Developer docs
API playgroundTry for free, no card

Search company profiles

BH Consulting

Full company profile

uuid0009ywx

Namestring
BH Consulting
Legal namestring
BH IT Consulting Ltd.
Websiteurl
bhconsulting.ie
Company typeenum
Private
Founded yearint
2004
Descriptiontext

BH Consulting (legal name BH IT Consulting Ltd.) is an independent cybersecurity and data protection consultancy founded in 2004 and headquartered in Dublin, Ireland. The firm delivers professional services across four categories: cybersecurity advisory (Virtual CISO, Security Maturity Assessment, Third Party Risk Management, SOC/SIEM Advisory, Security Architecture, Incident Response Tabletop Exercises, and OT Cybersecurity for Smart Buildings), test and assurance (Penetration Testing, Vulnerability Assessment, Cloud, Microsoft 365, and Google Workspace security assessments), data protection and GDPR services (Outsourced DPO, GDPR Maturity Assessment, ROPA management, DPIA, EU Representative, and EU-US Data Privacy Framework support), and regulatory compliance (ISO 27001, ISO 27701, NIS2, DORA, TISAX, PCI DSS, CSA STAR, Cyber Essentials, and AI Governance). The firm is ISO 27001 certified and ISO 27701 aligned, and positions itself as vendor-neutral with no ties to IT vendors.

The business model is professional services delivered on a quote-based, engagement-by-engagement basis with senior consultants working directly with client organizations. The go-to-market is expert-led, leveraging thought leadership and earned media (CEO Brian Honan is regularly cited in the Washington Post, Wall Street Journal, Forbes, and The Times) to drive inbound inquiries. BH Consulting serves enterprise and mid-market clients across industries including aviation, financial services, healthcare, retail, hospitality, telecommunications, logistics, education, and government, alongside nonprofit clients. Named customers include AerCap, Canada Life, Universal Investment, three.ie, DPD, Dalata Hotel Group, Brown Thomas Arnotts, University College Dublin, Origin Enterprises, and Make-A-Wish Ireland. Geographic reach spans Ireland, the UK (London, Manchester, Edinburgh, Belfast), the United States (New York), and the Middle East and Asia-Pacific. The firm has 11-50 employees and is founder-led by CEO Brian Honan and COO Dr. Valerie Lyons, with no external institutional investment disclosed.

Short descriptiontext

BH Consulting is an independent cybersecurity and data protection consultancy, founded in 2004 and headquartered in Dublin, providing advisory, testing, compliance, and training services to enterprises and mid-market organizations across Ireland, the UK, the US, and other international markets.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
11–50
akta.pro rankint
HeadquartersDublin, Ireland
HQ citystring
Dublin
HQ countrystring
Ireland
HQ regionstring
Europe
Markets served

Serves global market

Offices6 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
cybersecurity consulting, data protection services, GDPR compliance, ISO 27001 advisory, virtual CISO services
NAICS code1 code
  • Management Consulting Services54161
SIC code1 code
  • Services-Management Consulting Services8742
Product category
Cybersecurity Consulting
Social media profiles2 records
GTM motion1 record

Each record includes

Type, Description, Source

Revenue model4 records
1Cybersecurity Consulting Services
TypeProfessional Services
Description

Revenue generated from providing cybersecurity advisory, assessment, testing, and consulting services to organizations. Services include Virtual CISO, Security Maturity Assessment, Penetration Testing, Incident Response Planning, and Security Architecture services.

bhconsulting.ie
2Data Protection Services
TypeProfessional Services
Description

Revenue from outsourced DPO services, GDPR compliance assessments, ROPA management, Data Protection Impact Assessments, and EU Representative services.

bhconsulting.ie
3Compliance Services
TypeProfessional Services
Description

Revenue from helping organizations achieve compliance with regulatory frameworks including NIS2, DORA, ISO 27001, ISO 27701, Cyber Essentials, TISAX, and PCI DSS.

bhconsulting.ie
4Training Services
TypeProfessional Services
Description

Revenue from delivering cybersecurity awareness training and data protection awareness training programs, as well as conference presentations.

bhconsulting.ie
Marketing channels6 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels2 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Operations, Marketing or Sales, Technology or R&D, Infrastructure
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 record
1BH Academy
Description

Training and educational programs offered by BH Consulting for cybersecurity and data protection awareness.

bhconsulting.ie
Core offering1 text field

BH Consulting is an independent cybersecurity and data protection consultancy delivering professional services including Virtual CISO, security maturity assessments, penetration testing, outsourced DPO, GDPR compliance, and ISO 27001/27701 alignment. The firm serves organizations requiring expert security leadership, regulatory compliance, and vendor-neutral advisory without ties to IT vendors.

