Where AltiriOS has stood up governance for defense contractors and other regulated-industry CISOs — CMMC advisory engagements, Strategic AI Alignment Framework implementations, and board-level AI risk counsel. This page is a scaffold; substantive copy and case narratives land here in a follow-up.
Substantive copy dropped in here once the firm completes its case-study disclosures.
Reach out for references; client identity is held under NDA.
Practitioner certifications, framework authorizations, and audit experience will be listed here.
Team CVs available on request.
Six questions regulated-industry CISOs and defense contractors ask most before engaging AltiriOS on credentials.
Defense contractor clients are typically bound by DFARS and CMMC confidentiality expectations; disclosing engagement identity without explicit consent would violate those terms. Requests for references are routed through a scoping call so we can confirm what each client has authorized us to share.
References are shared on request after a scoping call confirms the engagement context, with whatever level of detail each client has pre-authorized. We do not maintain a public reference list and do not publish engagement counts or client logos without consent.
CMMC advisory engagements span gap assessment against NIST SP 800-171 Rev 2, SSP authorship, POA&M development, evidence collection workflows, and C3PAO coordination through certification — for defense suppliers preparing for CMMC Level 2 assessment.
Prior assessment artifacts, SSPs, POA&Ms, and engagement deliverables remain client-owned and confidential. They are not published, not retained by Altiri beyond redacted internal QA notes, and not shared without written client authorization.
Engagements begin with a scoping call that confirms the regulatory framework, the size and complexity of the CUI scope, the timeline pressure, and the deliverables the client expects. Reference checks happen only after that scoping is complete and only with clients who have pre-authorized outreach.
Practitioner certifications held by AltiriOS team members — including CMMC Registered Practitioner status through Cyber AB — can be verified directly against the issuing body's public registry. Verification details are provided on request during the scoping process.