{{item.title}}
{{item.text}}
{{item.title}}
{{item.text}}
Safe and savvy: we help you work around the risks and proactively combat cyberattacks and threats.
Trust in institutions is being eroded, and people are increasingly concerned about their personal and digital security and whether they can rely on the truthfulness of information. Companies also might feel threatened by technological transformation and the societal changes it brings.
That’s why we deliver an innovative combination of human ingenuity and technologies to support you all the way from strategy to execution and operation. At PwC, we’re a community of solvers — powered by technology — committed to helping you achieve resilience, security and compliance along the way.
Urs Küderli
Partner and Leader Cybersecurity and Privacy, PwC Switzerland
“Secure and successful: we help you engage the best people where they’re needed.”
Urs Küderli,Partner and Leader Cybersecurity and Privacy, PwC SwitzerlandOur teams of local and global experts help you create an end-to-end roadmap for your cybersecurity journey. Together, we find ways of allocating your cybersecurity investments in a manner which is risk and value based and which captures the benefits of a secure digital transformation. We are there as a trusted partner to help you weave security into the fabric of your product, customer and growth strategy.
It’s often not a question of whether your systems and information will be attacked, but when. Are you prepared? Do you have the right partners at your side to respond quickly and decisively? The cybersecurity team in Switzerland can help you end-to-end: from identifying relevant cyber-threats, analysing whether your systems have been breached, testing your security posture to supporting you in an attack. Our incident response and forensics team, rated by Gartner and Forrester as the leading team in its field, helps you increase your resilience and emerge stronger if you do experience an incident.
The days of perimeter security are over. Identities and access management as well as compliance monitoring are now key to creating trust. We help you build a secure digital business around people and technology by implementing robust governance, processes and tooling to enable an effective monitoring and management of your identities.
Identify your crown jewels – the data crucial to the survival and success of your business – and keep them safe. We help you proactively build trust in your data management practices by supporting you in establishing a security- and privacy-oriented culture across your organisation, implementing a robust data privacy program, obtaining recognised security or privacy certifications, and assessing the maturity of your critical third parties’ capabilities.
Companies planning to move to the cloud and to implement a modern workplace must ensure that security and compliance are addressed right at the beginning of the project. Our experts help you identify vulnerabilities in your cloud architecture and governance and aid you in mitigating cyberthreats.
Multinational energy company
The client, pressured by Covid-19, deployed Microsoft technology, focusing on the technical solution to facilitate conferencing from home. However, the project had to be stopped due to lack of regulatory compliance. To mitigate the situation, we reviewed the client's regulatory landscape for all Swiss entities. We provided a structured approach and multiple blueprints, which served as a basis for designing and documenting the organisational, technical and contractual measures required by law. The client is now ready to onboard multiple entities to M365 and provide a service organisation centrally.
Swiss Private Bank
A lack of tool integration prevented the automated processing of vulnerabilities on the more than 19,000 servers on the client’s side. We reduced the bank's attack surface by implementing governance and a robust end-to-end process for handling vulnerabilities. By adding automation along the process, we were able to significantly reduce operational costs and, furthermore, we helped to define clear IT governance, including roles and responsibilities.
Service and Trade Organisation
PwC supported a client under attack in the process of incident response, leveraging PwC's proprietary content and threat intelligence expertise in providing indicators of compromise. We were able to identify and confirm suspicious activity across servers, workstations, and end-user computing environments. We succeeded in hunting for, containing and remediating threat actor activities at scale and in real time.
Global insurance company
At the request of the internal audit group of a global insurance company, we built a customised and tailored phishing campaign and red teaming exercise. Based on the successful penetration and compromise of the systems and networks, the organisation decided to re-evaluate their IT and security spending and priorities.
Manufacturing company
The client wanted to perform a cybersecurity assessment in order to understand their current security posture and gain insights into the technical and process weaknesses that could be exploited to gain system access and exfiltrate business-critical data. To achieve this, a red teaming exercise was performed, without the knowledge of the IT department, with the aim of testing the detection and response capabilities of their IT and outsourced Security Operations Centre (SOC).
Swiss bank
The top management of the bank requested PwC to assess the maturity of its security organisation as well as its resilience against cyber risks. Moreover, the IT governance was evaluated against the NIST framework, the ISO standards for process maturity, and against Swiss regulations and PwC recommended practice. Based on the assessment, a gap analysis, a risk matrix and strategic recommendations for the management were created and presented to the board.
Whatever your focus – moving to the cloud, greater innovation, or digital transformation – our services are powered by global alliances and memberships.
PwC has established a combined NIS2 capability, developed through our communities of Cybersecurity, risk management, incident response, governance, compliance and legal specialists.
These communities have been brought together to form a team of over 150 specialists across EMEA, focussed on supporting our clients with the NIS2 Directive. We are supporting our clients in understanding the relevance of the NIS2 Directive to their organisation; their own ability to meet the requirements or identify where gaps exist, along with supporting them in achieving compliance with the regulatory requirements both local and at EU-level in a proportionate and cost effective manner.
https://pages.pwc.ch/core-contact-page?form_id=7014I0000006pWeQAI&lang=en&embed=true
PwC is a driving force in cybersecurity and privacy, one of the most crucial and exciting roles in an increasingly digital world. Want to be part of the action? Then join our team.
Partner, Leader Digital Assurance & Trust and Cybersecurity & Privacy, PwC Switzerland
+41 58 792 84 59