Differentiator
Functional benefit
Problem solved
Product overview1 text field

BH Consulting is a professional services firm offering an integrated portfolio of cybersecurity, data protection, compliance, and training services. The offering consists of multiple service categories: Cybersecurity services (including Virtual CISO, Security Maturity Assessment, Third Party Risk Management, SOC/SIEM Advisory, and Incident Response Tabletop Exercises); Test & Assurance services (Penetration Testing, Vulnerability Assessment, Cloud Security Assessment, and platform-specific assessments for Microsoft 365 and Google Workspace); Data Protection services (Outsourced DPO, GDPR Maturity Assessment, ROPA & Policy Management, and EU-US Data Privacy Framework support); Compliance services (ISO 27001/27701 alignment, NIS2 Directive compliance, Cyber Essentials, TISAX, CSA STAR, DORA, AI Governance, and PCI DSS); and Training services (Cybersecurity Awareness Training and Data Protection Awareness Training). The services are delivered as consulting engagements rather than a unified software platform, providing expert guidance across governance, risk, compliance, testing, and training to help organizations protect their information assets.

Product and service37 records
1Virtual CISO
CategoryCybersecurity Service
Description

Provides executive-level cybersecurity leadership and strategic guidance without the cost of a full-time hire, offering expert guidance on security strategy and governance for organizations lacking internal CISO resources.

2Security Maturity Assessment
CategoryCybersecurity Service
Description

Evaluates an organization's current security posture and benchmarks it against industry standards to identify gaps and improvement opportunities.

3Third Party Risk Management
CategoryCybersecurity Service
Description

Assesses and manages risks associated with vendors, suppliers, and other third parties to protect the organization's supply chain.

4Business Continuity Planning
CategoryCybersecurity Service
Description

Develops plans and strategies to ensure critical business functions can continue during and after a disruption or cyber incident.

5Security Review & Advisory for SMEs
CategoryCybersecurity Service
Description

Provides tailored cybersecurity advice and security reviews designed specifically for small and medium-sized enterprises.

6SOC/SIEM Advisory
CategoryCybersecurity Service
Description

Offers guidance on Security Operations Center (SOC) and Security Information and Event Management (SIEM) implementation and optimization.

7Security Architecture & Design
CategoryCybersecurity Service
Description

Designs and reviews security architectures to ensure robust protection of IT infrastructure and systems.

8Identity & Access Management Strategic Planning
CategoryCybersecurity Service
Description

Strategic planning services for managing digital identities and controlling access to systems and data.

9OT Cybersecurity Risk Assessment for Smart Buildings
CategoryCybersecurity Service
Description

Assesses cybersecurity risks specific to operational technology in smart building environments.

10Incident Response Tabletop Exercises
CategoryCybersecurity Service
Description

Facilitates simulated incident response scenarios to prepare organizations for real cyber incidents.

11Penetration Testing
CategoryTest & Assurance Service
Description

Simulates real-world attacks to identify vulnerabilities in systems, networks, and applications before attackers can exploit them.

12Vulnerability Assessment
CategoryTest & Assurance Service
Description

Systematically identifies and evaluates vulnerabilities across the organization's IT infrastructure.

13Firewall Security Assessment
CategoryTest & Assurance Service
Description

Reviews and tests firewall configurations to ensure they provide adequate network protection.

14Cloud Security Assessment
CategoryTest & Assurance Service
Description

Evaluates the security of cloud environments and configurations across various cloud platforms.

15Microsoft 365 Security Assessment
CategoryTest & Assurance Service
Description

Assesses the security posture of Microsoft 365 environments and identifies configuration weaknesses.

16Google Workspace Security Assessment
CategoryTest & Assurance Service
Description

Evaluates the security configuration and settings of Google Workspace deployments.

17Outsourced DPO
CategoryData Protection Service
Description

Provides a professional Data Protection Officer to fulfill GDPR requirements without the cost of internal recruitment.

18GDPR Maturity Assessment
CategoryData Protection Service
Description

Benchmarks an organization's compliance with GDPR requirements and identifies areas for improvement.

