National Capital RegionVA DCJS License No. 99-613042
Deetz Consulting
TIER I · PROGRAMS & COMPLIANCE

An independent read on whether the security function is doing what you think it is doing.

Governance-grade program review for corporate boards, audit committees, and general counsel — conducted at arm's length from operating management.

— I.

The situation

"The board has questions about the security function — and we cannot get the answer from the people running it."

An independent review of the enterprise security program at a level appropriate for board, audit committee, and general counsel deliberation. Scope spans governance, policy, reporting structure, vendor relationships, training discipline, incident handling, and the exposure carried relative to peer organizations. Conducted at arm's length from the CSO, CISO, and operating management.

The work is investigative in posture — not collaborative — by design. Findings are written for the audience that will act on them, not for the security team that will be reviewed by them.

A board convened around a table with the security function under review.
A boardroom prepared for a governance-grade security review.
General counsel and a new CSO reviewing the enterprise security baseline.
— II.

Who this serves

Boards and audit committees with fiduciary questions about the enterprise security function. General counsel preparing for a regulatory inquiry or anticipating litigation. New CSO or CISO leadership inheriting a function and seeking independent baseline. CEOs whose security spend has grown faster than their confidence in what it is buying.

Engagements may be structured under attorney-client privilege through the client's counsel.

What is delivered

Deliverables

Confidential written report with findings, prioritized recommendations, and resourcing implications

Briefing

Private board, committee, or executive briefing — in person or by secure video

Timeline

Typically 4 – 8 weeks, scope-dependent

Fee Structure

Fixed-scope, agreed in advance

Privilege

Engagement may proceed under attorney-client privilege

A prepared board packet with findings, recommendations, and resourcing implications.
Investigative case files annotated with federal-grade review notes.

The qualification

Few private advisors carry the federal-investigative discipline this work actually requires. Mr. Deetz led the division that conducted internal misconduct, mission assurance, and insider-threat-type inquiries for the U.S. Secret Service — managing thirty supervisory agents and technical staff. That is the qualification.

Adjacent counsel within the same practice area.

  1. i.

    Insider Threat Programs

    Built on three decades of conducting the inquiries themselves.

  2. ii.

    Workplace Violence Prevention

    Threat assessment teams trained on the early signals.

  3. iii.

    Policy & Procedure Drafting

    When existing documentation no longer matches operating reality.

For matters where the cost of error is not measured in dollars.