Services

Areas of Expertise and Specialized Services

At Apus Trust, we invest in our professional\'s knowledge and experience as the main tool to delivering high-quality services to our clients.

We take pride in the partnerships we have built with our clints, professional associations and leading organisations in the sector. Together, we create value and are more complete!

Audit (ISO 27001, GDPR, QNRCS, NIS2, AI ACT, SMD)

Assessment of compliance with information security anda ata protection standards, and recommendations for technical and organisational measures to ensure compliance, in accordance with the following standards:

  • ISO 27001 / ISO 27701
  • General Data Protection Regulation (GDPR)
  • NIS2 Directive
  • AI ACT
  • Selo de Maturidade Digital

Governance, Risk and Compliance (GRC)

Support in the implementation of communication and governance models (including policies, procedures and technical guidelines) and compliance risk management (in areas such as cybersecurity, data protection, artificial intelligence and data management).

Support with compliance with key standards in the areas of cybersecurity and data protection: ISO 27001, ISO 27701 and related European and national legislation:

  • General Data Protection Regulation (GDPR) and Law No.º 58/2019
  • Cybersecurity Legal Framework [Decree-Law No. 125/2025, repealing Law No. 46/2018]
  • General Framework for the Protection of Whistleblowers [Decree-Law No. 93/2021], which transposes Directive EU 2019/1937 on the protection of persons who report breaches of Union law.
  • Data Governance Act [Regulation EU 2022/868]
  • NIS2 European Directive EU 2022/2555: A development of the NIS Directive, with measures designed to ensure a high common level of cybersecurity across the Union.
  • Artificial Intelligence Act [Regulation EU 2024/1689]
  • Data Act [Regulation EU 2023/2854]
GRC Governance Risk and Compliance concept.

Human Firewall

Human Firewall is a specalised service deisgned o foster a culture of cybersecurity and data protection within organisations.

A tailored programme is implemented to the specific circumstances of each organisations, utilising communication techniques, active learning and gamification, penetration testing, incident alerting and reporting and incentive schemes.

Human Firewall

External CISO, DPO

Provision of specialist services as Data Protection Officer, Chie Information Security Officer (CISO), including responsabilities for reporting to the relevant authorities and stakeholders, as well as advising our clients\' internal teams on these matters.

Specialised Support

Training and raising awareness amongst users.

Issuing technical and compliance opinions on matters relating to inforatmion security, data protection and artificial intelligence.

Support in carrying out Impact Assessments and Legitimate Interest Assessments for data protection purposes.

Research & Development (R&D)

Analysis and specification of technical requirements, information security, data protection and compliance with national and European standards and legislation.

Specisliased support for technical teams and testing, validation and auditing of technological solutions.

Prevention of Corruption and Related Offences

  • Support for the Compliance Officer, the Risk Prevention Plan Implementation Officer and the Complaints Handling Officer.
  • Support in drafting and updating policies and codes of conduct to guide staff and managers on best practice in corruption prevention
  • Support in ensuring compliance with the RGPC
  • Minimising the risks of corruption
  • Establishing internal control procedures and ongoing monitoring
  • Conducting internal audits to ensure compliance with the RGPC
  • Recommending technical and organisational measures to ensure compliance with the RGPC
  • Assistance with MENAC registration and support with compliance
Auditoria1