Identity and access
Accounts, roles, SSO, federation and least-privilege access.
IT SECURITY
I help companies understand practical technology risks and improve identity, access, backups and architecture in proportion to the business and data involved.
WHY IT MATTERS
A long policy or a large toolset does not make a company safe by itself. The basics still matter: who has access, how accounts are protected, what happens when data is lost and where trust boundaries exist between systems.
I focus on architecture and practical controls. Where a specialised penetration test, legal assessment or managed SOC is needed, that should be treated as a separate specialist service rather than pretending one person covers everything.
WHAT I CAN HELP WITH
Accounts, roles, SSO, federation and least-privilege access.
Secure login journeys, external users, SAML/OIDC and trust boundaries.
Understand what is backed up, where it lives and whether recovery is realistic.
Identify high-risk boundaries, overly broad access or missing controls.
Secrets, permissions, logging and secure service design.
Build safeguards into new software and integrations before they become expensive to retrofit.
WHAT YOU GET
The exact scope follows the problem. I do not force every engagement into the same package.
What matters most and what can wait.
Specific changes to access, trust boundaries or system design.
Help apply the chosen controls in the relevant platforms.
Explicitly identify where another specialist assessment is required.
NEXT STEP
Describe the systems, users and data involved. We can start with a practical review of the highest-risk areas.