Security
Cybersecurity & POPIA
Penetration tests, POPIA assessments and incident response for South African SMEs. Reports a board can read, remediation you can action, and the same engineers on the line during an incident.
$ randcore scope cybersecurity
✓ Security
✓ focus: Small and medium businesses
✓ compliance: POPIA, GRC
✓ testing: Pen-tests, vulnerability scans
$ ▍
}
POPIA is in full effect, and South African SMEs are squarely in the firing line. Most do not need an enterprise security operations centre. They need to know where they are exposed, fix what matters most first, and have someone who knows their system to call when an incident happens. We handle security the way we handle everything else: in plain language, by the engineers who do the work, priced for a small or medium business rather than a bank.
Penetration testing
We test the way an attacker would, across web applications, networks and the human layer, then write it up so your team and your board can both follow it. Every finding is ranked by real-world risk and paired with a remediation plan you can action, not a thousand-line scanner dump you have to decode.
POPIA and GRC
POPIA compliance is practical work, not a legal mystery. We run a gap analysis against where you stand today, produce the policies and data-processing records you are required to hold, map where personal information lives and who can reach it, and leave you with a plan you can maintain. Administrative fines under POPIA reach R 10 million, and the Information Regulator is now acting on complaints, so this is no longer something to put off.
Test
Ongoing cover
For businesses that want more than a one-off, the SME resilience package folds the work into a single retainer: quarterly vulnerability scans, an annual penetration test, a POPIA review, managed endpoint protection, security awareness training that changes how staff behave, incident response support, and a monthly report you can read. When something does go wrong, you reach the same engineers who know your setup, not a stranger reading from a script.
What we take on
Typical work
What it costs
Indicative pricing
- Security audit
- fromR 15 000
- POPIA compliance
- fromR 25 000
- Managed security
- fromR 5 000 / mo
Indicative ranges, no VAT. Every project gets a fixed-price quote once we understand the work. Full pricing.
Frameworks we build in
The right tool, not the only tool
We build in modern frameworks and recommend the one that fits. Explore each, or see the languages we specialise in.
Let us scope it properly
A paragraph is enough to start. We reply inside one business day with a few questions and an honest range.