fig. 01 - the model · the business stack

Every business has layers requiring cyber focus…
{Layer10} can protect them all.

· Assets · Operations · Financial · Intellectual Property
· People · Customers, Vendors & Data · Reputation
· Compliance · Strategy

{Layer10} is your cybersecurity layer, wrapped around your business. For most clients, we provide oversight. When you need more, we can operate deeper depending on your needs: managing endpoints, running scans, configuring tools or remediating deficiencies. Built to fit - oversight is the baseline; operational depth is scoped to what makes the most difference.

hover the plates ↑
1 · assets
2 · operations
3 · financial
4 · intellectual property
5 · people
6 · customers, vendors & data
7 · reputation
8 · compliance
9 · strategy
10 · {Layer10}
L10
{Layer10}
security oversight · operational reach into every layer
Infrastructure
endpoints, firewalls, segmentation, remote access
bp: baseline hardening, patching, segmentation
AI & Cloud
aws, azure, saas, ai — and the sprawl between
bp: configuration, sprawl, shadow-it discipline
People
phishing, identity, least privilege
bp: continuous awareness
Vendors
third-party risk, supply chain
bp: reviewed continuously
sec. 02 - approach

Reasonable security for every business

Security vendors sell fear. We'd rather sell reality. Reasonable security means knowing what actually matters to your business, doing the basics completely, and doing them well - access control and identity management up front: the right people, the right systems, the right permissions - no shelfware, no alert noise, no gaps between tools. Build to fit means every business needs a solution tailored to their specific needs. Active security means we're proactive about prevention and reactive about response - nothing sits still.

cohesion

Cohesive

One picture of your posture - not twenty disconnected dashboards. Identity, endpoints, vulnerabilities, external risk and vendor posture in a single view, owned by a single accountable team.

completeness

Complete

The fundamentals covered end to end. Most breaches come through basics left undone - we make sure the basics are done, verified, and maintained.

discipline

Done well

Configured correctly, monitored continuously, reported clearly. Discipline beats novelty - enterprise-grade practice, sized for your business.

active

Proactive + Reactive

We prevent what we can and prepare for what we can't. Proactive monitoring, hardening, and awareness. Reactive incident readiness, runbooks, and recovery. Active security means nothing sits still.

sec. 03 - ai & security

AI-augmented. Human-accountable.

We use AI to accelerate our own operations - threat correlation, report generation, pattern detection across thousands of signals. Every finding is reviewed by a human who has run incident response, not a chatbot or algorithm. We also help you deploy AI safely inside your own business. Your data stays yours - we never train on client data, and everything we process is handled through responsible, anonymized pipelines.

our operations

AI-enhanced

We run AI internally for threat analysis, report drafting, and vulnerability correlation - the same way we run every tool: as an augmentation, not a replacement. Every output is verified by a human analyst before it reaches you. Your data stays secure - we use local and anonymized LLM pipelines, never train on client information, and apply responsible AI practices at every step.

your concerns

AI risk, addressed

Shadow AI, data leakage, prompt injection, model drift - we help you understand where AI risk lives in your business and put guardrails around it. Same framework, new attack surface.

your adoption

AI done safely

AI usage policy, vendor risk assessment, data classification for model inputs, and ongoing monitoring. We help you use AI without exposing what matters.

ai + layer10

Built in, not bolted on

AI is embedded in how we work - and how we help you work. No separate product, no upsell, no AI line item. Just a smarter, faster practice with human accountability at every step.

sec. 04 - services

Protection across every layer.

Assessment, monitoring, response and reporting - run as one practice, powered by our proprietary {Layer10} Focus platform. You get the output; we carry the operations.

01svc.01 - assess

Posture assessment & reporting

Quarterly, board-ready reporting across your entire security posture - including vendor risk review, third-party access, and supply chain posture. Plain language for leadership, full technical detail for IT.

→ quarterly cadence
02svc.02 - monitor

Managed security oversight

Continuous monitoring and alerting across your environment - watched by people who have lived incident response, not just read about it.

→ always on
03svc.03 - remediate

Vulnerability management

Find, prioritize, and track vulnerabilities to closure - a remediation plan, not another scan PDF in a drawer.

→ tracked to closure
04svc.04 - respond

Incident readiness

Preparation, runbooks, and calm response when it matters. The time to meet your incident team is before the incident.

