
Risk X Group acquires Wolfpack Information Risk to create Africa's cyber security powerhouse
Summary
- Risk X Group has acquired Wolfpack Information Risk, creating a comprehensive cybersecurity service provider in South Africa.
- The acquisition integrates Wolfpack's cyber risk advisory and awareness expertise with Risk X Group's offensive security and 24/7 managed detection capabilities.
- Wolfpack founder Craig Rosewarne joins Risk X Group as Chief Solutions Officer, ensuring continuity and leadership integration.
- The combined entity will operate under a dual-brand model initially, offering end-to-end cyber protection across various sectors in South Africa and Europe.
- This strategic move aims to provide a single, integrated partner for clients, enhancing their ability to manage cyber threats from assessment to active defense.
Key Acquisition Details
The strategic rationale behind the Risk X Group Wolfpack acquisition South Africa is to deliver an unparalleled level of cyber protection to organizations.
Risk X Group (RXG), a rapidly expanding cybersecurity services provider operating across southern Africa, has successfully acquired Wolfpack Information Risk. This strategic move brings together two prominent entities in the South African cyber security acquisition landscape, with Wolfpack Information Risk known for its specialized cyber risk advisory, threat intelligence, and security awareness services since its founding in 2011 by industry veteran Craig Rosewarne.
The acquisition is designed to forge an integrated security partnership, offering a comprehensive suite of services that span the entire spectrum of an organization's cyber risk. This includes everything from strategic governance and offensive testing to continuous 24/7 threat detection and incident response. Following the transaction, Craig Rosewarne has joined Risk X Group as Chief Solutions Officer, signaling a direct integration of Wolfpack's leadership and expertise into the combined entity.
Clients of Wolfpack Information Risk can expect continuity in their service experience, as the firm will maintain its brand identity and operational teams under the Risk X Group umbrella. This dual-brand model ensures that existing relationships and service delivery remain unchanged in the immediate term, while clients gain access to a significantly broader array of capabilities. The long-term plan involves a gradual integration of the two brands, guided primarily by client needs rather than a predetermined timeline.
Expanded Capabilities and Market Impact
The newly formed entity represents a significant consolidation within the African cyber security market, creating an offering that few other organizations on the continent can rival. Risk X Group, headquartered in Cape Town with additional offices in Johannesburg and Durban, is a CREST-accredited and ISO 27001 certified cybersecurity firm. Its operations are structured across three distinct divisions: governance, risk, audit readiness, and compliance; CREST-accredited penetration testing, red teaming, and attack simulation; and 24/7 managed detection, incident response, threat hunting, and Security Operations Center (SOC) operations. RXG is also a member of the PCI Security Standards Council, serving clients across South Africa and Europe in diverse sectors such as fintech, mining, and retail.
Wolfpack Information Risk, established in 2011, brings a robust track record of over 650 completed projects for clients in financial services, government, and large enterprises. Its expertise lies in advising boards and executives on critical areas like cyber risk management, threat intelligence, security awareness, and human risk. Wolfpack also actively contributes to the South African security community through ongoing research, webinars, and awareness campaigns. The Risk X Group Wolfpack merger effectively combines Wolfpack's advisory strength with RXG's operational infrastructure and managed service capabilities, translating strategic insights into tangible, on-the-ground protection.
This integrated approach allows the combined group to serve clients across all sectors, providing an end-to-end security partnership capable of addressing fast-evolving cyber threats. The synergy between Wolfpack's deep advisory and human risk focus and RXG's technical offensive security and managed detection services creates a comprehensive solution designed to offer complete cyber confidence from a single, vendor-independent partner.
Strategic Rationale and Future Outlook
The strategic rationale behind the Risk X Group Wolfpack acquisition South Africa is to deliver an unparalleled level of cyber protection to organizations. Craig Rosewarne emphasized that the deal is fundamentally about impact, leveraging Wolfpack's established foundation and amplifying it through a partnership capable of safeguarding more organizations more thoroughly than either entity could achieve independently. He highlighted the growing and real threat faced by South African businesses, asserting that the combined entity is now better equipped to confront these challenges head-on.
Andrew Dalrymple, CEO of Risk X Group, underscored the unique proposition this consolidation brings to the South African market. He stated that the combined strengths—Wolfpack's advisory, RXG's offensive testing, governance work, and 24/7 operations—culminate in a single partner capable of guiding a client from initial risk assessment through to active defense, eliminating handoffs, gaps, and excuses. This integrated approach aims to provide a seamless and robust solution for South African cyber risk advisory needs.
The long-term vision for the combined group is to continue evolving its offerings, with future brand integration and service development being client-needs driven. This strategic alignment positions the new entity as a dominant force in the region, capable of offering a holistic and resilient cybersecurity posture to a wide range of clients, thereby enhancing the overall cyber resilience of the South African business landscape.
Practical Implications
This acquisition creates a dominant, integrated cybersecurity service provider in South Africa. Legal and compliance professionals should note this consolidation as it impacts vendor selection for comprehensive cyber risk management, potentially offering a single-source solution but requiring thorough due diligence on the expanded service offerings.
Source
Source: Original reporting via ITWeb
How does this affect you?
Get an AI analysis of this article grounded in your jurisdictions, practice areas, and any policy documents you've uploaded to Wansom.
Finish Reading the Full Story and the Expert Analysis.
Get the latest legal & regulatory intelligence in South Africa
Wansom is AI and can make mistakes.
