ddblt
ddblt

Locked down by design

Security and IT for businesses that never got around to hiring for it.

Deadbolt is a security and IT consultancy for small businesses, healthcare practices, and transport companies across Dallas–Fort Worth, Texas. Assessments, compliance documentation, and ongoing coverage — practical work, explained in language your staff can actually follow.

  • Reports you can hand to an auditor, insurer, or client without editing
  • Findings ranked by real exposure, not raw scanner severity
  • Plain-English explanations — no jargon wall, no scare tactics

What I do

Three ways engagements usually start

Most clients come in through a fixed-price assessment, then move to ongoing coverage once they can see what's actually going on in their environment.

Security Services

Monitoring, testing, and response for teams without a security department.

  • SOC-as-a-Service — monitoring, triage, and incident response for SMBs
  • Security health assessments and gap analysis
  • Vulnerability scanning with prioritized remediation reporting
  • Incident response planning and playbook development
+3 more →

Compliance & Risk

The documentation and evidence an auditor, insurer, or client actually asks for.

  • HIPAA security risk assessment and documentation
  • NIST CSF alignment assessment
  • Security policy and procedure development
  • Access control auditing and reporting
+1 more →

IT Consulting & Managed Services

Day-to-day IT coverage for businesses too small to justify a full-time hire.

  • Fractional IT support for small businesses
  • Remote helpdesk and technical support
  • Onboarding / offboarding workflow design and automation
  • Technology stack assessment and recommendations
+1 more →
Full services menu →

Who I work with

Small teams carrying real compliance weight

Client names are kept private by default — the work speaks without them.

Transport & logistics

A DFW-based carrier — fractional IT, email infrastructure, endpoint coverage.

Behavioral health

A therapy practice — HIPAA documentation, access control, and staff training.

Small business

Teams of 5–50 with no in-house IT and no one owning security.

How I work

Show the work, then fix the problem

Every engagement ends with something you can actually use: a written report, a prioritized remediation list, and a walkthrough call where I explain what I found in language your staff can follow. No 60-page PDF export from a scanner with a logo dropped on the cover.

Everything I deploy for a client gets built and tested in my own lab environment first — detection rules, endpoint monitoring, directory and access changes. Your business isn't where I find out whether something works.

Not sure what you need yet?

Most engagements start with a short call to figure out where the actual risk is. No pitch deck, no pressure — if a fixed-price assessment isn't the right move, I'll say so.