Security Assessments

A security assessment gives you a clear, prioritized plan to reduce risk—without enterprise complexity. I focus on practical improvements for small offices: identity, devices, email, backups, networks, and your public-facing website.

What You Get

A written findings report, prioritized remediation list, and clear action plan with recommended controls and quick wins.

What We Review

Identity & MFA, endpoints, email security, backups, website exposure, network/Wi-Fi basics, and vendor access.

Who It’s For

Medical practices, therapy/PT offices, collection agencies, and small businesses that handle sensitive data.

Assessment Playbook

  1. Discovery call: goals, systems, data types, and pain points.
  2. Scope: what’s included (email, endpoints, website, backups, etc.).
  3. Evidence collection: configuration review + light testing where appropriate.
  4. Findings: risks and gaps explained in plain language.
  5. Remediation plan: quick wins + longer-term improvements.
  6. Optional support: I can help implement changes and document them.

Common Questions

Do you do penetration testing? For most small offices, a risk-focused assessment + hardening delivers the best ROI. If deeper testing is needed, I’ll recommend the right approach.

Will you fix things? Yes—if you want. Assessments produce the plan; implementation is available hourly or via retainer.

How fast can we do this? Many small environments can be assessed quickly, then improved in phases.