Delivering Excellence Across Malaysia
Puncak Nilam — professional advisory and compliance services

Our Services

What We Do.
How We Deliver.

From ISO certification to governance advisory and capacity building — structured, expert services tailored to your industry and objectives.

Scroll
/ SME Support

Starting Up a Company
in Malaysia

Malaysia has become one of the prime destinations in Asia for company registration. Foreigners can own 100% of the company if registered as a Sdn Bhd company.

We recognise that Malaysia's 645,000+ small businesses are the lifeblood of our communities. We provide best-in-class support where it's needed most — upskilling, training, consulting, business restructuring, growth strategies, and customer engagement plans.

Whether you are planning a new business venture or are an existing SME owner, our aim is to help you grow your business to its full potential.

Company incorporation & registration advisory
Business restructuring and growth strategy
Upskilling, training, and digital marketing support
Customer engagement and retention plans
/ Consulting Services

Project Management
& Risk Consulting

In addition to training and coaching, we offer a wide range of consulting services in project management and its subsidiaries. Our project managers hold PMP, PMI-ACP, and GDPR certifications.

Our risk management consulting engagements can last a week, months, or much longer — depending on your needs. We can work full time or a few hours a day to provide guidance and performance evaluation.

Risk identification, impact and probability evaluation
Full Risk Management Plan development and monitoring
Intermittent risk management throughout project lifecycle
Scope, schedule, cost, quality and stakeholder management
03
ISO 31000 Enquire Now →
/ Risk Management

ISO 31000
Risk Management

We provide ISO 31000 consulting and implementation support — including organisational context understanding, risk mapping, prioritisation, assessment, treatment options, risk dashboard, controls review, policy and documentation support, training, and management review.

ISO 31000's philosophy can be seen across popular management system standards aligned to ISO's Annex SL format — ISO 27001, ISO 22301, ISO 9001, ISO 14001, and ISO 18001.

Our ISO 31000 Service Features

Design the Risk Program and Framework
Conduct Risk Identification & Assessment Workshop
Plan for Treatments and risk response
Measure Effectiveness and Continuous Improvement
Building and Embedding the Risk Culture
04
ISO 37001 Enquire Now →
/ Anti-Bribery Advisory

Anti-Bribery Management
System (ABMS)

Under Section 17A of the MACC Act, if any person associated with a commercial organisation commits a corrupt act, the organisation itself commits an offence — carrying a maximum fine of 10 times the gratification or RM1 million, whichever is higher, or up to 20 years imprisonment.

The commercial organisation must demonstrate it has successfully implemented "adequate procedures" to prevent such corrupt acts. ISO 37001 is the international standard for anti-bribery management systems — applicable to any size organisation, regardless of sector.

This law is applicable to all companies in Malaysia, regardless of size and industry.

Section 17A readiness assessment
Adequate procedures policy development
ISO 37001 ABMS implementation and certification
Training effectiveness and awareness reviews
05
ISO 22301 Enquire Now →
/ Business Continuity

Business Continuity
Management System

ISO 22301 is business focused and driven by the business — not the IT department. It utilises a structured process starting with Business Impact Analysis (BIA) to identify critical activities, their dependencies, resources, and third parties.

We ensure maximum benefit from ISO 22301 by virtue of our experience assisting multiple organisations across industries. Our consultancy comes not only with a 100% certification guarantee, but with the assurance that any implemented BCMS will be tailored, appropriate, and sustainable.

Our Approach

01 Gap analysis against ISO 22301 requirements
02 Business Impact Analysis and risk assessment
03 BCP strategy development and response planning
04 Exercises, testing, and embedding into operations
/ Compliance Reviews

Compliance Reviews
& Special Projects

Given our expert knowledge of the local regulatory landscape, we perform compliance-related ad-hoc reviews and special projects — as part of our ongoing Compliance Support service or as standalone engagements.