19ROPA & Policy Management Services
CategoryData Protection Service
Description

Maintains Records of Processing Activities (ROPA) and develops data protection policies in line with GDPR.

20Data Protection Audit (GDPR)
CategoryData Protection Service
Description

Conducts comprehensive audits of data processing activities to ensure GDPR compliance.

21EU Representative
CategoryData Protection Service
Description

Acts as the required EU representative for organizations based outside the European Union under GDPR Article 27.

22Data Protection Impact Assessment
CategoryData Protection Service
Description

Assesses the impact of data processing activities on individuals' privacy rights as required for high-risk processing under GDPR.

23EU-US Data Privacy Framework Implementation Support
CategoryData Protection Service
Description

Guides organizations through the requirements and implementation of the EU-US Data Privacy Framework for transatlantic data transfers.

24ISO 27001 Alignment Service
CategoryCompliance Service
Description

Guides organizations through achieving ISO 27001 certification for information security management systems.

25ISO 27701 Alignment Service
CategoryCompliance Service
Description

Supports organizations in achieving ISO 27701 certification, extending ISO 27001 for privacy information management.

26ISO 27001 & ISO 27701 Internal Audit Services
CategoryCompliance Service
Description

Conducts internal audits against ISO 27001 and ISO 27701 standards to identify gaps and prepare for certification.

27Compliance with NIS2 Directive
CategoryCompliance Service
Description

Helps organizations understand and comply with the EU NIS2 Directive requirements for cybersecurity.

28Cyber Essentials
CategoryCompliance Service
Description

Assists organizations in achieving Cyber Essentials certification for baseline cybersecurity hygiene.

29ISMS Manager as a Service
CategoryCompliance Service
Description

Outsourced Information Security Management System (ISMS) management to maintain ISO 27001 compliance continuously.

30TISAX Alignment Service
CategoryCompliance Service
Description

Supports automotive industry organizations in achieving TISAX compliance for information security assessment.

31Cloud Security Alliance STAR Programme
CategoryCompliance Service
Description

Helps cloud service providers achieve CSA STAR certification to demonstrate cloud security capabilities.

32Digital Operational Resilience Act (DORA)
CategoryCompliance Service
Description

Guides financial sector organizations in meeting DORA requirements for digital operational resilience.

33AI Governance, Risk & Compliance
CategoryCompliance Service
Description

Provides guidance on managing AI systems responsibly in compliance with the EU AI Act and related regulations.

34PCI DSS
CategoryCompliance Service
Description

Supports organizations in achieving and maintaining PCI DSS compliance for secure payment card data handling.

35Cybersecurity Awareness Training
CategoryTraining Service
Description

Educates employees on cybersecurity best practices and how to recognize and respond to threats.

36Data Protection Awareness Training
CategoryTraining Service
Description

Trains staff on data protection principles and GDPR compliance requirements.

37Conference Presentations
CategoryTraining Service
Description

Expert speaking engagements at industry conferences on cybersecurity and data protection topics.

Scale indicator3 records

Each record includes

Type, Value, Description, Source

Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight6 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

UK cybersecurity consultancy offering penetration testing, ISO 27001, GDPR, security architecture and incident response services. Similar vendor-neutral, advisory-led model to BH Consulting, focused on enterprise and regulated clients.

TypeBroad incumbent
Description

Now part of Google Cloud, Mandiant is a global incident response, threat intelligence and cybersecurity consulting leader. Larger-scale incumbent competing for the same enterprise IR, NIS2 and DORA advisory engagements.

TypeDirect peer
Description

UK cybersecurity consultancy delivering compliance assessments (ISO 27001, PCI DSS, Cyber Essentials), penetration testing, and GRC advisory. Comparable boutique-scale compliance and assurance peer to BH Consulting.

TypeBroad incumbent
Description

Global cybersecurity company offering consulting, managed security, penetration testing, GDPR/PCI DSS and ISO 27001 services. Larger incumbent competing in adjacent segments of BH Consulting's portfolio.

TypeBroad incumbent
Description

European-headquartered cybersecurity firm providing consulting, managed detection and response, and compliance advisory (including ISO 27001). Comparable on consulting services, broader portfolio than BH Consulting.

