ESRM Program · People Cluster
Threat Management
Find out who might mean you harm, and decide what to do before they act.
$2,500 fixed-fee assessment 3–4 weeks Credited toward the vCSO program
Led by Don Oxman, CPP, CISSP, CISM. Licensed by Texas DPS. In business since 2013.
Most companies notice threats but never assess them.
Threat management is one of thirteen domains in our Enterprise Security Risk Management (ESRM) program, and part of the People cluster with Workplace Violence Prevention and Travel Risk. It deals with specific threats: a former client posting about your CEO by name, a departing sales manager copying your customer list, a protest planned outside your Fort Worth office.
Most companies handle threats one at a time, as they show up. An odd email goes to IT, a hostile voicemail goes to the owner, and a worrying post gets screenshotted and passed around. Each person makes a judgment call alone, nobody connects the pieces, and nobody decides whether this calls for the police, a lawyer, or simply keeping watch. We give you one way to report, assess, and escalate threats, and we run it with you.
What can go wrong without a process
Persons of concern
A former employee, customer, or acquaintance fixates on someone in your company. The behavior builds slowly, and each incident looks too small to act on by itself.
Executive exposure
Home addresses, family details, and daily routines of owners and executives are often easy to find online, which makes them easier to target, harass, or impersonate.
Online threats
Threats sent by email or posted on social media and review sites need someone to judge whether they are venting or a real warning, and to preserve the evidence.
Insider threats
A trusted employee or contractor with access to customer lists, pricing, or systems decides to take what they know to a competitor or use it against you.
Protests & activism
A controversial project, a labor dispute, or a post that goes viral can bring protesters to your property or a coordinated campaign against your staff.
The wrong call
Overreacting can bring legal claims or damage trust, and underreacting can get someone hurt. A documented process makes your decision defensible later.
Five questions for leadership
- If someone threatened your CEO tonight, who would decide what happens next?
- Do employees know where to report a threat they saw online or heard in person?
- Could a stranger find your owner’s home address online in under ten minutes?
- When a key employee leaves on bad terms, does anyone check what data or access they kept?
- Do you keep a record of past threats, so a pattern would actually get noticed?
If you answered “no” or “not sure” to any of these, that is where we would start. Most of these gaps cost little to fix before an incident and a great deal to fix after one.
How an Engagement Works
Every ESRM domain starts with the same fixed-fee assessment. If you decide to continue, we credit the fee toward the program, and threat management becomes part of your vCSO engagement alongside whichever other domains you need.
Threat Management Assessment
- Interviews with leadership, HR, legal counsel, IT, and the executive assistants who often see threats first.
- Structured review: a 15-question risk profile, a 25-point practices checklist, and a maturity score from 1 (Initial) to 5 (Optimized).
- Threat inventory: past incidents, current persons of concern, executive online exposure, and how reports flow today.
- Gap analysis against recognized practice and your own incident history.
- Written report and prioritized roadmap, walked through with your leadership team. The report is yours whether or not you continue.
The fee is credited in full toward the program if you start within 90 days.
The vCSO / ESRM Program
- Assess (Q1): we start from your assessment findings.
- Build (Q2): a written threat management process, reporting channels, escalation criteria, a small threat assessment team, and case records.
- Team training: we coach your threat assessment team through realistic cases using a structured behavioral approach.
- Outside partners: we help you line up legal counsel, law enforcement contacts, and licensed investigators before a case needs them.
- Operate (Q3+): we stay on as the named owner, review open cases with your team, recheck executive exposure, and report to leadership or your board.
Month to month. Cancel with 30 days’ notice. About the vCSO program →
Case & Exposure Services
- Threat assessment of a specific person or situation of concern.
- Executive exposure review: what is public about leaders and family.
- Doxxing response: removal requests and steps to limit further exposure.
- Case management plan, coordinated with your counsel and local police.
Why Total 360
Physical and digital, one advisor
Threats arrive at the front door and in the inbox. We assess both, so a hostile email and a stranger in the parking lot get looked at as one case.
Calm, documented judgment
When a threat comes in, you want someone who has handled them before. We help you respond in proportion and keep a record that holds up later.
Experienced leadership
Led by Don Oxman: M.S. in Security Management, CPP, CISSP, CISM. U.S. Army and AT&T background. In business since 2013 and licensed by Texas DPS.
Common questions
What does a threat management assessment cost?
$2,500, as a fixed fee. It usually takes three to four weeks from kickoff to the readout. If you start the vCSO program within 90 days, the full fee is credited toward it.
What do we get at the end of the assessment?
A written report with your maturity score from 1 (Initial) to 5 (Optimized), the gaps we found against recognized practice and your own incident history, and a prioritized roadmap. We walk your leadership team through it, and the report is yours whether or not you continue.
Do we have to sign up for the full program?
No. The assessment stands on its own. If you continue, threat management runs inside the vCSO program at $2,500 to $7,500 a month depending on scope. It is month to month, and you can cancel with 30 days’ notice.
Can we buy case & exposure services without the program?
Yes. They are available to any client. Billed per case, quoted in advance.
Will you replace the people and providers we already use?
No. We work alongside your IT provider, attorney, insurer, and other advisors. We set the standard, help them meet it, and check that the work gets done.
Start with a 30-minute Risk Discussion
No deck and no sales pitch. Tell us about the threats and concerns you’ve dealt with, including the ones that seemed minor. We’ll give you an honest read on the gaps and send a scoped proposal within five business days.
Schedule a Risk Discussion Or call 817-677-0515 · info@total360security.com