SMB Security Assessment Now Scheduling

Know Your Exposure Before Attackers Do A security assessment built around your business.

No canned checklist, and no 200-page scanner dump. You choose what gets tested: endpoints, network, cloud, identity, email, and detection coverage. I assess it hands-on and hand you a prioritized plan your team or IT provider can act on right away.

09 Assessment Modules
1:1 Senior Analyst, Start to Finish
Fixed Fee After Scoping
Assessment Modules

Pick What Matters to Your Business

Start with a single module or combine them into a full posture review. Add modules to your scope below and they'll carry into the request form, so we start the scoping call already knowing what you need.

⚠ What SMB Assessments Commonly Surface
Unpatched Endpoints Exposed RDP / VPN Gaps in MFA Legacy Auth Still Enabled Weak or Missing DMARC Flat Networks EDR Blind Spots No Usable Logs
Core Technical
ASM_001 / VULN
Endpoint Vulnerability Scanning

Authenticated scans across workstations and servers to find missing patches, vulnerable software, and risky configurations, then validated by hand so you're not chasing false positives.

  • OS & third-party patch gaps
  • End-of-life software & systems
  • Local admin & insecure services
ASM_002 / EXT
External Attack Surface Review

See your business the way an attacker does from the internet: exposed services, forgotten hosts, and remote-access entry points.

  • Internet-facing services & ports
  • RDP, VPN & remote-access exposure
  • DNS, subdomains & TLS hygiene
ASM_003 / NET
Network & Firewall Configuration

A review of your firewall rules, segmentation, and wireless setup to find the paths an intruder would use to move from one machine to everything.

  • Firewall rule-base & admin access
  • Segmentation (guest, IoT, servers)
  • Wi-Fi, switch & router hardening
ASM_004 / CLOUD
Cloud Configuration Review

Read-only review of your cloud tenants against security baselines, focused on the misconfigurations that actually lead to breaches.

  • Microsoft 365 / Entra ID
  • Azure, AWS, or Google Workspace
  • Sharing, storage & admin roles
Identity & Email
ASM_005 / IAM
Identity & Access Review

Most breaches start with a compromised account. This module checks who has access to what, and how well those accounts are protected.

  • MFA coverage & conditional access
  • Privileged & stale accounts
  • Active Directory / Entra hygiene
ASM_006 / MAIL
Email Security Review

Business email compromise is one of the costliest attacks on SMBs. This module looks at how easily your domain can be spoofed and how well phishing gets filtered.

  • SPF, DKIM & DMARC posture
  • Anti-phishing & filtering policy
  • Forwarding rules & mailbox risk
Detection & Response Readiness
ASM_007 / EDR
EDR Coverage & Tuning

Having EDR isn't the same as being protected by it. I check deployment coverage, policy strength, and whether it would actually catch a modern attack.

  • Agent coverage & unmanaged hosts
  • Prevention policy & exclusions
  • Alert handling & response flow
ASM_008 / LOG
Logging & Visibility Gaps

If something happened last month, could you prove it? This module maps what you log, how long you keep it, and the blind spots that would stall an investigation.

  • Endpoint, identity & cloud audit logs
  • Retention vs. investigation needs
  • SIEM / alerting coverage
ASM_009 / HUNT
Compromise Assessment

A focused threat-hunt sweep that answers a simple question: is anyone already in here? It's well suited to post-acquisition, post-incident, or "something feels off" situations.

  • Persistence & living-off-the-land hunts
  • Suspicious logins & mailbox rules
  • Forensic triage of flagged hosts
// No modules selected yet. Not sure where to start? I'll recommend a scope on the call. Continue to Request
How It Works

From Scoping Call to Roadmap

A clear, low-friction process designed to work around your operations. You'll know exactly what's being tested, when, and why.

01
Scope

A 30-minute call to understand your business, environment, and concerns. You get a fixed-fee proposal and written rules of engagement.

02
Assess

Scans and configuration reviews run on a schedule you approve, using read-only access wherever possible and without disrupting production.