Previous Project Work Includes

General health check of compliance and AML systems and controls
Focused review of systems and compliance within specific departments
Review of a firm's compliance culture
Design and implementation of risk-based Compliance Monitoring Programme (CMP)
Independent client file review for KYC/CDD compliance with DFSA requirements
Testing of company policies, procedures, systems and corporate governance frameworks
/ Gap Analysis

The First Step in
Process Improvement

Every initiative begins with a gap analysis (gap audit) of your current practices — establishing a clear understanding of where your organisation stands against ISO standards, CMMI, or any process improvement initiative.

Our approach engages through interviews, process review, workflow analysis, and examination of infrastructure and architectural requirements to identify capabilities, best practices, strengths, and development needs.

Gap Analysis Steps

Pre-planning and assessment scope development with key stakeholders
Development of schedule and assessment activity plan
Assessment with participation of PNMS consultants
Development and presentation of findings, ratings, and recommendations
08
ISO 27001 Enquire Now →
/ Cyber Security

Information Security
Management System

An ISMS is a systematic approach to managing sensitive company information so that it remains secure — including people, processes and IT systems through a risk management process applicable to any sector.

ISO/IEC 27001 specifies requirements for establishing, implementing, maintaining and continually improving an ISMS. Additionally, we cover BNM's Risk Management in IT (RMiT) — the Bank Negara Malaysia framework for financial services entities to combat cyber threats.

Examine information security risks, threats, vulnerabilities and impacts
Design comprehensive information security controls and risk treatment
ISO 27001 certification readiness and implementation support
BNM RMiT compliance for financial services regulated entities
/ Training & Coaching

Training, Coaching &
Professional Certification

We deliver training in risk management, business continuity, anti-fraud/anti-bribery, information security, occupational health and safety, halal assurance, and more. All training sessions are HRDF-claimable with a Certificate of Attendance issued.

Through partnership with the Malaysian Institute for Risk and Resilience (MiRAR), we conduct professional development programs and certifications in risk management, information security, anti-fraud/anti-corruption, business continuity, and data sciences.

Training Formats Available

Awareness Briefings
For all staff — building organisational awareness of compliance and risk.
Foundation Training
For new joiners or entry-level officers entering compliance functions.
Senior Management
For risk, audit and compliance officers — understanding management and regulatory responsibilities.
Train-the-Trainer
Workshops for in-house implementers to build internal capacity and ownership.
Mentoring Programme
For Risk, Audit, and Compliance Officers on an ongoing support basis.
SME Special Rate
SMEs below RM1 million annual turnover may be eligible for special government rate.
/ Data Analytics

Data Analytics, Machine
Learning & AI

The PNMS Business Analytics programme helps professionals leverage their organisation's data to gain insights and make informed decisions — taking a critical first step toward developing a strategic advantage and competitive edge.

Whether you need hands-on analytical models for risk analysis, programming skills to detect fraud, or transactional data analysis — we bring the expertise across Python, Tableau, and machine learning techniques.

Handling unbalanced data and supervised/unsupervised learning
Risk analysis and fraud detection via transactional data
Data visualisation and Python fundamentals through Tableau
Account reconciliation automation and financial close integration
/ Halal Support

Halal Certification
& Compliance Support

Malaysia is the only country where the government provides full support in promoting the Halal Certification process. The Malaysia Halal Logo — certified by JAKIM under Malaysian Halal Standards MS1500:2009 and MS2200:Part 1:2008 — is globally recognised.

With our expertise, we ensure you have all the necessary documentation and procedures in place so your company doesn't waste time and money doing things that don't meet Halal certification requirements.

Halal Certification Areas (7 Schemes)

Food / Beverage / Supplement
Food Premise / Hotel
Consumer Goods
Cosmetics & Personal Care
Slaughterhouse
Logistics
Pharmaceutical
Define product, service, or nature of business
Develop and verify flow control charts
Determine Halal risks, control measures, and Halal Assurance Points (HAPs)
Establish monitoring systems and overall Halal Assurance System

Not sure which service is right for your organisation?

We offer a complimentary initial consultation — let us understand your needs and recommend the right solution.

Get in Touch Today