Palisade is an independent protective security consultancy built on a single principle: understand the real threat, then prove and improve your defences against it. Every engagement opens with a realistic threat assessment; from there we test your security as a capable adversary would, review it in full within the National Protective Security Authority (NPSA) risk-management framework, and advise on the measures that meaningfully reduce risk — each justified by cost against benefit and by our independence from any equipment supplier. Built for the organisations a determined adversary is most likely to target: Critical National Infrastructure, major venues and events, and the corporations and principals who share their exposure.
Palisade unites Chartered status in both security and management — Chartered Security Professional (CSyP) and Chartered Manager (CMgr MCMI) — with the pre-eminent global credentials of ASIS International (CPP and PSP) and the Security Institute (MSyI), National Protective Security Authority (NPSA) endorsement, and the highest tier of United Kingdom national security vetting. Few independent practices hold this combination.
Palisade delivers a single, joined-up engagement — not disconnected products. It is predicated on a realistic threat assessment, calibrated to what an adversary can actually do and actually intends, and it runs within the National Protective Security Authority (NPSA) Protective Security Risk Management framework from first briefing to final recommendation.
Most organisations face opportunists — a tried door, a tailgater, a careless insider. A smaller number face something else entirely: a capable, planned, resourced adversary who conducts reconnaissance, understands your controls, and defeats them deliberately. Security calibrated for the opportunist is calibrated for the wrong attacker. So before anything is tested, we characterise the threat — adversary capability and intent — against your assets, sector, and profile, and scope everything that follows to that credible picture rather than a generic checklist. A venue does not need to defend against a state intelligence service; a Critical National Infrastructure site does. The threat assessment sets the standard the rest of the engagement is measured against.
We probe your security exactly as a capable adversary would — covert physical penetration testing and red teaming across the full attack path, under written scope and authorisation. Buying security is not the same as proving it works: flagship institutions have been defeated not by exotic sophistication but by untested basics. This is the empirical ground truth — what a real hostile actor could achieve, demonstrated rather than assumed.
With the covert phase complete, we assess in full — this time with your access and co-operation. Every layer is examined openly against the NPSA Deter–Detect–Delay–Mitigate–Respond model, so findings from the test are placed in the context of your whole security system, its people, and its procedures.
Finally, we advise — and stay to help you deliver. A prioritised upgrade roadmap where every measure is justified by cost-benefit against your realistic risk, then hands-on consulting support to implement it: specification, procurement guidance, and assurance that the upgrade actually closes the gap the test exposed.
Palisade sells no equipment, holds no reseller or manufacturer relationships, and takes no commission or referral fee from any supplier. We have nothing to sell you but our judgement. Every recommendation is made solely on cost-benefit against your realistic risk — the right measure, proportionate to a credible threat, at defensible cost — with no incentive to over-specify, and none to steer you toward a particular product.
Three lines that map directly onto the model — Test, Assess, Advise — plus a dedicated Martyn's Law pillar. All delivered within the National Protective Security Authority (NPSA) Protective Security Risk Management lifecycle and the Deter–Detect–Delay–Mitigate–Respond model, scoped through the NPSA Operational Requirements process, and structured for board distribution, Security Industry Authority (SIA) compliance submission, or insurance underwriter review.
Test. Covert, threat-calibrated assessment that exercises the complete adversary path — approach, breach, exploitation, and exfiltration — under written scope and authorisation. Conducted to Qualifications Network UK (QNUK) Level 4 Physical Penetration Testing standard, with timestamped photographic and technical evidence and a graded findings report.
Assess. A full, co-operative review of the whole security system with your access and disclosure — placing the test findings in the context of your people, procedures, and estate. Structured to the NPSA Protective Security Risk Management framework and graded against the realistic threat picture.
Advise. Independent, vendor-neutral consultancy that turns findings into a prioritised upgrade programme — every measure justified by cost-benefit against realistic risk — and stays alongside you to deliver it. We hold no supplier relationships, so the advice is yours alone.
Every Palisade engagement runs Test → Assess → Advise on a foundation of realistic threat assessment, aligned to the NPSA Protective Security Risk Management lifecycle. International Organization for Standardization 31000 risk management applied throughout; all work conducted under written scope and authorisation.
Where the threat picture extends beyond commercial criminality into state-directed reconnaissance, sabotage, and hybrid effect against United Kingdom Critical National Infrastructure and major venues, Palisade brings directly transferable specialist expertise. Led by a Royal Marines Commando Major (Retired) and grounded in operationally current understanding of the threats now codified in the United Kingdom National Security Risk Assessment, the practice assesses and advises across the capabilities below — each informing the realistic threat assessment that drives every engagement.
