Proven where it matters
We've worked across defence, government and critical infrastructure where security failures have real consequences — and we bring that same rigour to organisations of every size.
About
We're a UK cyber resilience consultancy forged in defence, government and critical infrastructure. Whether you're a CISO running a regulated programme or a CEO who knows cyber matters and isn't sure where to start — we meet you where you are.
Why P3M Works
P3M Works exists to make defence-grade cyber resilience accessible to the organisations that need it — at any scale. We deliver major programmes for defence, government and critical national infrastructure, and we run Resilience-as-a-Service for SMEs who know cyber matters but don't yet have the team, the language or the roadmap to act on it. Same people. Same standard. Whatever your size.
“P3M Works delivers cyber resilience as a service to Evident Insights. They’ve helped us understand our cyber vulnerabilities, by using cutting edge tools and providing cyber leadership to support the completion of cyber essentials, which was achieved far quicker than anticipated. Having a long term cyber resilience plan has also helped the company buy into the resilience process.”
What sets us apart
We've worked across defence, government and critical infrastructure where security failures have real consequences — and we bring that same rigour to organisations of every size.
Outcomes over slide decks. Plain English over jargon. Whether the audience is a board, a CISO or an MoD reviewer, we make complex security simple to act on.
We sit alongside your team — whether that team is a 50-person security function or you, the founder, on a Tuesday afternoon. Capability stays with you.
Cyber risk evolves. So should your defences. We right-size resilience to your organisation today and the one you're growing into.
How we work
Step 01
We start by listening. A board-level risk conversation, a technical deep-dive into your estate, or a calm 'where on earth do we start?' — we shape the work around your reality, not a template.
Step 02
We do the work. From advisory and programme delivery for regulated environments to hands-on Resilience-as-a-Service for SMEs — clear scope, clear outcomes, no theatre.
Step 03
We hand back capability, not dependency. Your team understands what was done, why, and how to keep it strong as the threat landscape shifts.
By the numbers
Who you'll work with

Director
Ben specialises in high-impact security initiatives that go beyond the norm. With a career spanning government, defence, and commercial sectors, Ben brings a pragmatic, battle-tested approach to modern security challenges.

Director
Jack has led the delivery of high-impact Cyber Resilience programmes for senior government clients around the world.
Shaping a national-scale programme? Or taking your first deliberate step on cyber as an SME? The conversation starts the same way — a short, no-pressure call to work out where we can help.