Six practice areas.
One standard of assurance.
A4S turns ISO standards into governance that works in the building — designed to your operating reality, implemented with your people, and tested the way an auditor would test it. Advisory, implementation, assessment and training across Nigeria and Ghana.
ISSUED BY TNV · IAS / IAF ACCREDITED
Governance, built to a standard someone else wrote.
Every A4S engagement is anchored to a published standard, so the result is auditable by a third party rather than only by us. Six practice areas cover the governance, technology, sustainability, operational, people and AI systems an organisation has to run and prove.
Business GRC
Corporate governance, enterprise risk, compliance obligations, anti-bribery, whistleblowing and fraud control.
IT GRC
Information security, cybersecurity, business continuity, privacy, cloud control and enterprise architecture.
Sustainability
SDG management systems, ESG implementation to IWA 48, human capital reporting and DEI.
QHSEC
Quality, occupational health and safety, environment, climate adaptation and facility management as one system.
Human Resources
The ISO 30400 series applied to recruitment, human governance, workforce planning, learning and HR systems.
Artificial Intelligence
AI management systems to ISO/IEC 42001 — data quality, bias, impact assessment and board accountability.
Governance that survives the audit.
We build the instruments a board is accountable for — governance frameworks, risk registers, compliance obligation libraries, anti-bribery and whistleblowing systems — and then test them the way an external auditor will. The output is a working control environment with named owners and evidence, not a policy binder.
- [01]ISO 37000Corporate governance
- [02]ISO 31000Enterprise risk management
- [03]ISO 37301Compliance management
- [04]ISO 19011Audit management
- [05]ISO 37001Anti-bribery management
- [06]ISO 37002Whistleblowing management
- [07]ISO 37003Fraud control management
- [08]ISO 21502Project management
Technology control your regulator can verify.
Information security, continuity, privacy and cloud controls implemented to ISO alongside the frameworks your sector actually gets assessed against — CIS, NIST CSF, ITIL, COBIT, TOGAF. We build the control set and the evidence trail together, so certification and regulatory review draw on the same operating record.
- [09]ISO 38500 · COBIT 2019IT governance
- [10]ISO 20000 · ITIL v4IT service management
- [11]ISO 27001 · CIS ControlsInformation security
- [12]ISO 27032 · NIST CSF 2.0Cybersecurity
- [13]ISO 22301 · DRII PPFBusiness continuity
- [14]ISO 29100 · ISO 27701Data privacy and protection
- [15]ISO 27017 · CSA GuidanceCloud security
- [16]ISO 42010 · TOGAF 10Enterprise architecture
ESG that leaves the annual report.
Sustainability commitments become managed systems: defined objectives, named owners, data you can trace to source, and reporting that holds up under assurance. We work to ISO 53001 for SDG management and IWA 48 for ESG implementation, and we prepare the disclosure so it can be verified rather than asserted.
- [17]ISO 53001 · ISO 53002SDG management systems
- [18]ISO 37101Sustainable development in communities
- [19]IWA 48ESG implementation framework
- [20]ISO 30414Human capital reporting
- [21]ISO 30415Diversity, equity and inclusion
Five systems, run as one.
Quality, health and safety, environment, climate and facilities share most of their clause structure — so running them as separate systems duplicates work and multiplies audits. We integrate them into a single management system with one risk register, one document set and one audit programme, and measure the operational result rather than the paperwork.
- [22]ISO 9001 · Lean Six SigmaQuality management
- [23]ISO 45001Occupational health and safety
- [24]ISO 14001Environmental management
- [25]ISO 14090Climate change adaptation
- [26]ISO 41001Facility management
The people function, held to a standard.
Most HR functions are measured on activity. The ISO 30400 series measures them on system quality — how people are recruited, governed, planned for, developed and reported on. We assess your HR function against the standards, close the gaps, and hand the board workforce metrics it can act on. Assessment and diagnostics come first, and they are free.
- [27]ISO 30201HR management system
- [28]ISO 30405Guidelines on recruitment
- [29]ISO 30408Guidelines on human governance
- [30]ISO 30409Workforce planning
- [31]ISO 30422Learning and development
- [32]ISO 23326Employee engagement
Deploy AI you can defend.
ISO/IEC 42001 gives AI the same treatment every other material risk gets: a management system, an accountable owner, documented impact assessment and a review cycle. We establish that system before deployment scales — covering data quality, bias, societal impact and the governance implications your board has to answer for.
- [33]ISO/IEC 42001AI management system
- [34]ISO/IEC 23053Framework for AI using machine learning
- [35]ISO/IEC 5259Data quality for analytics and ML
- [36]ISO/IEC 24368Ethical and societal concerns
- [37]ISO/IEC 38507Governance implications of AI
- [38]ISO/IEC 42005AI system impact assessment
Five stages, whichever standard you start from.
Every practice area runs the same delivery sequence. You can enter at any stage — most clients start at diagnose, because it tells you what the engagement actually needs to cover.
Diagnose
Gap assessment against the standard. We baseline what exists, what is missing, and what would fail an audit today.
Design
Policy, framework, controls and documented information built to the clause structure — sized to your organisation, not lifted from a template.
Implement
Rollout, training and embedding, with process owners named and evidence captured from the first day of operation.
Assure
Internal audit, management review and certification readiness. We run the audit before the certification body does.
Improve
Surveillance support, maturity assessment and corrective action that closes findings permanently rather than annually.
Sectors with something to prove.
Regulated, audited and publicly accountable organisations across Nigeria and Ghana — where a management system has to satisfy a supervisor, a lender, a donor or a board, not just an internal review.
We are assessed by the same logic we sell.
A certificate is only worth the accreditation behind it. Ours runs back through an accredited certification body to an international recognition arrangement — the same chain we build for clients, applied to ourselves.
- PECB
- MSECB
- Cognicert
- IIA Nigeria
- ISACA
- ILM
- CPN
- NIM
- CIArb Nigeria
- CIPM
- PeopleCert
- AXELOS
- IIBA
- PMI Nigeria
- CIML Global
- IoD Nigeria
- ISSP
- BCS
- VMEdu
- ACFE
- SPIN
- IOSH
- Federal Ministry of Environment
Programmes that build the capability in-house.
Advisory closes the gap once. Training keeps it closed. These three programmes carry the same standards into your own team.
Our implementation framework for environmental, social and governance performance, aligned to IWA 48.
Read the framework Initiative Train Africans on SustainabilityA pan-African programme certifying professionals in sustainability and SDG management standards.
See the programme Training Training Calendar 2026Scheduled certification courses across GRC, sustainability, QHSEC, HR and AI management standards.
View the calendarFind out what would fail an audit today.
A gap assessment takes days, not months, and it tells you exactly which standard, which clause and which control needs work before you commit to an implementation programme.
Ikeja, Lagos, Nigeria +234 805 233 3452
Leo Stan Ekeh Way, Durumi, Abuja +234 805 231 7478
Asylum Down, Accra, Ghana +233 24 472 0138





