Assess · Protect · Respond · Strengthen
OnyxTrue Cyber & Risk helps organizations understand cyber risk, make informed security decisions, and build practical programs that protect their people, information, operations, and reputation.
Book a Free ConsultationThe Problem
Are we actually secure?
What are our biggest risks, and what should we fix first?
Are our employees properly trained?
What happens if we are attacked tomorrow?
Do our policies and procedures actually protect us?
Are we spending money on the right security products?
Many organizations know cybersecurity matters but do not know where to begin — facing hundreds of products, vendors, regulations, and technical recommendations without independent security leadership to sort them out.
Our Approach
Learn the organization's operations, technology, people, sensitive information, priorities, and concerns.
Evaluate posture and identify vulnerabilities, process weaknesses, preparedness gaps, and organizational risk.
Separate urgent risks from longer-term improvements using a practical Now → Next → Later model.
Improve policies, procedures, training, incident response, governance, and security strategy.
When hands-on work is needed, identify qualified providers and stay involved as an independent advisor.
Services & Planning Prices
The first virtual consultation is complimentary for up to 60 minutes — a discovery conversation, not a full assessment. After that, virtual advisory is $75 per hour; on-site advisory is $75 per hour plus pre-approved travel.
| Offer | Best For | What It Includes | Planning Price |
|---|---|---|---|
| Complimentary Initial Consultation | Prospective client | Up to 60-minute virtual discovery conversation to understand the business, concerns, and appropriate next steps | Free |
| Virtual Cyber Advisory | Small business | Remote guidance, strategy, document review, Q&A, and decision support | $75/hour |
| On-Site Cyber Advisory | Local client | In-person advisory and consulting; hands-on IT implementation not included | $75/hour + travel |
| Cyber Quick Check | Microbusiness / solo owner | Short questionnaire, 30-minute call, top five risks, simple action checklist | $199–$299 |
| Cyber Starter Review | Small business | Questionnaire, 60-minute review, posture scorecard, prioritized recommendations | $399–$499 |
| Employee Cyber Briefing | Small team | Live 45–60 minute awareness session: phishing, passwords and MFA, email threats, reporting | $350–$500 |
| Policy Starter Pack | Small business | Up to three foundational policy templates, customized | $399–$500 |
| Incident Readiness Mini-Plan | Small business | Contacts, roles, escalation, and a first-response checklist | $399–$500 |
| Cyber Posture Assessment | Growing organization | Deeper assessment, leadership briefing, and prioritized roadmap | $1,500–$5,000+ |
| Policy & Procedure Project | Growing organization | Broader customized policy set with implementation guidance | $1,500–$5,000+ |
| Incident Response & Tabletop | Mid-sized / higher risk | Response planning, scenario exercise, and improvement report | $2,500–$7,500+ |
| Fractional Cyber Advisor | Ongoing client | Recurring leadership advisory, roadmap oversight, and vendor guidance | $750–$5,000+/mo |
Leadership
A cybersecurity and security operations executive with more than 15 years leading enterprise cyber programs, 24/7 incident operations, cyber investigations, governance, and risk management in highly regulated, mission-critical environments.
Career highlights include directing enterprise cybersecurity and investigative programs supporting national security missions, leading a 24/7 Cyber Operations Command Center responsible for monitoring and coordinating high-priority cyber incidents, and managing multimillion-dollar operating budgets across technology, workforce, and program investments.
That experience is the basis of the advisory model: translating technical threats and intelligence into business risk, strategic priorities, and decisions leadership can actually act on.
Education & Certifications
MBA; BS, Computer Information Systems; BS, Business Administration — University of Mobile
GSEC (GIAC) · Security+ · Network+ · A+
Who We Serve
What We Don't Do
OnyxTrue stays focused on strategy, risk, preparedness, and leadership rather than hands-on IT operations — no help desk, network administration, firewall configuration, endpoint deployment, direct penetration testing, or 24/7 SOC services.
When hands-on capability is required, we help identify qualified professionals and remain involved as an independent advisor through implementation.
A discovery conversation about your business, your concerns, and what should happen first. No obligation.
Email ot@onyxtrue.com