→ before you need it
{L10}oversight
fig. 02 - coverage sonar · hover / tap the nodes
mod.identity

Active Directory hygiene

Stale accounts, privileged sprawl, password-policy drift - found and fixed.

mod.endpoint

Endpoint coverage

EDR deployment and health across every device, verified continuously.

mod.vuln

Vulnerability management

Aggregated scan data turned into a prioritized remediation plan.

mod.external + vendor

External risk & vendor review

Your outside-in exposure, scored and tracked over time - plus vendor risk assessments, third-party access reviews, and supply chain posture checks.

mod.intel

Threat intelligence

Curated intel tailored to your industry and technology stack.

mod.report

Executive reporting

Board-ready Word/PDF reports your leadership will actually read.

mod.ops

Continuous monitoring

Scheduled checks and alerting - posture watched between quarterly reports.

sec. 05 - process

A cycle, not a project.

Security posture isn't a one-time engagement. We run the same disciplined loop every quarter - and we watch it between quarters.

01

Mapping

Baseline your posture across identity, endpoints, vulnerabilities and external exposure. No assumptions - measured and constantly re-evaluated.

02

Reporting

A board-ready picture: what matters, what it means, what it costs to fix. Plain language up top, detail underneath.

03

Remediation

A prioritized action plan, sequenced by risk, effort, and cost - then tracked to closure, not emailed and forgotten.

04

Oversight

Continuous monitoring between cycles. When something drifts, we catch it before the next report does.

↺repeats quarterly - posture compounds, in either direction
sec. 06 - standards

Measured against a standard, not an opinion.

Your quarterly report maps to the NIST Cybersecurity Framework - the same structure used by the enterprises we came from. When we tell you something matters, you can look up the function it sits under and check us.

govern

Executive reporting

A board-ready view of posture, plan and cost every quarter. This is the layer most businesses have nobody accountable for - it's the one we own.

identify

Know what you have and where it's exposed

Identity baselined, vulnerabilities aggregated and prioritized, outside-in and vendor risk scored, third-party access reviewed, threat intel matched to your actual stack.

protect

The basics, verified rather than assumed

EDR deployed and healthy on every device, privileged sprawl and password-policy drift closed, configuration checked instead of taken on trust.

detect

Continuous monitoring

Scheduled checks and alerting between quarterly cycles, so drift surfaces when it happens - not when the next report is due.

respond

Incident readiness

Runbooks written before you need them, and a team you have already met. The time to meet your incident team is before the incident.

recover

Back to a known baseline

Post-incident review, remediation tracked to closure, and your posture re-baselined in the next cycle so the same gap doesn't reopen.

// we map your posture to the framework - we are not an auditor, and no certification or audit opinion is implied
// the six functions above are the framework's own (NIST CSF 2.0), not our invention

sec. 07 - audience

Two readers. One picture.

For business owners

Security oversight - plus operational reach.

Maybe you need the security oversight layer you don't have today. Maybe you also need hands-on help - endpoint management, vulnerability scanning, tool configuration. Oversight is the baseline. Operations is scoped per engagement. We know your business, so there's no learning curve.

For leadership

A board-ready view of risk.

What matters, what's being done, and what it costs - in plain language. No jargon, no fear tactics. Just a clear view of your security posture and the plan to keep improving it, quarter after quarter.

sec. 08 - pricing

Every engagement is unique.
So is every quote.

Pricing is specific to the engagement — scoped together after an initial free consultation. No pressure, no guesswork. A focused conversation about your stack, your risks, and what good looks like for you — then a tailored scope and a clear quote in writing. Build to fit.

01
free consultation

Let's talk it through

A relaxed, 30-minute conversation about your environment, your concerns, and what good looks like for your organization. No obligation, no sales pressure.

02
tailored quote

Proposal & quote

We scope the engagement together — modules, cadence, and depth that fit how you work — then put a clear number on paper.

03
build to fit

Onboard & ongoing

Light onboarding, then continuous posture oversight — adjusting as you grow, no surprise line items.