TypeDirect peer
Description

UK-headquartered cybersecurity consulting and assurance firm offering penetration testing, ISO 27001, ISO 27701, GDPR/DPO, incident response and managed security services. Most directly comparable to BH Consulting on service catalog, regional base and compliance-led positioning.

TypeDirect peer
Description

Ireland-based cybersecurity services firm providing managed security, penetration testing, ISO 27001, GDPR consulting and vCISO offerings. Closest geographic and product-market fit to BH Consulting across enterprise and mid-market clients.

TypeDirect peer
Description

UK-based independent cybersecurity consultancy delivering cyber risk management, penetration testing, ISO 27001, NIS2/DORA advisory and managed security. Comparable to BH Consulting as a similarly-sized, vendor-neutral, UK/Ireland-focused specialist.

TypeDirect peer
Description

UK/Ireland cyber consultancy offering penetration testing, ISO 27001, GDPR/DPO and vCISO services. Overlaps with BH Consulting across advisory, testing and outsourced leadership offerings.

TypeBroad incumbent
Description

Big Four advisory practice delivering cyber risk, ISO 27001, GDPR, NIS2/DORA and resilience consulting globally. Competes for the same enterprise compliance and risk engagements from a much larger platform.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat4 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers18 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment5 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile4 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
No
API detail
Has APIbool
No

Docs URL, Description

AI maturity
App detail

Has app

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles2 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
Compliance4 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

BH Consulting

Cybersecurity Consultingbhconsulting.ie

BH Consulting is an independent cybersecurity and data protection consultancy, founded in 2004 and headquartered in Dublin, providing advisory, testing, compliance, and training services to enterprises and mid-market organizations across Ireland, the UK, the US, and other international markets.

What BH Consulting does

BH Consulting (legal name BH IT Consulting Ltd.) is an independent cybersecurity and data protection consultancy founded in 2004 and headquartered in Dublin, Ireland. The firm delivers professional services across four categories: cybersecurity advisory (Virtual CISO, Security Maturity Assessment, Third Party Risk Management, SOC/SIEM Advisory, Security Architecture, Incident Response Tabletop Exercises, and OT Cybersecurity for Smart Buildings), test and assurance (Penetration Testing, Vulnerability Assessment, Cloud, Microsoft 365, and Google Workspace security assessments), data protection and GDPR services (Outsourced DPO, GDPR Maturity Assessment, ROPA management, DPIA, EU Representative, and EU-US Data Privacy Framework support), and regulatory compliance (ISO 27001, ISO 27701, NIS2, DORA, TISAX, PCI DSS, CSA STAR, Cyber Essentials, and AI Governance). The firm is ISO 27001 certified and ISO 27701 aligned, and positions itself as vendor-neutral with no ties to IT vendors.

The business model is professional services delivered on a quote-based, engagement-by-engagement basis with senior consultants working directly with client organizations. The go-to-market is expert-led, leveraging thought leadership and earned media (CEO Brian Honan is regularly cited in the Washington Post, Wall Street Journal, Forbes, and The Times) to drive inbound inquiries. BH Consulting serves enterprise and mid-market clients across industries including aviation, financial services, healthcare, retail, hospitality, telecommunications, logistics, education, and government, alongside nonprofit clients. Named customers include AerCap, Canada Life, Universal Investment, three.ie, DPD, Dalata Hotel Group, Brown Thomas Arnotts, University College Dublin, Origin Enterprises, and Make-A-Wish Ireland. Geographic reach spans Ireland, the UK (London, Manchester, Edinburgh, Belfast), the United States (New York), and the Middle East and Asia-Pacific. The firm has 11-50 employees and is founder-led by CEO Brian Honan and COO Dr. Valerie Lyons, with no external institutional investment disclosed.

BH Consulting firmographics

Firmographics
Name
BH Consulting
Legal name
BH IT Consulting Ltd.
Website
https://bhconsulting.ie
Company type
Private
Founded year
2004
Operating status
Operating
Headcount range
11–50 employees
Short description
BH Consulting is an independent cybersecurity and data protection consultancy, founded in 2004 and headquartered in Dublin, providing advisory, testing, compliance, and training services to enterprises and mid-market organizations across Ireland, the UK, the US, and other international markets.
Ownership category
akta.pro rank

Where BH Consulting is headquartered

Location

Headquarters

HQ city
Dublin
HQ country
Ireland
HQ region
Europe

Offices6 records

Markets served

BH Consulting business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Operations, Marketing or Sales, Technology or R&D, Infrastructure

