Technical Controls Review

    Prove Your Security Without the Certification Theater

    We assess and improve your technical controls—MFA, conditional access, device compliance, backups, and email security. Get evidence for insurers and auditors without paying for legal policy drafting or formal certification.

    Get a free problem-solving session

    Schedule a consultation

    What We Review & Fix

    Inventory Sanity Check

    Verify all devices, users, and assets are documented and accounted for in your systems

    M365/Entra Baseline

    Review and implement MFA, conditional access policies, sign-in risk policies, and identity protection

    Endpoint Compliance & EDR

    Ensure devices meet security policies (encryption, patching, AV/EDR) and are properly monitored

    Backup Configuration

    Verify backup coverage, retention policies, and perform sample restore test to confirm recoverability

    Email Security Review

    Check SPF, DKIM, DMARC configuration, phishing protection, and mailbox delegation/permissions

    Prioritized Remediation Plan

    Clear roadmap of what to fix first, with timeline and effort estimates for each improvement

    Transparent Pricing

    Technical Controls Review

    $1,250

    One-time assessment and remediation plan

    Evidence Pack (Light)

    +$750

    Screenshots/settings exports mapped to insurer/auditor checklists (no certification)

    Annual Refresh

    $600

    Yearly re-assessment and updated evidence pack

    Evidence Maintenance

    $95/mo

    Quarterly evidence updates for ongoing compliance

    What We're NOT

    We're Not a Certification Body

    We DO: Assess and improve your technical controls (MFA, conditional access, device compliance, backups, email security) and prepare evidence documentation.

    We DON'T: Author legal policies, provide SOC 2/ISO certifications, or act as auditors. We implement the technical side and document what you have—but we're not a compliance consultancy or certification authority.

    If you need formal certification or legal policy writing, we'll refer you to qualified compliance consultants. We focus on the technical implementation and evidence gathering.

    Perfect For

    Cyber Insurance Applications

    Insurers want proof of MFA, backups, EDR, and email security. We document what you have and fix what's missing before your renewal.

    Client Security Questionnaires

    When clients ask for SOC 2 reports or security questionnaires, we provide evidence of technical controls you've implemented.

    Pre-Audit Preparation

    Get your technical house in order before formal audits. We identify gaps and provide evidence so you're ready when auditors arrive.

    How It Works

    1

    Discovery Call (30 min)

    We review your current setup and identify what evidence/controls are needed

    2

    Assessment (1-2 weeks)

    We audit your technical controls, test configurations, and identify gaps

    3

    Remediation (2-4 weeks)

    We implement missing controls and fix configuration issues

    4

    Evidence Pack Delivery

    You receive screenshots, settings exports, and documentation mapped to your requirements

    Common Questions

    It depends on what your insurer requires. We implement and document the technical controls most insurers ask for (MFA, backups, EDR, email security). If they need formal certification or legal policies, we'll refer you to compliance consultants. Most insurers accept technical evidence documentation.

    Get Your Technical Controls in Order

    Don't wait until your insurance renewal or a client audit. Get ahead of compliance requirements with a technical controls review.

    Get a free problem-solving session

    Schedule a consultation