Uncovered critical IT vulnerabilities in a major tech acquisition, securing deal value.
A LEADERSHIP DISCIPLINE
Security is decided in the boardroom, not the server room
Strategic advisory and leadership training in information security, for those who need results, not reports.
Certified PECB Partner | 10+ years of returning clients in critical infrastructure, finance, and environmental sectors
Our service areas
Security and Preparedness
Operational security capability, CISO-level leadership, ISO 27001 certification and incident preparedness in one pillar. Berigo builds security as a management discipline, grounded in NIS2, GDPR and ISO/IEC 27001.
Technology Advisory
Technology advisory that anchors technology decisions in strategy, governance and regulation. We advise on technology strategy, AI governance, and secure cloud and architecture.
Risk Services
Risk management, privacy and supplier security as an integral part of governance. Berigo helps boards and executives understand, prioritise and manage risk, grounded in ISO 27001, the GDPR and NIS2.
Board Services
Security is decided in the boardroom, not the server room. Berigo supports boards with independent board advisory and NIS2 accountability, so digital risk is governed with the same rigour as finance.
M&A Support
Digital risk affects valuation, deal terms and integration costs. Berigo supports owners, boards and investors with security due diligence and secure integration throughout the transaction.
Certification and compliance
Become certification-ready for ISO/IEC 27001, ISO/IEC 42001 and ISO 22301, and establish documented GDPR compliance with ISO/IEC 27701. Gap assessment, advisory support or full implementation.
News
Alt i AktueltMeta says one of its models broke into another company during testing
Meta says one of its models unexpectedly gained internet access during a security evaluation, and that the model then exploited a vulnerability in a service outside the test environment. The test was run by Irregular, which also ran the evaluations for Anthropic, and the firm told the BBC that it is the same test environment fault Anthropic disclosed the week before.
New technique shows when a language model notices it is being tested
On 6 July 2026 Anthropic published research on what it calls the J-space, a small set of internal patterns that reveal which words a language model holds in mind without writing them down. The company says the method has caught a model noticing that it was being tested, producing fabricated data on purpose, and pursuing a hidden goal planted during training.
Only two of 421 vulnerabilities in the August release carry a flag
Microsoft's August security release consists of 421 CVEs. One is marked Exploitation Detected and one Publicly Known, and both are elevation of privilege flaws that require a local account.
What our clients say
Berigo and Roger Ison-Haug have been a truly unique partner, both at my current company and in my previous role. With Berigo as a partner it has been easier to combine regulatory compliance with genuine operational security across the whole group.
Proven Executive Outcomes
Guided a Nordic critical infrastructure provider from limited visibility to board-approved NIS2 compliance in 6 months.
Is your Board ready for NIS2?
Download the 2026 Executive Checklist for Cyber Liability.
Your address is used to send you the guide, and handled as described in our privacy statement. privacy statement.