
Cybersecurity Strategy for Growing Businesses
Working Security
“I partner with corporate leaders, boards, and outside counsel to protect critical cloud infrastructure, manage systemic risk, and investigate internal threats.”
Meet Compliance and Assurance Goals
Technology audit, risk assessment and mitigation to address PCI, HIPAA, SOC-2, FISMA, SOX compliance.
Continuous Threat Exposure Management (CTEM)
Moving beyond static, legacy penetration testing to proactive and continuous validation of your real-world threat exposures.
Beyond Testing
Instead of check-the-box scans, I design Continuous Threat Exposure Management (CTEM) programs that dynamically identify, prioritize, and validate your business’s true vulnerabilities.
Cloud Security
Working Security helps clients secure Amazon Web Services (AWS), Azure and Google Cloud; Managed Hosting and Co-location Infrastructure
Cloud Audit
Quickly Assess Cloud Controls, Identify and Prioritize Issues, Remove Exposures.
Incident Response Planning
A crisis is the wrong time to trade business cards. Prepare for attacks with the expertise and information you need to recover quickly.
Tabletop Exercise
I facilitate custom, role-specific Incident Response Tabletop Exercises that stress-test your leadership and teams against realistic cloud and corporate threat scenarios.
“I help SMB owners, IT directors, and corporate leaders design resilient Zero Trust architectures, audit complex cloud environments, and protect critical business data—without the overhead of a full-time executive.”

“Working Security is located in St. Louis, Missouri and provides CISO, Computer Forensics, Penetration Testing and other Computer Security services for commercial, government, and non-profit clients.”
Book a Meeting
Contact Us Today
Meet Compliance and Assurance Goals Through:
- Penetration Testing to meet business partner or key customer requirements
- Technology audit, risk assessment and mitigation services
- Pre-audit remediation for PCI, HIPAA, SSAE-16, FISMA, SOX
- CISO On-Demand services
Proactively Test I/T Security and Contingency Plans:
- Our Certified Ethical Hackers find vulnerabilities before attackers do
- Scanning servers, workstations and mobile devices for security vulnerabilities
- Performing penetration tests on public web servers, firewalls, and VPNs
- Web and Mobile application testing including source code reviews
- Social Engineering tests validate Security Awareness Training
- Testing disaster recovery processes in table-top and live recovery exercises
Respond to Security Incidents when:
- Your website has been defaced
- An outside party has embedded aggressive malware or a virus that keeps coming back
- Network devices are exhibiting strange behavior and the source can’t be found
- Legally defensible forensic examinations or investigations are required
- insiders are suspected of violating policies and evidence is required before taking action.
We support your business, unbiased by a desire to sell hardware or software. We help you balance I/T risk management with day-to-day I/T priorities, react to unplanned cyber-security events, and position yourself to minimize the potential impact of future incidents.
