ATT&CK and integrating AI-driven tooling into our SOC workflows. She is a rare blend of strategist, innovator, and collaborator.

Project Lead, Technology Transformation

Critical national infrastructure organisation

Nadia is an extremely competent, highly knowledgeable professional who is very delivery-focused. She delivers to specification and then recommends further improvements and innovations. I would thoroughly recommend her to any client or employer.

Enterprise Security Architect

Critical national infrastructure organisation

Nadia is one of the most talented security consultants I have ever come across - exceptionally knowledgeable, approachable, pragmatic, and hard-working. When Nadia speaks, people listen.

Fractional CISO

Large UK mobility services organisation

A talented individual across all technical aspects of information security, with profound technical knowledge and the ability to communicate at all levels. Nadia knows how to lead in a crisis and get the best from her team. I have no hesitation in recommending her.

Information Security Professional

Major UK charity
Practical guidance. Clear direction.

Practical guidance. Clear direction.

Our work is aimed at helping you to understand where you stand and move forward with confidence.

You receive practical, actionable outputs: clear priorities, useful documentation and a realistic plan for what comes next.

What we will never do

We want security to feel clearer and more manageable, not heavier than it needs to be.

  • We will not overwhelm you with jargon, noise or unnecessary complexity.
  • We will not recommend tools, programmes or frameworks simply because they are fashionable or familiar.
  • We will not turn security into theatre when practical progress is what matters.
  • We will be clear about what needs attention now, what can wait and where specialist help may be needed.
  • We will not sell services we are not the right people to deliver.
  • We can assess your position against security standards and regulatory requirements, but we do not provide formal certification or accredited audits ourselves. Where specialist testing, certification or other independent services are required, we can help you understand what you need and work alongside the appropriate provider.

Book a Discovery Call.

30 minutes, no obligation. We will talk through where you are, what is coming up, and what would actually help at your stage.

Book a discovery call