Stacy leads Pronoetic's direction and client relationships, keeping the work focused on outcomes executives can act on. Her background in education and technology shapes how Pronoetic turns security complexity into plain, decision-ready language for leadership.
About Pronoetic
Security leadership with forethought built in.
Pronoetic is a CISSP/CISO-led security advisory for organizations that need senior security judgment without the enterprise apparatus. We run security programs the way they should be run: ahead of the trouble, in plain language, with evidence.
01The name
Pronoetic, from the Greek pronoētikos: given to foresight, exercising forethought.
The name is the practice. Most security pain is not exotic. It is a renewal nobody prepared for, a vendor nobody reviewed, a plan nobody tested, evidence nobody kept. Forethought is the cheapest control there is, and it is the one we sell.
02How we work
Five principles we will not trade away.
-
Foresight over fear
The threat environment is real, and we will say so plainly. But fear is not a plan. We acknowledge the adversary, then move straight to priorities, readiness, and evidence.
-
Evidence over assertion
If a control matters, there is an artifact. If there is no artifact, it is not done. We hold our own work to the same standard we ask of vendors and auditees.
-
Priorities over noise
A program that treats everything as urgent protects nothing. We say what matters first, in writing, and we stand behind the ordering.
-
Empower the internal leader
Your IT director runs point. Our job is to make that person stronger: senior backup in the room, clearer priorities, and decisions that hold up when leadership asks why.
-
Calm is a capability
Composure under pressure is a practiced skill. We bring it to planning, to reporting, and especially to the bad days.
03Who you work with
The people you actually work with.
No account-management layer, no junior team learning on your environment. You work directly with the two co-founders, one of whom holds the CISSP that anchors the CISO-led promise.
Jonathan carries the CISSP and the CISO-level practice behind every assessment, vendor review, and program decision. He pairs deep security credentials with project and service-management discipline and executive-leadership training from Cornell and SUNY.
We built Pronoetic for small and mid-market organizations on purpose. The pressures are enterprise-grade: regulators, insurers, customers, and boards do not scale their questions down. The staffing rarely is. And because clarity is a principle, we will say it plainly: we are not a SOC, not MDR, and not outsourced IT. Here is the full boundary.
Next step
Judge us in one conversation.
Thirty minutes. Bring your hardest current security question. You will leave with a useful answer either way.