// pricing is tailored per engagement after the free consult — every organization is different. Book your free consultation →
sec. 09 - questions

Asked, answered plainly.

q.01We're a small business - is this overkill for us?+
No. The discipline is the same at every size; only the scope changes. Most breaches hit businesses that thought they were too small to matter. Enterprise security for everyone means exactly that - same rigor, priced for your size.
q.02We already have IT. Do you replace them?+
No - we sit a layer above them. Your IT team keeps running IT; we oversee the security posture they don't have time to own: monitoring, vulnerability tracking, reporting, incident readiness. We make IT look good, not redundant.
q.03What do we actually get, tangibly?+
Every quarter: a board-ready report covering identity hygiene, endpoint coverage, vulnerabilities, external risk, vendor posture, and relevant threat intel - plus a prioritized action plan. Between quarters: continuous monitoring and a human to call.
q.04Are you going to sell us a pile of tools?+
No. We don't resell shelfware. Where tooling is needed we recommend what fits - often what you already own, properly configured. The one exception is enterprise-level EDR — our systems are tooled around the best solution on the marketplace. Reasonable security is coverage, not a procurement spree.
q.05What happens if we have an incident?+
You'll already know us - and more importantly, we already know you and the nuances of your business. We prepare runbooks in advance, and when something happens you call a team that has run incident response professionally, not a search engine.
q.06How does annual billing work?+
Pay annually and two months are free, on any option. Multi-year agreements discount further. And if your environment changes size mid-year, we true it up - no gotchas.
q.07How do you use AI, and should I be worried about it?+
We use AI to accelerate our own operations - threat correlation, report drafting, vulnerability triage - but every finding is reviewed by a human who has run incident response. We do not feed your data into public models, and we do not rely on AI for decisions that need judgment. For your own business, we help you deploy AI safely: usage policies, vendor risk assessment, shadow AI discovery, and data classification. AI is a tool; we keep it in its toolbox.
sec. 10 - about

Built by someone who's run it.

Kurt Augustine Kurt Augustine
founder - Kurt Augustine

Twenty years on the front line.

Kurt has spent more than two decades building and defending the networks the modern internet runs on: from early networking through firewalls and global enterprise infrastructure - managing and shaping security for customers of every size and industry - to running incident response and managed security at a leading cybersecurity firm.

{Layer10} exists to put enterprise discipline within reach of every business.

sec. 11 - contact

Achievable security starts with a conversation.

Thirty minutes. We'll map your current posture, show you what reasonable coverage looks like for a business your size, and give you a straight price.

info@layer10cybersecurity.com
{Layer10} CyberSecurity - Protect every layer of your business
fig. 01 - the model · the business stack

Every business has layers requiring cyber focus…
{Layer10} can protect them all.

· Assets · Operations · Financial · Intellectual Property
· People · Customers, Vendors & Data · Reputation
· Compliance · Strategy

{Layer10} is your cybersecurity layer, wrapped around your business. For most clients, we provide oversight. When you need more, we can operate deeper depending on your needs: managing endpoints, running scans, configuring tools or remediating deficiencies. Built to fit - oversight is the baseline; operational depth is scoped to what makes the most difference.

hover the plates ↑
1 · assets
2 · operations
3 · financial
4 · intellectual property
5 · people
6 · customers, vendors & data
7 · reputation
8 · compliance
9 · strategy
10 · {Layer10}
L10
{Layer10}
security oversight · operational reach into every layer
business_sizeany - no minimums
coverageidentity · endpoints · vulns · external · vendor · intel
vendor_reviewthird-party risk · access reviews · supply chain posture
reportingquarterly · board-ready
Infrastructure
endpoints, firewalls, segmentation, remote access
bp: baseline hardening, patching, segmentation
AI & Cloud
aws, azure, saas, ai — and the sprawl between
bp: configuration, sprawl, shadow-it discipline
People
phishing, identity, least privilege
bp: continuous awareness
Vendors
third-party risk, supply chain
bp: reviewed continuously
sec. 02 - approach

Reasonable security for every business

Security vendors sell fear. We'd rather sell reality. Reasonable security means knowing what actually matters to your business, doing the basics completely, and doing them well - access control and identity management up front: the right people, the right systems, the right permissions - no shelfware, no alert noise, no gaps between tools. Build to fit means every business needs a solution tailored to their specific needs. Active security means we're proactive about prevention and reactive about response - nothing sits still.

cohesion

Cohesive

One picture of your posture - not twenty disconnected dashboards. Identity, endpoints, vulnerabilities, external risk and vendor posture in a single view, owned by a single accountable team.

completeness

Complete

The fundamentals covered end to end. Most breaches come through basics left undone - we make sure the basics are done, verified, and maintained.

discipline

Done well

Configured correctly, monitored continuously, reported clearly. Discipline beats novelty - enterprise-grade practice, sized for your business.

active

Proactive + Reactive

We prevent what we can and prepare for what we can't. Proactive monitoring, hardening, and awareness. Reactive incident readiness, runbooks, and recovery. Active security means nothing sits still.

sec. 03 - ai & security

AI-augmented. Human-accountable.

