Free Resources
Practical Tools for Security Leaders — No Strings Attached.
Every resource in this library is free. No upsells, no hidden fees, no catch. Just practical guidance built for CISOs and security managers at mid-sized organizations who are figuring it out without a team of forty.
Start here before you hire anyone.
The resources on this page were built from real experience — not templates pulled from the internet and rebranded. Each one is designed to give you something you can use immediately, whether you hire True North Cyber Solutions or not.
If you're a new CISO trying to get your bearings, start with the 90-Day Action Playbook. If you're approaching a compliance deadline, the SOC 2 Readiness Checklist is your first stop. If your risk register is a mess or doesn't exist, the Risk Register Template will get you moving in the right direction.
Available Now
Download any of these free resources today.
Free Playbook
New CISO 90-Day Action Playbook
A week-by-week framework for your first 90 days as CISO. Covers stakeholder mapping, risk assessment, quick wins, and your first board briefing. Built from real experience — not a generic template.
What's inside:
Free Checklist
SOC 2 Readiness Checklist
Pre-audit gap analysis across all five Trust Service Criteria. Find out exactly what's missing before the auditor does. Essential reading for any organization pursuing SOC 2 for the first time.
What's inside:
Free Template
Cybersecurity Risk Register Template
A structured risk register built for mid-sized organizations — with guidance on how to fill it in, who should own it, and how to keep it current. Includes risk scoring guidance and a sample completed register.
What's inside:
Coming Soon
More resources in development.
Coming Soon
Data Breach Response Playbook
Hour-by-hour response guidance for the first 72 hours after a breach. Covers containment, notification timelines, legal considerations, and communication templates.
Coming Soon
Security Awareness Training Program Builder
A 12-month calendar of topics, delivery formats, and engagement tactics. Includes phishing simulation guidance and a template for reporting training effectiveness to leadership.
Coming Soon
Vendor Risk Assessment Toolkit
Questionnaire, scoring rubric, and risk tier classification system for evaluating vendor security posture. Includes contract language recommendations and annual review schedule
Want to know when new resources are available? Schedule a discovery call and mention resources — we'll make sure you're the first to know
Let's Talk
Need help figuring out where to start?
The free resources on this page are a starting point. If you're dealing with something more complex or time-sensitive, a discovery call is the fastest way to get pointed in the right direction.
No pitch. No pressure. Just a conversation about what you're dealing with and whether I can help.