ddblt

About

Security help that doesn't require you to speak security

Deadbolt is a one-person security and IT consultancy based in Dallas–Fort Worth, Texas, working with small businesses that have real compliance obligations and nobody on staff to meet them.

The short version

Most small businesses I meet aren't negligent about security — they're just busy. Nobody owns it. The last IT person left two years ago, MFA got half-enabled, and there's a shared admin password in a spreadsheet somewhere. That's the normal starting point, and there's no lecture coming.

My work is to find the gaps that actually matter, explain them in language your staff can follow, and either fix them or hand you a plan you can execute. Findings get ranked by real exposure in your environment — not by whatever severity a scanner printed.

Everything I deploy for a client gets built and tested in my own lab environment first — detection rules, endpoint monitoring, directory and access changes. Your business isn't where I find out whether something works.

What you can expect

  • A written report you can hand to an auditor, insurer, or client without editing it first
  • A walkthrough call where I explain every finding and answer questions
  • A prioritized remediation plan — what to fix now, what can wait a quarter
  • Straight answers, including when the answer is 'you don't need to buy that'

How it works

What an engagement looks like

No surprises and no open-ended meter. Every engagement runs the same way, whether it's a one-off assessment or the start of a retainer.

  1. 01

    Discovery call

    Twenty minutes on your environment — headcount, what you're running, what prompted the search. No prep needed on your side.

  2. 02

    Written scope and fixed price

    You get the scope in writing before anything starts, so there's no open-ended meter running.

  3. 03

    The work

    Scans, audits, and configuration reviews run around your schedule. Anything disruptive gets agreed in advance, not sprung on you.

  4. 04

    Report and walkthrough

    A written report you can hand to an auditor or insurer, plus a call where I explain every finding and answer questions in plain language.

  5. 05

    Prioritized remediation plan

    What to fix now, what can wait a quarter, and what you can safely ignore — ranked by real exposure, not scanner severity.

Want to talk through your setup?

No obligation and no pitch deck. Tell me what you're running and I'll tell you honestly whether you need help.