We use AI to accelerate our own operations - threat correlation, report generation, pattern detection across thousands of signals. Every finding is reviewed by a human who has run incident response, not a chatbot or algorithm. We also help you deploy AI safely inside your own business. Your data stays yours - we never train on client data, and everything we process is handled through responsible, anonymized pipelines.

our operations

AI-enhanced

We run AI internally for threat analysis, report drafting, and vulnerability correlation - the same way we run every tool: as an augmentation, not a replacement. Every output is verified by a human analyst before it reaches you. Your data stays secure - we use local and anonymized LLM pipelines, never train on client information, and apply responsible AI practices at every step.

your concerns

AI risk, addressed

Shadow AI, data leakage, prompt injection, model drift - we help you understand where AI risk lives in your business and put guardrails around it. Same framework, new attack surface.

your adoption

AI done safely

AI usage policy, vendor risk assessment, data classification for model inputs, and ongoing monitoring. We help you use AI without exposing what matters.

ai + layer10

Built in, not bolted on

AI is embedded in how we work - and how we help you work. No separate product, no upsell, no AI line item. Just a smarter, faster practice with human accountability at every step.

sec. 04 - services

Protection across every layer.

Assessment, monitoring, response and reporting - run as one practice, powered by our proprietary {Layer10} Focus platform. You get the output; we carry the operations.

01svc.01 - assess

Posture assessment & reporting

Quarterly, board-ready reporting across your entire security posture - including vendor risk review, third-party access, and supply chain posture. Plain language for leadership, full technical detail for IT.

→ quarterly cadence
02svc.02 - monitor

Managed security oversight

Continuous monitoring and alerting across your environment - watched by people who have lived incident response, not just read about it.

→ always on
03svc.03 - remediate

Vulnerability management

Find, prioritize, and track vulnerabilities to closure - a remediation plan, not another scan PDF in a drawer.

→ tracked to closure
04svc.04 - respond

Incident readiness

Preparation, runbooks, and calm response when it matters. The time to meet your incident team is before the incident.

→ before you need it
{L10}oversight
fig. 02 - coverage sonar · hover / tap the nodes
mod.identity

Active Directory hygiene

Stale accounts, privileged sprawl, password-policy drift - found and fixed.

mod.endpoint

Endpoint coverage

EDR deployment and health across every device, verified continuously.

mod.vuln

Vulnerability management

Aggregated scan data turned into a prioritized remediation plan.

mod.external + vendor

External risk & vendor review

Your outside-in exposure, scored and tracked over time - plus vendor risk assessments, third-party access reviews, and supply chain posture checks.

mod.intel

Threat intelligence

Curated intel tailored to your industry and technology stack.

mod.report

Executive reporting

Board-ready Word/PDF reports your leadership will actually read.

mod.ops

Continuous monitoring

Scheduled checks and alerting - posture watched between quarterly reports.

sec. 05 - process

A cycle, not a project.

Security posture isn't a one-time engagement. We run the same disciplined loop every quarter - and we watch it between quarters.

01

Mapping

Baseline your posture across identity, endpoints, vulnerabilities and external exposure. No assumptions - measured and constantly re-evaluated.

02

Reporting

A board-ready picture: what matters, what it means, what it costs to fix. Plain language up top, detail underneath.

03

Remediation

A prioritized action plan, sequenced by risk, effort, and cost - then tracked to closure, not emailed and forgotten.

04

Oversight

Continuous monitoring between cycles. When something drifts, we catch it before the next report does.

↺repeats quarterly - posture compounds, in either direction
sec. 06 - standards

Measured against a standard, not an opinion.

Your quarterly report maps to the NIST Cybersecurity Framework - the same structure used by the enterprises we came from. When we tell you something matters, you can look up the function it sits under and check us.

govern

Executive reporting

A board-ready view of posture, plan and cost every quarter. This is the layer most businesses have nobody accountable for - it's the one we own.

identify

Know what you have and where it's exposed

Identity baselined, vulnerabilities aggregated and prioritized, outside-in and vendor risk scored, third-party access reviewed, threat intel matched to your actual stack.

protect

The basics, verified rather than assumed

EDR deployed and healthy on every device, privileged sprawl and password-policy drift closed, configuration checked instead of taken on trust.

detect

Continuous monitoring

Scheduled checks and alerting between quarterly cycles, so drift surfaces when it happens - not when the next report is due.

respond

Incident readiness

Runbooks written before you need them, and a team you have already met. The time to meet your incident team is before the incident.

recover

Back to a known baseline

Post-incident review, remediation tracked to closure, and your posture re-baselined in the next cycle so the same gap doesn't reopen.