Revenue model

  1. Cybersecurity Consulting Services: Revenue generated from providing cybersecurity advisory, assessment, testing, and consulting services to organizations. Services include Virtual CISO, Security Maturity Assessment, Penetration Testing, Incident Response Planning, and Security Architecture services.
  2. Data Protection Services: Revenue from outsourced DPO services, GDPR compliance assessments, ROPA management, Data Protection Impact Assessments, and EU Representative services.
  3. Compliance Services: Revenue from helping organizations achieve compliance with regulatory frameworks including NIS2, DORA, ISO 27001, ISO 27701, Cyber Essentials, TISAX, and PCI DSS.
  4. Training Services: Revenue from delivering cybersecurity awareness training and data protection awareness training programs, as well as conference presentations.

Go-to-market motion1 record

Distribution channels2 records

Marketing channels6 records

BH Consulting product offering

Product offering

Core offering

BH Consulting is an independent cybersecurity and data protection consultancy delivering professional services including Virtual CISO, security maturity assessments, penetration testing, outsourced DPO, GDPR compliance, and ISO 27001/27701 alignment. The firm serves organizations requiring expert security leadership, regulatory compliance, and vendor-neutral advisory without ties to IT vendors.

Product overview

BH Consulting is a professional services firm offering an integrated portfolio of cybersecurity, data protection, compliance, and training services. The offering consists of multiple service categories: Cybersecurity services (including Virtual CISO, Security Maturity Assessment, Third Party Risk Management, SOC/SIEM Advisory, and Incident Response Tabletop Exercises); Test & Assurance services (Penetration Testing, Vulnerability Assessment, Cloud Security Assessment, and platform-specific assessments for Microsoft 365 and Google Workspace); Data Protection services (Outsourced DPO, GDPR Maturity Assessment, ROPA & Policy Management, and EU-US Data Privacy Framework support); Compliance services (ISO 27001/27701 alignment, NIS2 Directive compliance, Cyber Essentials, TISAX, CSA STAR, DORA, AI Governance, and PCI DSS); and Training services (Cybersecurity Awareness Training and Data Protection Awareness Training). The services are delivered as consulting engagements rather than a unified software platform, providing expert guidance across governance, risk, compliance, testing, and training to help organizations protect their information assets.

Differentiator

Problem solved

Functional benefit

Brands

  • BH Academy: Training and educational programs offered by BH Consulting for cybersecurity and data protection awareness.

