Practitioner-built security and compliance tools
Cybersecurity and compliance tools built by someone who does the work.
Downloadable tools and expert guidance for defense contractors, federal teams, and security professionals — spanning CMMC, RMF, vulnerability management, and incident response. Built by a practicing DoD ISSM with 15+ years of federal cybersecurity experience.
Practicing DoD ISSM · 15+ years federal cybersecurity · CMMC · RMF
Built by a practitioner
Every tool reflects real ISSM and ATO experience in the field — hardening practice, not theory.
Compliance-ready output
Findings map to the right controls (NIST 800-171, 800-53, and more) and generate documentation you can drop into your SSP, POA&M, or assessment.
Tools or hands-on help
Grab a self-contained tool and run with it, or work with me directly when you'd rather have an expert in your corner.
Ready when you are
From a CMMC assessment to an ATO package — get the right tool, or get me.
Not sure where to start? I'll point you to the right tool, or build a prioritized, plain-English plan for your situation.