Threat modeling new features
You ping us before a design doc lands. We sit in the architecture meeting, run a STRIDE pass, and write up the risks and the controls. Async or live; your call.
A senior security engineer on retainer for your team. Threat modeling new features, reviewing architecture decisions, triaging the alert that does not fit a runbook, answering the auditor question that lands at 5pm Friday.
What a retainer covers in a typical month.
You ping us before a design doc lands. We sit in the architecture meeting, run a STRIDE pass, and write up the risks and the controls. Async or live; your call.
Authentication redesign, multi-region migration, new IAM model, third-party integration. We review the diagram, list the failure modes, and suggest the controls.
Crypto, authentication, authorization, deserialization, file handling. We do not block your release pipeline; we comment in time for the next sprint.
Something fires at 2am. We hop on a Slack huddle, help you classify, contain, and decide whether it is an incident or a false positive. Post-mortem support on request.
You receive a 400-question security questionnaire from a prospect. We draft answers, push back on the impossible questions, and turn it around in two business days.
Quarterly SOC 2 evidence, ISO 27001 internal audit, HIPAA risk assessment. We work alongside your compliance lead, not replace them.
How a retainer works.
What a retainer produces month over month.
One per major new feature. Lives in your wiki under the feature design doc. Reviewed quarterly for drift.
Living document. Risks ranked by likelihood and blast radius, with mitigations and owners.
Inline comments on GitHub or GitLab. Tagged so you can filter for "security-reviewed" at audit time.
Post-incident reports with timeline, root cause, response evaluation, and recommendations. Audit-ready.
For the board, or for your security committee. What changed, what got better, what is still at risk.
When the audit lands, we have already prepared the evidence. No 2-week scramble.
Common patterns that lead to a retainer.
But too risk-sensitive to have nobody. A retainer fills the gap until you can justify a hire.
You need senior hands for the work that does not fit on the head of security's plate. Threat models, code review, audit prep.
Continuous monitoring requires somebody answering questions every week, not once a year.
Architecture decisions are happening every sprint. Sitting in those rooms is cheaper than fixing the bad ones later.
Retainer logistics.
Tiered by monthly hours. Most teams start at 20 hours per month. The first call covers what tier matches your stack and team size.
Within a quarter, yes. Across quarters, no. Predictable monthly availability is the point of a retainer.
A named senior engineer. Backup coverage is documented; you always know who is on call.
Yes. Retainer clients get priority scheduling on pentest and red team engagements, and a discount on per-engagement pricing.
30 days notice to pause or cancel. We do not lock you in.
A 60-minute discovery call tells us whether a retainer fits your team. If a one-off engagement makes more sense, we will say so.