Services
What we do
Four lines of work. Each one runs as a sequence — find out where you stand, build what is missing, then keep it from unwinding.
- Microsoft 365 & WorkspaceNobody ever configured it — so access is too wide, sharing is open, and there is no backup.Access, sharing and backup · A real backup, tested by restoring · Fixed scope, not a subscription
- AI SecurityWhich AI tools are running, what they can reach, what is leaving with them, and how far the whole thing has drifted since anyone last looked.Inventory and permissions · Data leakage · Drift, caught continuously
- DevSecOpsMost of what your scanners report is not worth fixing, and your developers stopped reading it months ago.Azure DevOps, GitHub, GitLab · Secrets, permissions and dependencies · Built for AI-written code
- Cloud SecurityAlmost every cloud breach starts with a configuration setting, not an attacker.Azure, AWS, GCP · Guardrails and policy-as-code · Drift caught as it happens
How the ongoing work is bought
The third stage of every service above runs under the same arrangement: a defined block of hours each month, used for whatever the month demands.
Decisions
- Vendor-neutral advice — we resell nothing
- Architecture reviewed before it is costly to reverse
- A senior escalation point when something breaks
- A named consultant who already knows your environment
What the arrangement gives you
- A named consultant who knows your environment already
- A defined block of hours each month
- Questionnaires and audit evidence handled as they arrive
- Independent advice with no product quota behind it
Not sure which one you need?
Most engagements begin with an evaluation — it is easier to scope the work once we both know what you are carrying. We reply within one business day.