Trusted Sources

The references we work from. Verify everything — including us.

Credibility isn't a claim; it's a paper trail. These are the authoritative regulators, live threat maps, security frameworks, AI-governance references and trusted South African tech publications that underpin our work. Bookmark the directory — then hold us to it.

These are independent third-party sites. We link to them because they're authoritative, not because they endorse us. Content and availability are controlled by each source.

Regulators & Compliance — South Africa

Who actually governs your obligations.

Every compliance claim we make maps to one of these bodies. Verify your own registration and obligations directly at source.

Information Regulator (SA) POPIA & PAIA enforcement, breach notification, Information Officer registration. inforegulator.org.za CIPC Companies & Intellectual Property Commission — company registration & records. cipc.co.za SAHPRA Health Products Regulatory Authority — medicines, devices & health-tech. sahpra.org.za HPCSA Health Professions Council — practitioner registration & healthcare advertising rules. hpcsa.co.za ECSA Engineering Council of South Africa — professional engineering registration. ecsa.co.za Legal Practice Council Regulator for attorneys & advocates — practice compliance & FICA duties. lpc.org.za PSIRA Private Security Industry Regulatory Authority — security-sector registration. psira.co.za SARS South African Revenue Service — tax, VAT & compliant invoicing rules. sars.gov.za

Live Threat Intelligence

See the threat in real time.

The public, live platforms security teams keep open — and the fastest way to make cyber risk feel real to a board. South Africa consistently ranks among the most-attacked nations.

Kaspersky Cyberthreat Map Real-time global attack visualisation, filterable by country. cybermap.kaspersky.com Check Point ThreatMap Live attack flows by country, industry and attack type. threatmap.checkpoint.com Cloudflare Radar Internet health, outage & attack-trend data, filterable to SA. radar.cloudflare.com Have I Been Pwned Check if your business email appears in known breach dumps. Free. haveibeenpwned.com SABRIC SA banking risk intelligence — the local fraud & scam patterns hitting now. sabric.co.za CISA Known Exploited Vulns The vulnerabilities actively exploited in the wild right now. cisa.gov

Frameworks & Standards

The playbooks we build against.

Our audits and architectures map to recognised international frameworks — so your compliance is defensible, not improvised.

MITRE ATT&CK The global knowledge base of real-world adversary tactics & techniques. attack.mitre.org NIST Cybersecurity Framework The identify-protect-detect-respond-recover standard we structure programmes around. nist.gov/cyberframework CIS Critical Controls A prioritised, prescriptive set of defensive actions — where SMEs should start. cisecurity.org ISO/IEC 27001 The international standard for information security management systems. iso.org OWASP Top 10 The most critical web-application security risks — what we test against. owasp.org MITRE ATLAS (AI Threats) Adversarial threats specific to AI & machine-learning systems. atlas.mitre.org

Reports & Intelligence

Read the same reports we do.

Primary-source intelligence we brief clients from — the reports regulators, insurers and the wider industry actually cite. Verify the landscape yourself, then let us act on it.

INTERPOL — Cybercrime & Africa How cybercrime is actually moving across the continent — INTERPOL's Africa cyberthreat assessments. interpol.int ENISA Threat Landscape The EU cybersecurity agency's annual map of the top threats, trends and threat actors. enisa.europa.eu Verizon DBIR The Data Breach Investigations Report — the industry's most-cited dataset on how breaches really happen. verizon.com ITU Global Cybersecurity Index The UN agency's country-by-country measure of national cybersecurity commitment. itu.int WEF Global Cybersecurity Outlook Where global leaders map cyber risk against the wider economy — the annual Cybersecurity Outlook. weforum.org

Tech & Engineering Movements

Where technology and engineering are actually heading.

The signal, not the noise — global, African and local research so your decisions track where the world is moving, not where it was.

MIT Technology Review Rigorous coverage of the technologies that will actually matter — from MIT. technologyreview.com IEEE Spectrum The engineering profession's flagship — where hardware, robotics, energy and AI are going. spectrum.ieee.org CSIR (South Africa) SA's Council for Scientific and Industrial Research — local engineering and applied-science innovation. csir.co.za Smart Africa The continent's digital-transformation alliance — where African tech policy and infrastructure are heading. smartafrica.org GitHub Octoverse The world's largest read on how software is really being built — languages, AI and developer trends. octoverse.github.com

AI Governance & Learning

Adapt to AI without the hype.

The vendor-neutral references we teach from in our AI Fluency & Consulting programme — governance you can defend, not marketing.

NIST AI Risk Management The reference framework for trustworthy, governed AI adoption. nist.gov OECD AI Principles Internationally adopted principles for responsible AI. oecd.org SA National AI Policy South Africa's national AI policy framework direction. gov.za Our AI guardrails guide Building with AI, vibe coding, guardrails and when DIY makes sense. asitechnologies.co.za

Conferences & Events

Where the field actually gathers.

The stages where security, engineering and business leadership set the agenda — the rooms we track so the thinking we bring you is current, not last year's.

RSA Conference The world's largest gathering of cybersecurity leadership, research and vendors. rsaconference.com Black Hat Where the newest attack techniques and defences are first disclosed. blackhat.com Gartner Security & Risk Summit Where CISOs and boards align security strategy with business risk. gartner.com Infosecurity Europe Europe's flagship information-security event for practitioners and leadership. infosecurityeurope.com GITEX Global One of the world's largest technology and enterprise-innovation events. gitex.com ITWeb Security Summit South Africa's flagship cybersecurity conference for local decision-makers. itweb.co.za

What Decision-Makers Read

We read the room your board reads.

The publications directors and executives actually spend time in — locally and internationally. Our thinking is grounded in the same sources yours is, so we speak your language, not just ours.

Harvard Business Review The reference point for management, strategy and leadership thinking. hbr.org MIT Sloan Management Review Rigorous research on technology, strategy and how firms actually change. sloanreview.mit.edu The Economist Global business, economics and technology in the context decisions need. economist.com McKinsey Insights Data-backed perspective on strategy, digital and risk for leadership. mckinsey.com Dark Reading The security industry's daily read on threats, breaches and defence. darkreading.com Daily Maverick Serious South African journalism on business, governance and society. dailymaverick.co.za

SA Tech News & Research

Where South African business & tech decisions get made.

The publications your peers actually read — for context on the local landscape, breaches, and policy.

MyBroadband South Africa's largest technology news & telecoms publication. mybroadband.co.za ITWeb Enterprise IT news, security coverage & industry events for SA. itweb.co.za TechCentral In-depth South African technology business & policy analysis. techcentral.co.za

Want these mapped to your business?

We translate the frameworks and regulators above into a concrete, prioritised action plan for your specific practice, firm or company — no jargon, no fear-selling.

WhatsApp Us Book a Consultation