Skip to content

Assessment by analysts, not by algorithm.

A threat assessment is an analytical judgement about what the available intelligence indicates, how confident that judgement is, and what remains unknown.

Greywing produces assessments that a security director, general counsel, or principal can act on, and defend.

In this section

  1. 01What an assessment considers
  2. 02Confidence and limitations
  3. 03Review and continuity

What an assessment considers

  • Content, tone, specificity, and frequency of communications
  • Indicators of intent and of capability, considered separately
  • Fixation, grievance, and identification with the subject
  • Proximity: geographic, digital, and social
  • Escalation and de-escalation across the chronology
  • Context, including events, announcements, anniversaries, and publicity
  • Contradictory indicators and alternative explanations

Confidence and limitations

Every assessment states the confidence attached to its judgements and the information that would change them. Technology supports collection and organisation; qualified analysts remain responsible for the judgement.

Review and continuity

Assessments are living products. Where a matter remains open, it is reviewed as new information arrives so that the position reflects current intelligence rather than the day it was written.

Contact

Discuss a threat assessment requirement.

We will explain what can reasonably be assessed before any engagement begins.