Singapore - English
Indonesia - English
News

Kamindo – Penetration testing and ISO 27001 implementation for regulated industries in SEA

29 Apr 2026
Hey HN,

We built Kamindo, a cybersecurity firm helping mid-to-large enterprises in Singapore and Indonesia get serious about security without drowning in compliance overhead.

We started this because too many companies in regulated industries — healthcare, finance, government — were treating security as a checkbox. They'd get a pen test report, file it away, and move on. Nothing actually changed.

So we built a practice around full-cycle engagements: VAPT, ISO 27001 implementation, PCI DSS support, and security awareness training that's actually role-based rather than generic slide decks.

On the technical side, we run phishing simulations alongside training to measure real behavior change, not just completion rates.

We're still early in building out our tooling and methodology documentation. Would love feedback from anyone who's been through ISO 27001 or PCI DSS implementations — what made them painful?

Get the Latest News

Subscribe to receive Kamindo cybersecurity news directly in your inbox.