Services

Consulting & Advisory Services

Hands-on support for government agencies and organizations working through IT, compliance, and AI governance challenges. I work directly with your team — scoped to your environment, not a pre-packaged template.

Technical Program Management

Supporting IT and infrastructure programs with structured coordination, documentation, and stakeholder communication. Relevant to municipal broadband, network modernization, and federal IT initiatives where staying organized across multiple stakeholders is the real challenge.

Familiar with federal funding compliance documentation requirements — grant reporting, procurement standards, and public infrastructure accountability.

Deliverables Include
  • Program charters & stakeholder plans
  • Risk registers & schedule tracking
  • Vendor performance documentation
  • Milestone & status reporting
  • Closeout documentation

Governance, Risk & Compliance (GRC)

Building and implementing GRC programs aligned to NIST CSF, NIST 800-53, ISO 27001, and CMMC 2.0. Focused on producing frameworks that get used — not just documented once and shelved.

Applicable to federal agencies, local governments, and enterprises in regulated industries. Familiar with federal authorization processes and continuous monitoring requirements from direct consulting work.

Deliverables Include
  • Risk assessment frameworks
  • Security policies & procedures
  • Compliance gap analyses
  • Control mapping & SSPs
  • Audit preparation support

AI Governance & Responsible AI

Helping organizations put governance structures around AI adoption — policies, risk assessments, and controls aligned to NIST AI RMF and emerging federal guidance. Grounded in hands-on AI development experience, not just policy review.

Deliverables Include
  • AI risk assessments
  • Responsible AI policy development
  • AI use case inventory
  • Governance framework design
  • Leadership & compliance briefings

Privacy & Risk Management

Supporting privacy programs aligned to the NIST Privacy Framework and applicable federal and state regulations. Data governance, third-party risk management, and helping organizations understand and document their exposure.

Deliverables Include
  • Privacy impact assessments (PIAs)
  • Data inventory & classification
  • Third-party risk management
  • Privacy policy development

IT Audit & Control Assessments

Structured reviews of IT environments against established control frameworks to identify gaps and support audit readiness. Clear findings with actionable remediation guidance — not just a list of problems.

Deliverables Include
  • Control testing & documentation
  • Audit evidence collection
  • Findings with risk ratings
  • Remediation roadmaps
Framework Alignment

Frameworks & Standards

NIST CSF NIST 800-53 NIST AI RMF NIST Privacy Framework ISO 27001 CMMC 2.0 FedRAMP EU AI Act FISMA

Not sure which service fits your situation?

Describe your challenge — I'll tell you directly whether I can help and what that would look like.