Products and services

  • Virtual CISO Provides executive-level cybersecurity leadership and strategic guidance without the cost of a full-time hire, offering expert guidance on security strategy and governance for organizations lacking internal CISO resources.
  • Security Maturity Assessment Evaluates an organization's current security posture and benchmarks it against industry standards to identify gaps and improvement opportunities.
  • Third Party Risk Management Assesses and manages risks associated with vendors, suppliers, and other third parties to protect the organization's supply chain.
  • Business Continuity Planning Develops plans and strategies to ensure critical business functions can continue during and after a disruption or cyber incident.
  • Security Review & Advisory for SMEs Provides tailored cybersecurity advice and security reviews designed specifically for small and medium-sized enterprises.
  • SOC/SIEM Advisory Offers guidance on Security Operations Center (SOC) and Security Information and Event Management (SIEM) implementation and optimization.
  • Security Architecture & Design Designs and reviews security architectures to ensure robust protection of IT infrastructure and systems.
  • Identity & Access Management Strategic Planning Strategic planning services for managing digital identities and controlling access to systems and data.
  • OT Cybersecurity Risk Assessment for Smart Buildings Assesses cybersecurity risks specific to operational technology in smart building environments.
  • Incident Response Tabletop Exercises Facilitates simulated incident response scenarios to prepare organizations for real cyber incidents.
  • Penetration Testing Simulates real-world attacks to identify vulnerabilities in systems, networks, and applications before attackers can exploit them.
  • Vulnerability Assessment Systematically identifies and evaluates vulnerabilities across the organization's IT infrastructure.
  • Firewall Security Assessment Reviews and tests firewall configurations to ensure they provide adequate network protection.
  • Cloud Security Assessment Evaluates the security of cloud environments and configurations across various cloud platforms.
  • Microsoft 365 Security Assessment Assesses the security posture of Microsoft 365 environments and identifies configuration weaknesses.
  • Google Workspace Security Assessment Evaluates the security configuration and settings of Google Workspace deployments.
  • Outsourced DPO Provides a professional Data Protection Officer to fulfill GDPR requirements without the cost of internal recruitment.
  • GDPR Maturity Assessment Benchmarks an organization's compliance with GDPR requirements and identifies areas for improvement.
  • ROPA & Policy Management Services Maintains Records of Processing Activities (ROPA) and develops data protection policies in line with GDPR.
  • Data Protection Audit (GDPR) Conducts comprehensive audits of data processing activities to ensure GDPR compliance.
  • EU Representative Acts as the required EU representative for organizations based outside the European Union under GDPR Article 27.
  • Data Protection Impact Assessment Assesses the impact of data processing activities on individuals' privacy rights as required for high-risk processing under GDPR.
  • EU-US Data Privacy Framework Implementation Support Guides organizations through the requirements and implementation of the EU-US Data Privacy Framework for transatlantic data transfers.
  • ISO 27001 Alignment Service Guides organizations through achieving ISO 27001 certification for information security management systems.
  • ISO 27701 Alignment Service Supports organizations in achieving ISO 27701 certification, extending ISO 27001 for privacy information management.
  • ISO 27001 & ISO 27701 Internal Audit Services Conducts internal audits against ISO 27001 and ISO 27701 standards to identify gaps and prepare for certification.
  • Compliance with NIS2 Directive Helps organizations understand and comply with the EU NIS2 Directive requirements for cybersecurity.
  • Cyber Essentials Assists organizations in achieving Cyber Essentials certification for baseline cybersecurity hygiene.
  • ISMS Manager as a Service Outsourced Information Security Management System (ISMS) management to maintain ISO 27001 compliance continuously.
  • TISAX Alignment Service Supports automotive industry organizations in achieving TISAX compliance for information security assessment.
  • Cloud Security Alliance STAR Programme Helps cloud service providers achieve CSA STAR certification to demonstrate cloud security capabilities.
  • Digital Operational Resilience Act (DORA) Guides financial sector organizations in meeting DORA requirements for digital operational resilience.
  • AI Governance, Risk & Compliance Provides guidance on managing AI systems responsibly in compliance with the EU AI Act and related regulations.
  • PCI DSS Supports organizations in achieving and maintaining PCI DSS compliance for secure payment card data handling.
  • Cybersecurity Awareness Training Educates employees on cybersecurity best practices and how to recognize and respond to threats.
  • Data Protection Awareness Training Trains staff on data protection principles and GDPR compliance requirements.
  • Conference Presentations Expert speaking engagements at industry conferences on cybersecurity and data protection topics.

Companies that use BH Consulting

Customer profile

Named customers18 records

Segments5 records

Ideal customer profiles4 records

BH Consulting technology and API

Technology

Technology focussed No

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

BH Consulting partnerships and signals

Strategic signal

Scale indicators3 records

Recent moves6 records

Expansion highlights6 records

BH Consulting competitors and assessment

Company assessment

Direct peers

  • Cyberis: UK cybersecurity consultancy offering penetration testing, ISO 27001, GDPR, security architecture and incident response services. Similar vendor-neutral, advisory-led model to BH Consulting, focused on enterprise and regulated clients.
  • SureCloud: UK cybersecurity consultancy delivering compliance assessments (ISO 27001, PCI DSS, Cyber Essentials), penetration testing, and GRC advisory. Comparable boutique-scale compliance and assurance peer to BH Consulting.
  • NCC Group: UK-headquartered cybersecurity consulting and assurance firm offering penetration testing, ISO 27001, ISO 27701, GDPR/DPO, incident response and managed security services. Most directly comparable to BH Consulting on service catalog, regional base and compliance-led positioning.
  • Integrity360: Ireland-based cybersecurity services firm providing managed security, penetration testing, ISO 27001, GDPR consulting and vCISO offerings. Closest geographic and product-market fit to BH Consulting across enterprise and mid-market clients.
  • Bridewell: UK-based independent cybersecurity consultancy delivering cyber risk management, penetration testing, ISO 27001, NIS2/DORA advisory and managed security. Comparable to BH Consulting as a similarly-sized, vendor-neutral, UK/Ireland-focused specialist.
  • TwoFive (formerly PricewaterhouseCoopey in cyber) / TwoFive: UK/Ireland cyber consultancy offering penetration testing, ISO 27001, GDPR/DPO and vCISO services. Overlaps with BH Consulting across advisory, testing and outsourced leadership offerings.

