Thompson Industries

Free Security Snapshot

See your company through an attacker's eyes.

We review the information already exposed about your company online and turn it into a clear security report.

FreePassiveNo credentials
Security Snapshot · Request

Your report will be delivered within two business days.

01Deliverable

What We Deliver

A free look at your external security footprint. The same information anyone on the internet could already piece together about your company, gathered into one report so you don't have to go looking for it yourself.

An initial report outling the security implications of our findings.

A call to walk through the results and discuss what they mean for your organization.

We investigate public DNS records, certificate logs, and old breach data associated with your organization.

We inspect the code on your home page for unintentionally exposed keys, credentials, or other sensitive information.

02Operator

Who we are

We break into software, document it and help you fix it.

Jack Thompson leads the work. Jack holds a BS in Computer Science and an MS in Cyber Security from Worcester Polytechnic Institute. He serves in the Army National Guard as a Cyber Warfare Officer and has worked in the private sector as a cyber engineer, where his work has been in vulnerability research and exploit development.

Two examples. At a social media startup, we got admin access to their system, showed them exactly how we did it, then helped them close the hole. at an MSP serving CPA firms, we assessed their security posture and helped them make the changes needed to tighten it up.

Every job runs the same way. We define the scope of testing first, before we do anything hands on with your application. After we agree on the rules we attack your company just like a hacker would. We document everything we find, where you are strong, and more importantly where you are weak. We come back to you with 3 documents. An executive summary, a technical report and a letter of attestation.

What makes us different? We don't just tell you where your problems are and let you deal with it. We work with your engineers and developers to fix the problems and then retest to make sure that the issue is resolved.

Jack ThompsonLinkedIn
03Scope

What This Is Not

The initial report is NOT a vulnerability scan or a penetration test.

We do not actively test or exploit any vulnerabilities.
We do not test credentials or passwords.
We do not port scan or probe your network.
We do not send any malicious payloads.

  • No vulnerability testing
  • No credentials
  • No payloads
  • No probing
04Audience

Is This For You?

Small software teams

You run a small team. You still write code. You ship fast on tools like Supabase, Vercel, and Next.js. Then a big client, an investor, or an insurer asks about security.

Professional services firms

You do accounting, legal, or advisory work. You hold client data that matters. No one has looked at your website in years. You also have rules to follow, like the FTC Safeguards Rule and IRS Pub 4557.

Both end up in the same spot. Someone has or will ask about your security. The report shows where you stand before you write back.

05Next steps

What comes after

The snapshot shows what the outside world can see. That is all it does. If you want more, here is what we sell:

External Security Assessment
$495
Security Baseline Assessment
Scoped and quoted per engagement
Penetration testing — external, internal, and web application
Scoped and quoted per engagement

If you want year-round support, we do that too. Not sure what you need? Email us and we will work with you to scope the right engagement for your organization.

Request

Request your Free Security Snapshot.

Fill out the form and in two days, the report will be in your inbox. Then book a call that and we will tell you what we found and what's worth fixing first.

Security Snapshot · Request

Your report will be delivered within two business days.

Book a 15-minute call