Independent cyber risk services — without the conflicts

We're vendor-independent, we have no technology to sell, and we don't provide MSP services. Just straightforward cyber risk advice tailored to your organisation's needs.

Who we are

Cybercraft is an independent Australian cyber risk services consultancy based in Adelaide, South Australia, working nationally with organisations of all sizes.

We focus on the layer above your MSP—compliance, risk management, and security oversight. We help organisations establish cyber-risk management practices, implement frameworks like ISO 27001 and Essential Eight, and develop policies that actually work for their context.

With no vendor partnerships, no products to resell, and no MSP services to protect, our advice is driven by one thing: what's best for your organisation's cyber resilience.

What we believe

Independence matters

No vendor conflicts, no hidden agendas. We recommend what's right for you, not what we have to sell.

Straightforward advice

No unnecessary jargon, no bloated frameworks. We distil complex concepts into actionable guidance you can actually use.

Practical innovation

We combine proven security practices with practical, innovative methods for digital engagement and cyber resilience.

Ethical foundation

Our no-nonsense approach is built on doing the right thing. For our clients, for our people, and for the industry.

The people behind Cybercraft

Jeff
Co-founder
With 30+ years in the IT industry focused on cloud, information security, and risk management, Jeff works with organisations to establish cyber-risk management practices. He designs and delivers cyber risk management programmes, specialising in ISO 27001, Essential Eight, and CIS frameworks. Jeff provides lead CISO services, board and C-level engagement, impact assessments, security architecture, and vCISO services.
Richard
Co-director
Richard has worked across a wide range of industry sectors with clients ranging from 10 to 1,500 staff. His speciality is helping organisations get a holistic view of their cyber risk through customised cyber policies—including cybersecurity, acceptable use, BYOD, and technical policies. He brings practical expertise to policy design that actually protects without creating friction.

Ready to start a conversation?

Tell us what triggered the question and we'll point you to the right starting point. No obligation, no sales pitch.

Get in touch

Kaurna Acknowledgement

We acknowledge and pay our respects to the Kaurna people, the traditional custodians of the ancestral lands on which we work. We acknowledge the deep feelings of attachment and relationship of the Kaurna people to country and we respect and value their past, present and ongoing connection to the land and cultural beliefs.