The expertise
The expertise at Diri provides consulting, risk assessments, and different courses, in addition to your digital security expert – the Diri tool. You can also join our community for more knowledge about risk management.

Consulting in safety management, risk management and architecture

The expertise at Diri offers consulting in several areas of cyber security. We have long experience with management systems (ISMS), establishing risk management and safety architecture in large companies. Our expertise is experienced speakers and has worked with courses and training within several aspects of information security.

Risk assessments of cyber security

The people in Diri have participated in over a hundred risk assessments. In addition, we have experience as leaders, facilitators, participants, and consultants within the area. We have methodology and experience from:
- Strategic and overall risk assessments
- ICT system assessments
- Work processes with support systems
- Assessments of independent issues within the field
We are also experienced with building systems for risk management for larger businesses within the field.

Courses and training

Diri has experienced trainers with a good breadth in cyber and information security. We can provide targeted training on specific topics and more straightforward lectures on safety. Below is a selection of our main topics, but we are not limited to these.
- Basic information security
- Basic risk management and analyses for cyber security (ISO27005)
- Safety and preparedness
- NSM basic principles (and other security framework like CIS / CSF)
- Management systems for cyber security (ISO27001/2)
- Security architecture and zone models
- Password security
- The importance of GDPR for cyber security
- Risk management of specific issues such as ransomware and invoice fraud
- Value assessments
- Threat assessments
- Vulnerability assessments
- Control mapping
- Advanced risk analysis for cyber security
- Risk management, measures and follow-up
- Root cause analysis for cyber security
- OSINT assesment of own business
- Basic O365 security
Our experts

Vebjørn Slyngstadli

Vebjørn is COO at Diri AS and has a technical education in electronics, computers, and programming. He has attended several classes, for instance, Microsoft, Citrix, and ITIL. He is also a certified ISO 27001 Lead Implementer and has taken economic studies at BI. Vebjørn has many years of experience with large projects related to IT infrastructure, client, and application operations. In the last few years, he has been dedicated to information security and architecture at NTNU. The core area of expertise is:
- Project management
- Information security
- Architecture
- Risk management and risk analysis
- O365/Azure
- GDPR

Gaute Wangen

Gaute is CTO at Diri AS and one of the leading experts in Norway on risk management and risk assessment of information systems. With a PhD in risk management in cyber security, he knows the framework and standards for information security. Gaute has participated in, managed, and reviewed hundreds of risk assessments. He is the main inventor of the Diri software, a state-of-the-art risk management tool for cyber security. In addition, he teaches at NTNU. The core area of expertise is:
- Risk management, risk assessment, and compliance
- Value, threat, vulnerability, and control assessments
- ISO 27001/2/4/5
- NSM basic principles for ICT security
- Cybersecurity framework (CSF) / CIS Framework
- GDPR
- Management systems for information security (ISO 27001)
- Security audits (formerly CISA-sertified)
- Security architecture
- Planning for preparedness and continuity