Broad incumbents

  • Mandiant: Now part of Google Cloud, Mandiant is a global incident response, threat intelligence and cybersecurity consulting leader. Larger-scale incumbent competing for the same enterprise IR, NIS2 and DORA advisory engagements.
  • Trustwave: Global cybersecurity company offering consulting, managed security, penetration testing, GDPR/PCI DSS and ISO 27001 services. Larger incumbent competing in adjacent segments of BH Consulting's portfolio.
  • WithSecure: European-headquartered cybersecurity firm providing consulting, managed detection and response, and compliance advisory (including ISO 27001). Comparable on consulting services, broader portfolio than BH Consulting.
  • KPMG Cybersecurity Services: Big Four advisory practice delivering cyber risk, ISO 27001, GDPR, NIS2/DORA and resilience consulting globally. Competes for the same enterprise compliance and risk engagements from a much larger platform.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat4 records

Key risks6 records

Key highlights7 records

Customer concentration

BH Consulting social profiles

Digital presence

BH Consulting compliance and trust

Trust signal

Compliance4 records

BH Consulting financial estimates

Financial estimate

Revenue estimate

Valuation estimate

BH Consulting leadership team

Management profile

Number of profiles

Profiles2 records

BH Consulting funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

BH Consulting M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about BH Consulting

What does BH Consulting do?

BH Consulting is an independent cybersecurity and data protection consultancy delivering professional services including Virtual CISO, security maturity assessments, penetration testing, outsourced DPO, GDPR compliance, and ISO 27001/27701 alignment. The firm serves organizations requiring expert security leadership, regulatory compliance, and vendor-neutral advisory without ties to IT vendors.

Is BH Consulting a public or private company?

BH Consulting is a private company. It is classified as founder individual operated bootstrapped and is currently operating.

When was BH Consulting founded?

BH Consulting was founded in 2004. It employs 11 to 50 people.

Where is BH Consulting based?

BH Consulting is headquartered in Dublin, Ireland, in the Europe region.

How does BH Consulting make money?

Four revenue lines are on record. Cybersecurity Consulting Services are the primary driver. The others are data Protection Services, compliance Services and training Services.

Who are BH Consulting's main competitors?

Direct peers on record are Cyberis, SureCloud, NCC Group, Integrity360, Bridewell and TwoFive (formerly PricewaterhouseCoopey in cyber) / TwoFive. Broad incumbents are Mandiant, Trustwave, WithSecure and KPMG Cybersecurity Services.

Does BH Consulting have an API?

No public API is recorded for BH Consulting.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
Help Net SecurityIn this new SME cybersecurity service, the AI assists and the consultants decideBH Consulting launched BH Haven, an SME cybersecurity service using AI for analysis and reporting, with consultants making final decisions. The service targets Irish and UK SMEs, offering four tiers from risk assessments to incident response. BH Consulting expects to create up to 50 specialist roles over three years.IrishtechnewsBH Consulting launches BH Haven to help Irish SMEs tackle growing cyber, regulatory and AI challengesBH Consulting launched BH Haven, a service for Irish SMEs addressing cybersecurity, regulatory, AI, and resilience challenges. The service combines governance and technical assurance, with four levels, and is available from September 2026. BH Consulting plans to expand into the UK, Nordic countries, and other EU markets, creating up to 50 new roles.Help Net SecurityEU Cybersecurity Act 2.0: When good regulation goes badThe author argues that the EU Cybersecurity Act 2.0 (CSA 2.0), a proposed evolution of the 2019 EU Cybersecurity Act, poses significant risks due to provisions allowing the European Commission to designate certain countries as "high-risk," causing vendors from those countries to face automatic restrictions across the EU. Research by BH Consulting for Digital Business Ireland found that companies well outside the direct regulatory scope would be affected through tighter supply-chain requirements and procurement rules, with IBEC warning that the changes could threaten 18 critical sectors in Ireland and cost the Irish telecoms industry approximately €730 million for equipment replacement. The author contends that the framework ties high-risk status to geopolitical origin rather than verifiable technical failings, warning that the mechanism could theoretically apply to any third country including the United States, with one estimate suggesting Chinese vendor restrictions alone could cost the EU approximately €368 billion over five years.