OnyxTrue Holdings logo OnyxTrue Holdings
OnyxTrue Cyber & Risk

Assess · Protect · Respond · Strengthen

Cybersecurity leadership, without the overhead

OnyxTrue Cyber & Risk helps organizations understand cyber risk, make informed security decisions, and build practical programs that protect their people, information, operations, and reputation.

Book a Free Consultation

The Problem

Most leaders are asking the same six questions

Are we actually secure?

What are our biggest risks, and what should we fix first?

Are our employees properly trained?

What happens if we are attacked tomorrow?

Do our policies and procedures actually protect us?

Are we spending money on the right security products?

Many organizations know cybersecurity matters but do not know where to begin — facing hundreds of products, vendors, regulations, and technical recommendations without independent security leadership to sort them out.


Our Approach

Understand → Assess → Prioritize → Strengthen → Connect

Understand

Learn the organization's operations, technology, people, sensitive information, priorities, and concerns.

Assess

Evaluate posture and identify vulnerabilities, process weaknesses, preparedness gaps, and organizational risk.

Prioritize

Separate urgent risks from longer-term improvements using a practical Now → Next → Later model.

Strengthen

Improve policies, procedures, training, incident response, governance, and security strategy.

Connect

When hands-on work is needed, identify qualified providers and stay involved as an independent advisor.


Services & Planning Prices

Built so a microbusiness and a mid-sized firm can both start

The first virtual consultation is complimentary for up to 60 minutes — a discovery conversation, not a full assessment. After that, virtual advisory is $75 per hour; on-site advisory is $75 per hour plus pre-approved travel.

OfferBest ForWhat It IncludesPlanning Price
Complimentary Initial ConsultationProspective clientUp to 60-minute virtual discovery conversation to understand the business, concerns, and appropriate next stepsFree
Virtual Cyber AdvisorySmall businessRemote guidance, strategy, document review, Q&A, and decision support$75/hour
On-Site Cyber AdvisoryLocal clientIn-person advisory and consulting; hands-on IT implementation not included$75/hour + travel
Cyber Quick CheckMicrobusiness / solo ownerShort questionnaire, 30-minute call, top five risks, simple action checklist$199–$299
Cyber Starter ReviewSmall businessQuestionnaire, 60-minute review, posture scorecard, prioritized recommendations$399–$499
Employee Cyber BriefingSmall teamLive 45–60 minute awareness session: phishing, passwords and MFA, email threats, reporting$350–$500
Policy Starter PackSmall businessUp to three foundational policy templates, customized$399–$500
Incident Readiness Mini-PlanSmall businessContacts, roles, escalation, and a first-response checklist$399–$500
Cyber Posture AssessmentGrowing organizationDeeper assessment, leadership briefing, and prioritized roadmap$1,500–$5,000+
Policy & Procedure ProjectGrowing organizationBroader customized policy set with implementation guidance$1,500–$5,000+
Incident Response & TabletopMid-sized / higher riskResponse planning, scenario exercise, and improvement report$2,500–$7,500+
Fractional Cyber AdvisorOngoing clientRecurring leadership advisory, roadmap oversight, and vendor guidance$750–$5,000+/mo
Prices are planning ranges. Final scope and fees are confirmed in writing before any engagement begins.

Leadership

Randy J. Jordan — Founder & Principal Advisor

TS/SCI with Polygraph

A cybersecurity and security operations executive with more than 15 years leading enterprise cyber programs, 24/7 incident operations, cyber investigations, governance, and risk management in highly regulated, mission-critical environments.

Career highlights include directing enterprise cybersecurity and investigative programs supporting national security missions, leading a 24/7 Cyber Operations Command Center responsible for monitoring and coordinating high-priority cyber incidents, and managing multimillion-dollar operating budgets across technology, workforce, and program investments.

That experience is the basis of the advisory model: translating technical threats and intelligence into business risk, strategic priorities, and decisions leadership can actually act on.

Background

  • Senior Program Manager, federal cyber division — enterprise cyber strategy and governance
  • Watch Commander, 24/7 Cyber Operations Command Center — incident coordination and executive briefings
  • Special Agent, cyber investigations — intrusions, insider threat, and transnational cyber matters
  • Information Systems Security Officer — risk assessments, security audits, and compliance
  • Enterprise network and systems administration

Education & Certifications
MBA; BS, Computer Information Systems; BS, Business Administration — University of Mobile
GSEC (GIAC) · Security+ · Network+ · A+


Who We Serve

Organizations with real risk and no security leader

  • Small, micro, and mid-sized businesses
  • Professional services, law, financial, and accounting firms
  • Senior living and healthcare-related organizations
  • Nonprofits, associations, and government contractors
  • Construction, property management, and technology startups

What We Don't Do

Advisory, not managed IT

OnyxTrue stays focused on strategy, risk, preparedness, and leadership rather than hands-on IT operations — no help desk, network administration, firewall configuration, endpoint deployment, direct penetration testing, or 24/7 SOC services.

When hands-on capability is required, we help identify qualified professionals and remain involved as an independent advisor through implementation.


Start with a free 60-minute consultation

A discovery conversation about your business, your concerns, and what should happen first. No obligation.

Email ot@onyxtrue.com