03
Analyze

Every finding is validated by hand and ranked by real-world risk to your business, not just a raw CVSS score.

04
Report & Roadmap

A walkthrough of the results with leadership and IT, plus a prioritized remediation plan, with quick wins first.

Findings You Can Act On

Written for two audiences: the people who sign off on the budget and the people who make the fixes.

OUT_01
Executive Summary

Plain-English risk picture for owners and leadership: what's exposed, what it could cost, and what to fix first.

OUT_02
Technical Findings Report

Each finding with evidence, affected assets, severity, and step-by-step remediation guidance for IT or your MSP.

OUT_03
Prioritized Remediation Roadmap

A 30 / 60 / 90-day plan that sequences fixes by risk reduction and effort, so the highest-impact work happens first.

OUT_04
Results Walkthrough

A live review session to answer questions, plus support during remediation if you want it.

sf-assess :: sample-output
analyst@sentinelforge:~$ ./report --summary --client acme-co

[*] scope: VULN, EXT, CLOUD, IAM, MAIL
[*] assets reviewed: 47 endpoints · 1 M365 tenant
[*] status: validated & ranked

[CRITICAL] RDP exposed to internet on 1 host
[CRITICAL] 6 accounts without MFA (2 admins)
[HIGH]     Legacy authentication still enabled
[HIGH]     11 endpoints missing critical patches
[MEDIUM]   DMARC policy set to p=none
[MEDIUM]   Guest Wi-Fi not segmented

[+] quick wins identified: 4
[+] roadmap generated: 30/60/90
// illustrative example — not real client data
Is This a Fit

Built for Businesses Without a Security Team

If you rely on a small IT staff or an outside MSP and need an independent, expert look at your security, this is designed for you.

Who It's For

  • Healthcare & dental practices
  • Law, accounting & professional firms
  • Manufacturers & distributors
  • Municipalities & local agencies
  • Growing SMBs with 10–500 employees

Common Triggers

  • Cyber insurance application or renewal
  • Client or vendor security questionnaire
  • Moving to Microsoft 365 or the cloud
  • New IT provider or MSP transition
  • A near-miss, phishing hit, or "something's off"

Rules of Engagement

  • Written authorization before any testing
  • Testing windows scheduled with you
  • Read-only access wherever possible
  • No changes made without your approval
  • Findings handled confidentially
FAQ

Common Questions

Still unsure? Call or send a note. You'll get a direct answer, not a sales sequence.

Will the assessment disrupt my business?

No. Scans are scheduled with you, throttled for production networks, and nothing in your environment is changed without your approval. Cloud and configuration reviews use read-only access wherever possible.

How is it priced?

Every assessment is custom-scoped. After a short scoping call, you'll receive a fixed-fee proposal based on the modules you choose and the size of your environment, with no hourly surprises.

How long does it take?

It depends on scope. A focused single-module review moves quickly, while a multi-module assessment takes longer. You'll get a timeline in the proposal before any work begins.

Is this a penetration test?

Not exactly. A penetration test tries to exploit weaknesses to prove impact. This assessment is broader: it finds and validates weaknesses across endpoints, network, cloud, identity, and detection coverage, then prioritizes fixes. If you need a targeted pen test afterward, the findings make it far more efficient.

Can this help with cyber insurance or compliance?

Yes. Findings can be mapped to the controls insurers and auditors commonly ask about, such as MFA, EDR, backups, patching, and logging, so you can answer questionnaires with evidence instead of guesses.

Do you work with our existing IT provider or MSP?

Absolutely. I work alongside your internal IT or MSP and share findings and remediation guidance directly with them, so fixes get done and nobody is left guessing.

Let's Scope It.

Tell me a little about your business and what you'd like assessed. I'll follow up to schedule a short scoping call, and you'll have a fixed-fee proposal shortly after.

SentinelForge LLC is a solo-operated cybersecurity firm based in Trumbull, CT. Your assessment is performed and reviewed by the same senior analyst from scoping call to final walkthrough.

Modules of interest
encrypted & confidential