Download · Free · 12 pages

The 12-point cyber risk checklist.

We use this with new clients to surface the gaps most teams discover only after an incident. Adapted from our internal engagement intake — generalized for self-serve use.

What's inside

The table of contents

  • Identity & access — 3 questions that matter
  • Endpoint coverage — what you're actually monitoring
  • Cloud posture — public exposure check
  • Vendor & supply chain — concentration risk
  • Incident readiness — runbook reality check
  • Compliance landing zone — what applies to you
  • Backup integrity — restore vs. 'we have backups'
  • Logging coverage — what's actually retained
  • Privileged access — break-glass and standing access
  • Communication channels — who calls whom at 3am
  • Cyber insurance posture — pre-binding controls
  • Board narrative — can you defend posture in 10 slides