Higher Education Cybersecurity

Guiding your
GRC.

GLBA Safeguards Rule compliance for colleges and universities — practical, affordable, and built by someone who has done this work from the inside.

Get in touch Download capability brief

I've sat in your chair.

Most university IT teams are navigating GLBA compliance, vendor risk, and federal audit requirements with limited staff and no dedicated GRC function. I know that environment because I worked in it — as a GRC analyst at Liberty University, building their GLBA, HIPAA, and FERPA compliance programs from the ground up.

Shepherd Cybersecurity exists to bring practical, affordable compliance support to institutions that need expert guidance without the enterprise price tag. No junior staff handoffs, no bloated proposals, no tools you have to learn to use.

Just a knowledgeable person who understands your regulatory obligations, your budget constraints, and what auditors actually look for.

Former GRC Analyst, Liberty University — GLBA, PCI, HIPAA, and FERPA compliance programs
GIAC Security Essentials (GSEC) — GIAC certified cybersecurity professional
CompTIA Security+ — Foundational security certification
Texas-based, higher ed focused — Solo practitioner, direct access to Seth Patterson on every engagement

How I can help

01
GLBA Safeguards Readiness Assessment

A structured review of your institution's compliance posture against all applicable FTC Safeguards Rule elements. You receive a written gap analysis, risk register, prioritized remediation roadmap, and a board-ready executive summary.

Starting at $5,000 · Delivered in under 2 weeks
02
TPRM Program Buildout

Build or mature your third-party risk management program — vendor inventory, risk tiering, HECVAT workflow setup, and policy documentation that satisfies both auditors and your IT team.

Starting at $7,500
03
Fractional CISO / Advisory Retainer

Ongoing monthly advisory support — governance check-ins, vendor contract reviews, regulatory update briefings, and on-call guidance for incidents and audit prep. Expert coverage without a full-time hire.

$2,500–$4,500 / month

What makes this different

🏛
Built for higher ed

I've worked inside a university GRC program. I understand decentralized IT environments, shared governance, and what federal auditors look for in higher ed specifically.

📋
Practical, not theoretical

Every deliverable is designed to satisfy auditors and actually help your team. You get a report you can take to your board and a roadmap you can actually follow.

💡
No enterprise overhead

Direct access to Seth Patterson on every engagement. No junior staff, no bloated contracts, no tools you have to license. Straightforward pricing designed for university budgets.

See what an engagement looks like

Download the Shepherd Cybersecurity capability brief for a full overview of services, deliverables, and what to expect from working with us.

Request capability brief

Let's talk

If your institution is managing GLBA obligations, working through a recent audit finding, or simply not sure where your program stands — I'd welcome a conversation. No pitch, just 20 minutes to see if there's a fit.

Based in Texas · Serving higher ed institutions nationally
GSEC · CompTIA Security+ · Former GRC Analyst, Liberty University