Skip to content

About Enigma

Enigma is an independent technology delivery assurance consultancy working on the client side of the table.

Organisations routinely outsource technology delivery while retaining accountability for the outcome. The supplier may own the build, implementation or managed service, but the client still owns the operational consequence, public accountability, investment exposure and acceptance decision.

Enigma exists to close the gap between supplier reporting and client confidence. We test whether the evidence supports the decision being requested, expose uncertainty that has been normalised and give governance a defensible basis for intervention, investment, acceptance or recovery.

Our position

We are not another layer in the supplier delivery chain. We work for client governance and remain separate from the organisations whose performance, controls or evidence we assess. Our conclusions reflect what can be demonstrated, including when that position is uncomfortable or commercially inconvenient.

Diagram separating client ownership, independent assurance and supplier delivery ownership.

Why independence matters

A delivery supplier can report progress, operate controls and submit evidence. It cannot provide genuinely independent assurance over its own delivery. The same conflict exists where a client quality function is embedded within the delivery line it is expected to challenge.

Independence is therefore a structural control, not a tone of voice. The reporting route, scope, evidence access, conflict rules and escalation authority must allow the assurance team to state what is proven, what remains uncertain and what consequence follows if the client proceeds.

Our capability

Engagements draw on senior capability across test leadership, quality assurance, programme direction, programme management, agile delivery and technical architecture. Migration, cutover and operational readiness are integrated where they affect the decision. The team is assembled around the mandate and risk, not around a fixed consulting pyramid.

Six assurance disciplines assembled around the client decision and exposure.

How we work

  • Start with the decision. Scope is defined by what leadership must decide and the consequence of being wrong.
  • Establish the evidence standard. Claims, forecasts and activity are separated from verified results.
  • Examine across delivery boundaries. Programme, quality, supplier, architecture, migration and operational risks are integrated.
  • Report without dilution. Findings identify evidence, exposure, ownership, required action and decision impact.
  • Verify closure. A finding closes only when evidence proves the underlying condition has been resolved.

Who we work with

Our work is designed for Central Government, Local Government and SMEs that need credible client-side challenge without building a permanent assurance function. The scale changes by client; the independence and evidence standards do not.

Our operating principles

  • Evidence before confidence.
  • Client accountability remains explicit.
  • Risks are stated without dilution.
  • Controls are proportionate to consequence.
  • Challenge is constructive, but conclusions remain independent.
  • Delivery ownership and assurance responsibility remain separate.

See our Advisory Services, review our assurance resources or start an assurance conversation.