§ Free 30-Minute Cyber Risk Check·no sales pitch

Find out where you stand in 30 minutes.

A free, 30-minute call with a senior practitioner, not a salesperson, not a junior reading a script. We ask about your business, your systems, and the questions your insurer and your clients are starting to ask, and we give you a plain-English read on where you actually stand.

No prep, no homework, no obligation. You leave the call knowing the two or three things worth fixing first, whether or not you ever work with us.

Book your free cyber risk check 30 minutes · video or phone · a principal, every time
§ What you get on the call·four concrete takeaways
01

A plain-English read

Where your business actually stands on the basics attackers exploit (identity, email, backups, and unsafe AI use) without the jargon and without a dashboard you'll never open.

02

Your top fixes, ranked

The two or three things worth doing first, in order, so you can act this week, with your own team or anyone you choose, not only us.

03

The insurer-and-client view

The hard questions cyber-insurers and larger clients are now asking smaller businesses, and roughly how you'd answer them today.

04

A clear next step

If a deeper, fixed-fee, scoped assessment makes sense, we'll say so and quote it. If it doesn't, we'll tell you that too. No pressure either way.

§ What the 30 minutes actually covers·a real agenda, not a sales script
  1. Identity and access. Whether MFA is enforced everywhere it should be, and where old accounts or shared logins are still hanging around.
  2. Email and phishing exposure. How your email is configured to stop spoofing, and how prepared your team is for a convincing phishing attempt.
  3. Backups and recovery. Whether backups actually run, whether anyone has tested a restore, and how long recovery would realistically take.
  4. Unsafe AI use. Where staff might be pasting company or customer data into public AI tools without anyone knowing.
  5. Insurer and client pressure. The specific questions your cyber-insurance renewal or a larger client's security questionnaire is likely to ask next.
  6. Your two or three fixes. A short, ranked list of what to do first, in plain English, whether or not you ever work with us again.
§ Is this call for you?·a quick fit check

Good fit

  • You have never had an outside, plain-English read on your security basics.
  • A cyber-insurance renewal or a client questionnaire is asking questions you cannot confidently answer.
  • You suspect staff are using AI tools in ways nobody has reviewed.
  • You want a ranked list of what to fix first, not a 40-page report.

Not the right fit yet

  • You need a formal, documented assessment for an auditor or examiner right now: start with the cybersecurity risk assessment instead.
  • You are in the middle of an active incident: that needs immediate incident response, not a scoping call.
  • You are looking for 24/7 monitoring or a managed SOC: we do not run one, and we will tell you that on the call.
§ Common questions·before you book

Is this really free, no strings attached?

Yes. There is no fee, no required follow-up purchase, and no pressure. If a deeper, paid engagement makes sense we will say so and quote it; if it does not, we will say that too.

Do I need to prepare anything beforehand?

No prep and no homework. Come as you are and describe your business and systems in your own words; the practitioner will ask the questions that matter.

What happens to the information I share on the call?

It is used only to give you an accurate read and, if you want one, a scope for further work. We do not sell, share, or add you to a marketing list from this call.

Is this the same as your paid Security Posture Assessment?

No. This call is a free, conversational, point-in-time read based on what you describe. The Security Posture Assessment is a deeper, fixed-fee, evidence-based review with a written report.

§ Why people take this call·three reasons
Senior, every time
You talk to a principal
The senior practitioner who scopes the work is the person on the call, no junior gatekeeper, no handoff, no script.
No pitch, no pressure
Advice first, sales never
You get a useful read whether or not you hire us. If there's nothing urgent to fix, we'll say so plainly.
Fixed-fee, scoped
No retainer treadmill
If you want to go further, everything we offer is fixed-fee and scoped up front, you always know what you're buying before you buy it.
§ Book it·30 minutes, free

Book your free 30-minute cyber risk check.

Pick a time that works. You'll meet a senior practitioner who gives you a fast, plain-English read on where your business stands, no slides, no sales pitch.

Choose a time

Related free asset: CISA CPG Baseline Scorecard, score your baseline against CISA's voluntary Cross-Sector CPGs before the call.

Free: Cyber Risk Self-Assessment

A plain-English checklist of the top exposures we see in small-business environments. Know where you stand before the call.

§ What this is·and what it isn't

Advisory and orchestration. Not a SOC.

The cyber risk check is a free, point-in-time advisory conversation about your environment as you describe it. It is a high-level read and a starting point, not an audit, certification, or attestation.

We are a lean, senior advisory firm. We do not run a 24/7 SOC and do not provide round-the-clock monitoring or managed detection and response. Where you need continuous monitoring, it is delivered by a vetted partner you contract; we scope the requirement and manage the relationship on your behalf.

We make your team and tooling more defensible. We never claim to prevent breaches, detect every threat, or guarantee an outcome we can't control.