// we map your posture to the framework - we are not an auditor, and no certification or audit opinion is implied
// the six functions above are the framework's own (NIST CSF 2.0), not our invention

sec. 07 - audience

Two readers. One picture.

For business owners

Security oversight - plus operational reach.

Maybe you need the security oversight layer you don't have today. Maybe you also need hands-on help - endpoint management, vulnerability scanning, tool configuration. Oversight is the baseline. Operations is scoped per engagement. We know your business, so there's no learning curve.

For leadership

A board-ready view of risk.

What matters, what's being done, and what it costs - in plain language. No jargon, no fear tactics. Just a clear view of your security posture and the plan to keep improving it, quarter after quarter.

sec. 08 - pricing

Priced like we work: plainly.

Three ways to structure it - pick the shape that fits how you buy. Every option includes oversight. Need operational depth on top? That's a conversation, not a contract change. Build to fit.

monthly
annual 2 months free
option_01

Per endpoint

$45 /endpoint/mo
setup from $2,500 · volume tiers inside
  • $45/endpoint up to 25 endpoints
  • $35/endpoint up to 100 endpoints
  • $28/endpoint beyond 100
  • $950/mo minimum, any endpoint count
  • Everything included - all modules, all reporting
select(option_1)
option_02

Packages

$1,950 /mo from
setup from $2,500 · Essentials / Professional / Enterprise
  • Essentials - posture + quarterly reporting (≤25 endpoints)
  • Professional - $3,900/mo, adds monitoring & vuln management (≤100)
  • Enterprise - custom, adds IR retainer, unlimited scale
select(option_2)
option_03

Modular

$1,400 /mo base
setup from $2,500 · add modules à la carte
  • Base platform: posture assessment + reporting
  • Add modules $400–700/mo each as you need them
  • Grow coverage at your own pace
select(option_3)

// annual billing = 2 months free · multi-year discounts available

sec. 09 - questions

Asked, answered plainly.

q.01We're a small business - is this overkill for us?+
No. The discipline is the same at every size; only the scope changes. Most breaches hit businesses that thought they were too small to matter. Enterprise security for everyone means exactly that - same rigor, priced for your size.
q.02We already have IT. Do you replace them?+
No - we sit a layer above them. Your IT team keeps running IT; we oversee the security posture they don't have time to own: monitoring, vulnerability tracking, reporting, incident readiness. We make IT look good, not redundant.
q.03What do we actually get, tangibly?+
Every quarter: a board-ready report covering identity hygiene, endpoint coverage, vulnerabilities, external risk, vendor posture, and relevant threat intel - plus a prioritized action plan. Between quarters: continuous monitoring and a human to call.
q.04Are you going to sell us a pile of tools?+
No. We don't resell shelfware. Where tooling is needed we recommend what fits - often what you already own, properly configured. The one exception is enterprise-level EDR — our systems are tooled around the best solution on the marketplace. Reasonable security is coverage, not a procurement spree.
q.05What happens if we have an incident?+
You'll already know us - and more importantly, we already know you and the nuances of your business. We prepare runbooks in advance, and when something happens you call a team that has run incident response professionally, not a search engine.
q.06How does annual billing work?+
Pay annually and two months are free, on any option. Multi-year agreements discount further. And if your environment changes size mid-year, we true it up - no gotchas.
q.07How do you use AI, and should I be worried about it?+
We use AI to accelerate our own operations - threat correlation, report drafting, vulnerability triage - but every finding is reviewed by a human who has run incident response. We do not feed your data into public models, and we do not rely on AI for decisions that need judgment. For your own business, we help you deploy AI safely: usage policies, vendor risk assessment, shadow AI discovery, and data classification. AI is a tool; we keep it in its toolbox.
sec. 10 - about

Built by someone who's run it.

Kurt Augustine Kurt Augustine
founder - Kurt Augustine

Twenty years on the front line.

Kurt has spent more than two decades building and defending the networks the modern internet runs on: from early networking through firewalls and global enterprise infrastructure - managing and shaping security for customers of every size and industry - to running incident response and managed security at a leading cybersecurity firm.

{Layer10} exists to put enterprise discipline within reach of every business.

sec. 11 - contact

Achievable security starts with a conversation.

Thirty minutes. We'll map your current posture, show you what reasonable coverage looks like for a business your size, and give you a straight price.

info@layer10cybersecurity.com