Toronto · founder-led cyber hygiene
Get the basics in order — before someone asks you to prove it.
I help owner-run Canadian businesses turn the messy cyber basics into a short, honest fix list they can actually use. No jargon, no scare tactics, no giant audit.
Most small businesses I meet have not been hacked. They just cannot prove the basics are handled — and one day a client, an insurer, or one bad afternoon forces the question. That is a fixable problem. Usually a short one.
Six questions. An honest rough read.
Answer six plain questions and I will show you roughly where you stand and the first fixes I would reach for. Nothing you enter leaves your screen.
Example output — illustrative only
A short, working report — not a dashboard pretending to know everything.
The notes below show the shape of a Checkup deliverable. A real report is written from your answers, your authorized domain/email evidence, and the owner context you choose to share.
A plain posture band based on available evidence, with limits stated clearly.
The first risks translated into owner language: account access, backup proof, mailbox protection, or offboarding.
A fix list that can be handled internally, sent to IT, or used to decide what deserves budget.
A few basics need an owner.
This is where the report explains what looks handled, what needs proof, and where responsibility is unclear.
Start with the access layer.
The first recommendation is written as a practical action, not a compliance slogan.
Keep the first month small.
The goal is momentum: close the obvious gap, prove one recovery path, and write down the next repeatable habit.
How it runs
A small engagement with a clear edge.
Short intake
No passwords, recovery codes, API keys, or sensitive client files. The business stays in control of its accounts.
Permissioned review
Public, non-intrusive checks on authorized domains plus information the owner chooses to provide.
Written snapshot
A plain-language posture band, top risks, and prioritized fixes.
Walkthrough
We decide what to do yourself, what to hand to IT, and what can wait.
When to call
Useful when the cyber questions are getting real.
A client asks how you protect their data. An insurer asks whether MFA is actually on. A staff member leaves and nobody is completely sure which accounts they had. Or you already have IT help, but no clean owner for the cyber basics.
The Checkup is built for that moment: enough structure to make the next fixes obvious, without turning the first conversation into a giant audit.
Founder cut
I run every Checkup myself. You get plain notes and a fix list you can use later — not a PDF you will never open.
I learned to run checklists where getting them wrong actually mattered. Same discipline, smaller stakes, friendlier.
Seaon Regis · Founder · Toronto · remote-first across Canada
Clear scope is part of the trust. I never ask for passwords, MFA or recovery codes, API or private keys, or sensitive client files. If you need incident response, a pentest, legal advice, or formal compliance work, I will tell you and point you the right way.
Ways to start
Start small. Add help only where it saves you time.
The Bench Check
Six questions in your browser. A rough read, instantly.
The Cyber Hygiene Checkup
Fixed-scope review for smaller businesses. Done by hand.
Working Hour
One messy area, sorted: MFA, backups, offboarding or a client questionnaire.
Monthly Hygiene Watch
Light re-checks and reminders after the first cleanup.
Contact
Not sure where to start? Send the messy version.
hello@regiscyber.comToronto, Ontario · remote-first across Canada