Security & Compliance
Know where you stand. Close the gaps.
Start with a Free Risk Assessment to see where your business is exposed. When you need to meet a framework, DCS helps you close the gaps and stay there, and managed IT clients can check their progress with a self-service compliance assessment in the client portal.
Where to start
Know where you stand
- Free Risk Assessment An automated scan of your computers, with findings in about three days
- Compliance help CIS Controls, HIPAA, PCI DSS, NIST, and the FTC Safeguards Rule
- Client portal assessment A self-service compliance check for managed IT clients
- Help with your results We walk you through what the findings mean
The Free Risk Assessment starts with a short request form.
Where to start
Two ways to find out where you stand
Anyone can request a Free Risk Assessment. Managed IT clients also get a compliance assessment in their client portal.
Free
Free Risk Assessment
An automated scan of your computers that shows where your business is exposed. Open to new and existing clients of any size.
- Request it with a short form
- We email you a secure link
- Install a lightweight assessment agent on your computers
- In about three days, we walk you through the findings
For managed IT clients
Compliance assessment in your client portal
A self-service check of how your business measures up against CIS Controls, HIPAA, NIST, PCI DSS, or the FTC Safeguards Rule, included for managed IT clients.
- Open the assessment in your client portal
- Answer guided questions at your own pace
- See where you stand against the framework you choose
- Our team helps you close the gaps
A self-check, not a certification or an audit.
Business risk, not just IT
How much do you lose an hour?
When email, your website, computers, or the internet go down, work stops and customers wait. Ransomware, account takeovers, and fraudulent payment requests can put company assets and money directly at risk.
Security and compliance work is how you reduce those risks, show customers, partners, and insurers that you take them seriously, and keep the business open.
- Email Quotes, invoices, and customer conversations stop
- Website Customers cannot find you, contact you, or buy from you
- Computers Your team cannot do their jobs
- Internet Cloud apps, phones, and card payments can go offline
Quick math: people affected × hourly cost per person + lost sales + recovery costs. That number is what security protects.
Frameworks
Frameworks we help with
Choose a framework to ask about compliance help. CIS Controls are our baseline when you have no required framework.
Regulations and contract requirements
HIPAA
Security Rule safeguards for healthcare providers, health insurers, and their business associates.
FTC Safeguards Rule
Required for non-bank financial businesses, such as auto dealers, tax preparers, and lenders.
PCI DSS
Required by merchant agreements for any business that takes card payments.
NIST SP 800-171
Protects Controlled Unclassified Information for defense contractors and underpins CMMC Level 2.
Recognized best-practice frameworks
Our baseline
CIS Controls
Voluntary, prioritized technical safeguards, organized into implementation groups by size and risk. Our baseline.
NIST CSF 2.0
A voluntary, business-level risk framework: Govern, Identify, Protect, Detect, Respond, and Recover.
NIST SP 800-53
The control catalog required for federal agencies, and a good fit for public-safety organizations aligning with CJIS.
Not sure which applies? Tell us about your business and we will help. We also help with combinations, and other frameworks as your industry or contracts require.
Closing the gaps
Help meeting your framework
Once you know where you stand, our team can help you close the gaps and stay on track, at a pace that fits your business.
How DCS can help
Ongoing services
- Remediation Fix the risks and gaps the assessments uncover, biggest risks first
- Managed security Layered protection with 24/7 monitoring
- Ongoing compliance monitoring Regular scans and reporting to show your progress
- Guided help with your framework Work through requirements with our team
- Cyber insurance support Help answering insurer questionnaires
How it works
From assessment to ongoing protection
A clear path, with the biggest risks tackled first.
01
Assess
Start with a Free Risk Assessment. Managed IT clients can also use the compliance assessment in the client portal.
02
Review
We walk you through the findings and help you interpret the results.
03
Remediate
Our team helps close the gaps, starting with the biggest risks to your assets and money.
04
Monitor and report
Ongoing monitoring, compliance reporting, and quarterly reviews keep you on track.
Putting the plan into action
How it ties to managed security
An assessment shows where you stand. Our managed services close the gaps and keep them closed.
FAQ
Common questions
Straight answers to the questions we hear most.
Still have a question? Call (208) 642-9099 or send us a message.
Is the risk assessment really free?
Yes. The Free Risk Assessment is open to new and existing clients of any size. You request it with a short form, we email you a secure link, you install a lightweight assessment agent on your computers, and in about three days, once your computers have reported in, we walk you through the findings.
How do I get the compliance assessment?
The compliance assessment is a self-service tool in the client portal, included for managed IT clients. It is a self-check against a framework’s requirements, not a certification or an audit, and our team helps you close the gaps. Not a client yet? Start with a Free Risk Assessment, or ask us about compliance help.
What’s the difference between the risk assessment and the compliance assessment?
The Free Risk Assessment is an automated technical scan that anyone can request: you install a lightweight assessment agent on your computers, and in about three days we walk you through the findings. The compliance assessment is a self-guided check of how your business measures up against a framework’s requirements, available to managed IT clients in the client portal.
Which frameworks can you help with?
CIS Controls, NIST CSF 2.0, NIST SP 800-53, NIST SP 800-171, HIPAA, the FTC Safeguards Rule, and PCI DSS. CIS Controls are our baseline when you have no required framework. We can also help with combinations, and other frameworks as your industry or contracts require.
Is an assessment the same as a certification?
No. Assessments show where you stand and what to work on. They are not a certification or an audit, and compliance also depends on your own policies and practices.
Do you help with cyber insurance questionnaires?
Yes. We help you understand what insurers are asking about, such as multi-factor authentication, endpoint protection, email security, and backups, and we build those requirements into your security plan. Your insurer makes the coverage decisions.
Find out where you stand
Start with a Free Risk Assessment. In about three days, we walk you through what is protected, what is exposed, and where to focus first.