For CEOs, Owners & COOs
Security Health Assessment
A plain-language audit of the basics that actually stop breaches — Microsoft 365, identity, and backups.
Most incidents at small and mid-sized businesses don’t start with a sophisticated attack. They start with a former employee’s account that was never disabled, MFA that wasn’t actually enforced, or a backup that hadn’t been tested in over a year. This assessment finds those gaps before an attacker — or your insurer, or an acquirer — does.
What Gets Reviewed
Microsoft 365
Tenant configuration, sharing and permission defaults, admin role sprawl, and mailbox security.
Identity & MFA
Conditional access, multi-factor enforcement, privileged and stale accounts, and who really has admin rights.
Backups
What’s actually being backed up, how often, and — critically — whether restores have ever been tested.
Business Continuity
What happens on the worst day: who’s notified, what comes back online first, and how long it realistically takes.
Deliverables
- Findings report covering Microsoft 365, identity, backup, and continuity posture
- Prioritized risk list — ranked by how likely and how damaging, not just technical severity
- Executive recommendations written for leadership, not just IT
- A plain-language walkthrough session to answer questions in person
Timeline
Typically 1–2 weeks from kickoff to the executive walkthrough.
Who This Is For
Owners and executives at businesses without a full-time security lead — especially those heading into an insurance renewal, a compliance requirement, an acquisition, or simply wanting an independent check before something goes wrong.
Ready to know where you actually stand?
Book a 30-minute call. If it’s not a fit, I’ll tell you that too.
