GRC·LABS
Tailored Information Security

GRC·LABS

A cybersecurity, governance and privacy company. We take what you run and rebuild it into the version you've been picturing — fitting your needs across several disciplines at once, for design and prototyping that's quiet, efficient and genuinely innovative.

Several disciplines, at once Design through working prototype Quiet · efficient · innovative
01 //

Capabilities

What we actually do. Every line below is backed by real engagements — security leadership, regulated environments, and live incidents handled under pressure.

Tailored — every service measured to your actual risk, never a template.
SEC · 01

Security Leadership

CISO-as-a-Service: security programs, policies and annual plans built around your real risk profile, with senior ownership rather than a checklist.

CISOstrategygovernance
GRC · 02

GRC & Compliance

Risk management, business impact analysis and regulatory alignment. ISO 27001 / 27035 / 22301 — taken all the way to certification.

ISO 27001riskaudit
IR · 03

Incident Response

Real-time handling of cyber incidents and crises: investigation, forensics, coordination and remediation — led personally, not delegated.

forensicscrisisresponse
DPO · 04

Privacy & DPO

Data protection governance and DPO services under both Israeli privacy law and the GDPR, with direct experience working alongside national privacy authorities.

DPOGDPRprivacy
ARC · 05

Secure Architecture

Security-by-design across servers, networks and applications — bridging R&D, DevOps and operations instead of bolting security on at the end.

designdevsecopsreview
OT · 06

IoT / OT / Embedded

Security for connected devices, control systems and embedded platforms — from the perspective of someone who has built them, not just audited them.

IoTOTembedded
ADV · 07

Tech & Digital Transformation

Technology advisory grounded in a CTO background — architecture, modernization and digital transformation guided by security from day one.

advisorytransformationcto
AI · 08

AI, Securely

Bringing AI into the organization without opening new attack surface — applied use, governance and the risks most teams discover too late.

aigovernancerisk
TLK · 09

Talks & Lectures

Speaking on cybersecurity, risk and the reality of the CISO seat — for teams, leadership and professional audiences. Technical when it needs to be.

speakingtrainingworkshops
// CREDENTIALS

Certified, audited, accountable.

The letters behind the work — held, not borrowed. Tailored security still has to stand up to standards.

CISSP
Certified Information Systems Security Professional(ISC)² · verified
CISM
Certified Information Security ManagerISACA · verified
ISO 27001
Lead Auditor · ISO/IEC 27001:2022IQC · 2024
DPO
Data Protection OfficerBar-Ilan Univ. · 2025
CISO
Chief Information Security Officer ProgramTechnion · 2018
CLOUD
Cloud EssentialsAWS · Google Cloud

CISSP and CISM are independently verifiable on Credly.

02 //

The Labs

Tailored — each one built for a specific problem, not pulled off a shelf.
RESTRICTED

We don't only advise. We build.

Applied research — tools and systems we develop for the security, automation and connected-device problems we keep running into.

// REORGANIZING
The lab files are being reorganized — new work coming soon.
03 //

The Challenge

// ACCESS_CHALLENGE

For those who like to look closer.

A series of cyber puzzles is on the way — for the curious, the stubborn, and anyone who reads the things most people scroll past.

Hit it — and save your seat with us.

Y29taW5nIHNvb24uLiBjaGVjayBpbiAyLzcgMTg6Mjg=
// first one's free — what's it hiding?
By entering you accept the terms & conditions.© 2026 GRC·LABS — our challenge, all rights reserved.
Establish contact

We tailor security to fit.

Great technology and sharp cyber, measured to your needs and cut to fit your organization — never off-the-rack. We take on a small number of clients at a time; tell us what you're protecting.

// the team is growing — talented people, watch this space.
Portrait illustration of Yaniv Dadon Portrait illustration of Yaniv Dadon
SUBJECT // Y.DADONCEO
CISSP certification badge, ISC2 CISM certification badge, ISACA
CISSP · CISMISO 27001 LA · DPO