Skip to main content

Consulting Services

Security Quick Start

A focused 2 to 3 day engagement that gives you a complete picture of where you stand. I assess your environment, identify the critical gaps, and deliver a prioritized roadmap your team can execute.

Problems Solved

  • No clear picture of current security posture
  • Board or insurance pressure for security assessment
  • Unknown gaps in cybersecurity defenses
  • Need a prioritized starting point for security investment

Typical Engagements

  • 2 to 3 day focused assessment
  • Environment review and gap analysis
  • Prioritized remediation roadmap
  • Executive debrief and Q&A

Compliance Readiness

A 6 to 12 week engagement that builds the documentation, controls, and evidence your organization needs to satisfy regulators and auditors. I map your environment to a recognized framework, develop policies, document controls, and build a remediation roadmap for anything that isn't there yet.

Problems Solved

  • Upcoming regulatory audit with no preparation
  • No formal security policies or controls documentation
  • Gap between current state and compliance requirements
  • Need structured approach to framework alignment

Typical Engagements

  • 6 to 12 week structured engagement
  • Framework selection and mapping
  • Policy development and controls documentation
  • Remediation roadmap and advisory support

vCISO Retainer

Ongoing monthly engagement providing 10 to 20 hours of strategic security leadership. I serve as your fractional CISO, attending board meetings, managing vendor risk, overseeing incident response planning, and ensuring your security program keeps pace with your business.

Problems Solved

  • No dedicated CISO or security leadership on staff
  • Board requires regular security reporting
  • Vendor risk management gaps
  • Incident response planning needs oversight
  • Security program lacks strategic direction

Typical Engagements

  • Ongoing monthly retainer (10 to 20 hours)
  • Board meeting attendance and reporting
  • Vendor risk assessment and management
  • Incident response planning and oversight
  • Security program strategic direction

AI Quick Start Workshop

A one-day workshop that demystifies AI for your leadership team. No hype, no jargon. Just an honest look at what the major tools do, where AI fits in your specific workflows, and a practical plan to start using it this month. I bring firsthand experience using AI tools daily in my own consulting practice.

Problems Solved

  • Leadership team uncertain about AI relevance
  • No clear AI strategy or adoption plan
  • Employees experimenting with AI without governance
  • Competitive pressure to adopt AI

Typical Engagements

  • One-day interactive workshop
  • AI landscape overview and tool demos
  • Workflow-specific use case identification
  • Adoption plan and policy development

AI Integration Advisory

A 4 to 6 week engagement for organizations that tried AI but it did not stick, or that completed the Quick Start and want deeper implementation. I assess your workflows, pilot 2 to 3 high-impact use cases with your team, deliver hands-on training, and build the governance framework to scale it responsibly.

Problems Solved

  • Previous AI experiments didn't stick
  • Need structured approach to AI implementation
  • No AI governance framework in place
  • Teams need hands-on training, not theory

Typical Engagements

  • 4 to 6 week structured engagement
  • Workflow assessment and use case piloting
  • Hands-on team training
  • Governance framework development

AI + Cybersecurity Strategy Retainer

Everything in the vCISO retainer plus ongoing AI advisory. Monthly AI progress reviews, new use case identification, tool evaluation as the landscape changes, AI governance oversight, and team training. The organizations that get this right will have a single trusted advisor who understands how cybersecurity and AI intersect.

Problems Solved

  • Need unified advisory across cybersecurity and AI
  • AI adoption creating new security concerns
  • Multiple advisors with no integrated strategy
  • Rapidly changing AI landscape needs ongoing guidance

Typical Engagements

  • Ongoing monthly retainer
  • Combined cybersecurity and AI advisory
  • Monthly progress reviews and roadmap updates
  • Tool evaluation and team training
  • Board-level reporting on both domains

Engagement Models

Flexible structures designed to match organizational needs and project scope.

Monthly Retainer

Ongoing fractional advisory. Ideal for vCISO and AI + Cyber Strategy engagements.

Fixed Engagement

Defined scope, deliverables, and timeline. Ideal for Security Quick Start, Compliance Readiness, AI Workshop, and AI Integration.

On-Demand Advisory

Flexible hours for emerging needs, second opinions, or board preparation.

Ready to Start a Conversation?

30 minutes. No pitch. No deck. Just an honest conversation about your priorities.