Operationally current understanding of small Unmanned Aerial System threat — Group 1 and 2 systems, First-Person View and modified payloads, GPS-denied autonomy. Advisory on detection architectures, layered Counter-UAS effect, and the regulatory limits of mitigation under United Kingdom law.
Replication of the patient, low-signature approach a capable adversary will use against a critical site. Hostile reconnaissance, covert access pathways, and standoff observation — the empirical inputs to a credible National Protective Security Authority Operational Requirements case.
Surveillance detection, anti-surveillance, and counter-reconnaissance protocols developed for hostile state operating environments. Applied to executive principals, sensitive site visits, and the protection of board-level decision making.
Realistic appraisal of state-directed and proxy sabotage against critical assets — the threat picture now codified in the United Kingdom National Security Risk Assessment. Vulnerability identification, target-set characterisation, and protective measures aligned to National Protective Security Authority guidance.
The Terrorism (Protection of Premises) Act 2025 — Security Industry Authority regulated, enforcement Spring 2027 — places new statutory duties on qualifying premises and events. Public protection documentation must be aligned to Home Office statutory guidance (April 2026).
Palisade delivers Martyn's Law engagements formatted for Security Industry Authority compliance submission, structured through the NPSA Operational Requirements process so measures remain proportionate to risk — not over-engineered, and not under-prepared.
A distinct pillar in its own right, it follows the same discipline as the rest of the practice: a Protective Security Risk Assessment first, then independent advisory and consulting support to deliver any recommended upgrades — each measure proportionate to the assessed risk, justified by cost against benefit, and specified with the vendor independence that runs through everything Palisade does.
Request a Compliance ReviewPalisade is built first for the organisations that face the most capable threats — Critical National Infrastructure operators and the venues and events now regulated under Martyn's Law — and extends the same threat-led, independent model across the high-value tier: national collections, financial institutions, corporations, and private principals. This is the narrow segment where a genuinely resourced adversary is the realistic threat, and where elite adversarial testing is warranted.
Energy, water, transport, communications, and the sites codified in the United Kingdom National Security Risk Assessment as targets for state-directed reconnaissance and sabotage. Developed Vetting cleared and engaged within NPSA frameworks — direct or via prime contractors.
Qualifying premises and events under the Terrorism (Protection of Premises) Act 2025 — stadia, arenas, cultural and public venues — needing proportionate, defensible, Martyn's Law-compliant protective security.
Galleries, heritage sites, archives, and high-value private collections — a target set under renewed scrutiny after recent high-profile thefts from flagship collections, where a capable, rehearsed adversary is the realistic threat.
Banks, vaults, cash centres, and headquarters — resourced, motivated adversaries met with convergent physical, personnel, technical, and cyber-physical assurance.
Boards and security functions requiring independent assurance — headquarters, data and research sites, pharma and precious-materials logistics — against insider, hostile-state, and convergent cyber-physical threats.
High Net Worth individuals, families, and at-risk principals — private residences, art and jewellery — facing targeting, hostile-state, or transnational-repression threats. Advised discreetly, with Russian-language capability available on request.
Palisade is founded and led by a Royal Marines Commando Major (Retired) — Chartered Security Professional (CSyP), ASIS International Certified Protection Professional (CPP) and Physical Security Professional (PSP), Member of the Security Institute (MSyI), Chartered Manager (CMgr MCMI), NPSA-endorsed Protective Security Adviser, and Developed Vetting (DV) cleared. This combination — Chartered in both security and management — is uncommon in the independent market; together these credentials evidence the professional standing, formal endorsement, and leadership discipline required for engagements at Critical National Infrastructure, government, venue, and High Net Worth principal level.
Every engagement is threat-led and independent. It begins with a realistic assessment of adversary capability and intent, runs through a structured Protective Security Risk Assessment, and closes with recommendations weighed on cost against benefit — advice shaped by professional judgement alone, since Palisade holds no supplier relationships and sells no equipment. All work is structured within the National Protective Security Authority (NPSA) Protective Security Risk Management framework and the Deter–Detect–Delay–Mitigate–Respond model, aligned to the four converged pillars — physical, personnel, technical, and cyber — and addresses the full threat spectrum of the United Kingdom National Security Risk Assessment: terrorism, hostile state espionage and reconnaissance, insider threat, serious and organised crime, and cyber-physical convergent attack.
Russian-language capability is available as an add-on for specific clients — supporting hostile-state and transnational-repression engagements directly, without intermediary translation, where a client requires it.
Independent · chartered · cleared — on your terms, with evidence and a plan. Confidential initial consultation, no obligation.
All enquiries are treated in strict confidence. Initial consultations are provided without obligation. Engagements are conducted under Non-Disclosure Agreement as standard, with written scope and authorisation on every assignment. Russian-language enquiries welcomed.