Operator-first security for high-consequence orgs
We focus on the underserved, high-consequence niche: special districts, tribal enterprises, public safety, community healthcare, charter schools, housing authorities, small ports & airfields, and water/wastewater utilities. Our goal is simple: raise the security floor quickly and measurably.
Recent highlights
- • Built and fielded MUD™ (Micro-Utility Defender) for fast external exposure checks and auditor-ready reports.
- • Added internal collectors (Windows PowerShell / Linux Bash) plus AI-generated fix packs.
- • Enriched findings with CISA KEV and NVD intelligence to prioritize what matters.
- • Delivered board/insurer packets with quarter-to-quarter improvement proofs.
- • Assisted OT/ICS hardening aligned to CISA guidance.
Our flagship: MUD™ — Micro-Utility Defender
MUD runs a safe external exposure scan (ICMP + TCP connect on agreed ports), fingerprints common services, and enriches results with KEV/NVD. Optional internal collectors add OS-level diagnostics and AI-generated fix packs for Windows/Linux, packaged as ZIP/TAR.GZ with simple run instructions.
External scan
ICMP reachability + TCP connect on presets; service banners & TLS metadata.
Internal collectors
Windows .ps1
/ Linux .sh
diagnostics; optional upload to our API for a cohesive report.
AI fix packs
Generate platform-specific remediation scripts with a human-readable README.
Intel-aware
Cross-reference with CISA KEV and recent NVD entries for prioritization.
Auditor-ready outputs
Clean PDF for leadership + signed JSON for evidence and repeatability.
Privacy & safety
No credentialed scans by default; no exploit traffic. Clear authorization workflow.
Packages we offer
Community Scan
External exposure scan, AI summary, PDF export. Rate-limited; single target at a time.
Facility Essentials
Everything in Community + internal collectors, AI fix packs, short-term diagnostics storage.
Compliance Pro
Everything in Essentials + KEV/NVD enrichment, custom ports & industry presets, branded reports, and longer retention with usage dashboards.
Enterprise / vCISO
Everything in Pro + SSO/SAML or OIDC, SMS MFA, App Check, RBAC & audit log retention, SLA support.
How We Work (Security Commitments)
Least Privilege
Separate operator vs. viewer roles; keys/tokens rotated and scoped.
Change Control
Versioned releases with audit trails; rollback plans on every deploy.
Data Minimization
Only what’s needed for useful findings; no invasive credentials by default.
Secure Defaults
MFA/SSO options, structured logging, and evidence-first reporting.
Transparent Reporting
Clean PDF and signed JSON outputs fit leadership, insurer, and regulatory needs.
Operator-First
Small setup, practical remediation, and measurable improvements.
Ready to raise the floor?
Launch MUD now or reach out for a quick walk-through.