St. Albert, Alberta · Serving clients across Canada

Cyber. Site security. Backup that actually restores.

Forensic Five reviews what you expose on the internet, how you watch the property, and whether you can recover when something fails. Work is scoped in writing and delivered as a report you can share with counsel, insurers, or a board.

Cybersecurity

Websites, servers, and applications reviewed from the outside in. Assessments, scans, and consulting.

Site security

Walk the yard. Write coverage and evidence. Review the cameras so they do not become the breach.

Backup

What is copied, who can wipe it, and the last proven restore. Recovery is a finding, not a checkbox.

The public scan does not require an account. Paid work does not start until you approve a written scope and fee.

Three divisions

Where we work

Cyber stays the core practice. Site security and backup sit beside it so a theft, a camera breach, and a failed restore are not three different vendors.

Cybersecurity

Website, application, and server reviews. Free public-site scan as the on-ramp. Consulting when you already have a deadline or an incident.

  • Assessments with a written report
  • Scans and analyst review
  • Penetration testing and training
Cyber assessments

Site security

Walk the property. Write coverage and evidence. Review the security of the cameras so the system that watches the yard is not itself the hole.

  • Contractor and industrial yards
  • Evidence packages, not raw footage
  • No inbound ports, documented credentials
Site security details

Backup

A restore that has been proven, copies that ransomware cannot delete in the same night, and a report an insurer can read.

  • Inventory of what is and is not copied
  • Isolation and credential review
  • Dated restore evidence
Backup review

Cyber services in detail

Free website scan

Public-surface check. No account. Useful, not a substitute for an assessment.

Run a scan

Consulting and pentest

Remediation, incidents, and controlled attack simulation when a scan is not enough.

Consulting
How we work

A clear engagement, start to finish

You approve the scope, the window, and the fee before any testing begins. The report states what was covered and what was not.

1

Scope

We confirm targets, constraints, and what “done” looks like: a website, a server, a property walk, or a backup restore test.

2

Assess

Analyst review of the named target: a scan, a site walk, or a restore test. We validate what matters and discard noise before it reaches your inbox.

3

Report

Prioritized findings, evidence, and recommended next steps — written for operators and for the people who approve the work.

4

Consult

We walk the report with you, help sequence remediation, and retest when you want confirmation the fix held.

Engagement terms

What we will and will not do

Most organizations hesitate for the same reasons. These are the terms we work under so a review does not become a risk of its own.

Written authorization only

We test only the hosts, applications, and accounts you authorize in writing. We do not scan neighbouring systems, staff personal devices, or third-party services you do not control.

Production stays available

Assessments and scans are scheduled with you. Destructive or high-impact tests are off by default. If a check could affect availability, we say so before it runs.

Findings stay with you

Reports are confidential to the named client. We do not publish client names, scores, or findings. We will sign an NDA when your counsel requires it.

A scan is not an assessment

The free website scan is a public-surface check. It is useful. It is not a substitute for a scoped assessment. Paid work includes analyst review and a written report you can stand behind.

Quoted after scope — not a retainer trap

You receive a written scope and fee before we start. There is no requirement to buy hosting, cameras, tools, or a monthly package to get the report. Follow-on work is optional.

We do not over-claim

If a finding is unconfirmed, we mark it that way. We do not promise that every vulnerability has been found. The report states method, coverage, and limits so you can brief a board or an insurer honestly.

The firm

Independent review. Canadian delivery.

We work with professional services firms, yards, and growing companies that need a defensible answer about their internet-facing systems, their property, and their backups, without staffing a security department.

Reports are written so a technical lead can act and a director can brief. The report is not contingent on buying hosting, cameras, software, or a retainer from us or from an affiliated company.

  • Based in St. Albert, Alberta — engagements delivered across Canada
  • Findings treated as confidential client material
  • Named analyst on every paid engagement
About the firm
1–4 weeks

Typical assessment window, including the written report

One day

Usual response to new inquiries during business hours

No account

Public website scan — no login and no mailing-list signup

NDA-ready

We will execute your confidentiality agreement before work begins

Request a written scope

Tell us the website, the property, or the backup. We will reply with what we would review, how long it takes, and a fee before any work starts.