Call Book a call
Insurance and client questionnaires

Answer security questions without guessing.

The insurance renewal, vendor questionnaire, or client security review asks whether you have MFA, backups, training, incident response, access reviews, and policies. We help you make the answers true, gather the evidence, and write the gap plan in plain English. Readiness, not audit.

  • Questionnaire answers grounded in what your office actually has
  • A right-sized evidence folder: policies, screenshots, logs, certificates, and dates
  • A gap plan that says what to fix next, who owns it, and what proof will satisfy the question

Fixed prices, published. A person replies the same business day.

Prefer not to email? Use the contact form or call (647) 835-6368.

The readiness package
  • Questionnaire answer bank
  • Nine-policy starter pack
  • Evidence folder structure
  • Gap plan tied to Checkup controls
Prepare the questionnaire

No obligation - if we’re not useful, we’ll say so and point you to the free resources.

Insured · authorized in writing · nothing simulated or changed without your sign-off Fixed prices, published - with what’s not included in writing Toronto & GTA · on-site · we work with your IT company
How it works

No mystery, no runaround.

  1. 1
    Decode

    We turn the questionnaire into plain language and mark which answers are already true, partly true, or not yet true.

  2. 2
    Evidence

    We collect the proofs a buyer or insurer can understand: training records, screenshots, policies, backup notes, and access-review dates.

  3. 3
    Close gaps

    You get a prioritized plan. Practical readiness stays with us; formal audits and framework programs move to named specialist partners.

What’s included

What the engagement produces

Prepare the questionnaire
What this does not include
  • SOC 2, ISO 27001, or CyberSecure Canada certification
  • Legal, insurance, or audit opinions
  • Running your governance function - we prepare the evidence and right-sized habits
Cyber-insurance or client questionnaire review
Plain-English answer bank that avoids overclaiming
Policy starter pack: access, acceptable use, incident response, data handling, backups, vendor access, and more
Evidence folder mapped to each control
30-day gap plan for answers that are not true yet
Partner handoff path for SOC 2, ISO 27001, legal, or insurance advice
The price, in the open
Quoted after review +HST · scoped and fixed-quoted once we have seen the questionnaire

This replaces the old catch-all GRC pitch with a narrower promise: make the answers true and defensible for a small office.

Prepare the questionnaire See all pricing
Straight answers

Questions owners actually ask

Is this GRC?

Only in the practical small-business sense. We help with policies, evidence, security-questionnaire answers, and readiness habits. We are not your auditor, privacy counsel, or enterprise governance department.

Can you help with SOC 2 or ISO 27001?

We can help you understand the readiness gap and coordinate named specialist partners for formal framework work. We do not pretend that a small training firm is your audit advisory practice.

What if the honest answer is no?

Then we say no and write the remediation plan. A truthful no with a dated plan is safer than an invented yes that fails due diligence.

More on the full FAQ page - including “why should we trust you with our office?”, answered honestly.

Make the answer true before you send it.

That is the whole job: fewer guesses, better proof, and no claims your office cannot back up.

Prepare the questionnaire (647) 835-6368

Not ready to talk? Take the free self-check - ten minutes, no email required.