Consulting Services
Security Quick Start
A focused 2 to 3 day engagement that gives you a complete picture of where you stand. I assess your environment, identify the critical gaps, and deliver a prioritized roadmap your team can execute.
Problems Solved
- •No clear picture of current security posture
- •Board or insurance pressure for security assessment
- •Unknown gaps in cybersecurity defenses
- •Need a prioritized starting point for security investment
Typical Engagements
- •2 to 3 day focused assessment
- •Environment review and gap analysis
- •Prioritized remediation roadmap
- •Executive debrief and Q&A
Compliance Readiness
A 6 to 12 week engagement that builds the documentation, controls, and evidence your organization needs to satisfy regulators and auditors. I map your environment to a recognized framework, develop policies, document controls, and build a remediation roadmap for anything that isn't there yet.
Problems Solved
- •Upcoming regulatory audit with no preparation
- •No formal security policies or controls documentation
- •Gap between current state and compliance requirements
- •Need structured approach to framework alignment
Typical Engagements
- •6 to 12 week structured engagement
- •Framework selection and mapping
- •Policy development and controls documentation
- •Remediation roadmap and advisory support
vCISO Retainer
Ongoing monthly engagement providing 10 to 20 hours of strategic security leadership. I serve as your fractional CISO, attending board meetings, managing vendor risk, overseeing incident response planning, and ensuring your security program keeps pace with your business.
Problems Solved
- •No dedicated CISO or security leadership on staff
- •Board requires regular security reporting
- •Vendor risk management gaps
- •Incident response planning needs oversight
- •Security program lacks strategic direction
Typical Engagements
- •Ongoing monthly retainer (10 to 20 hours)
- •Board meeting attendance and reporting
- •Vendor risk assessment and management
- •Incident response planning and oversight
- •Security program strategic direction
AI Quick Start Workshop
A one-day workshop that demystifies AI for your leadership team. No hype, no jargon. Just an honest look at what the major tools do, where AI fits in your specific workflows, and a practical plan to start using it this month. I bring firsthand experience using AI tools daily in my own consulting practice.
Problems Solved
- •Leadership team uncertain about AI relevance
- •No clear AI strategy or adoption plan
- •Employees experimenting with AI without governance
- •Competitive pressure to adopt AI
Typical Engagements
- •One-day interactive workshop
- •AI landscape overview and tool demos
- •Workflow-specific use case identification
- •Adoption plan and policy development
AI Integration Advisory
A 4 to 6 week engagement for organizations that tried AI but it did not stick, or that completed the Quick Start and want deeper implementation. I assess your workflows, pilot 2 to 3 high-impact use cases with your team, deliver hands-on training, and build the governance framework to scale it responsibly.
Problems Solved
- •Previous AI experiments didn't stick
- •Need structured approach to AI implementation
- •No AI governance framework in place
- •Teams need hands-on training, not theory
Typical Engagements
- •4 to 6 week structured engagement
- •Workflow assessment and use case piloting
- •Hands-on team training
- •Governance framework development
AI + Cybersecurity Strategy Retainer
Everything in the vCISO retainer plus ongoing AI advisory. Monthly AI progress reviews, new use case identification, tool evaluation as the landscape changes, AI governance oversight, and team training. The organizations that get this right will have a single trusted advisor who understands how cybersecurity and AI intersect.
Problems Solved
- •Need unified advisory across cybersecurity and AI
- •AI adoption creating new security concerns
- •Multiple advisors with no integrated strategy
- •Rapidly changing AI landscape needs ongoing guidance
Typical Engagements
- •Ongoing monthly retainer
- •Combined cybersecurity and AI advisory
- •Monthly progress reviews and roadmap updates
- •Tool evaluation and team training
- •Board-level reporting on both domains
Engagement Models
Flexible structures designed to match organizational needs and project scope.
Monthly Retainer
Ongoing fractional advisory. Ideal for vCISO and AI + Cyber Strategy engagements.
Fixed Engagement
Defined scope, deliverables, and timeline. Ideal for Security Quick Start, Compliance Readiness, AI Workshop, and AI Integration.
On-Demand Advisory
Flexible hours for emerging needs, second opinions, or board preparation.
Ready to Start a Conversation?
30 minutes. No pitch. No deck. Just an honest conversation about your priorities.