About
Public-sector security, by someone who works in the public sector.
Cascadia Cyber Consulting is led by Maurice Rodriguez. Fifteen-plus years inside Pacific Northwest IT, the last five focused on security.
Maurice Rodriguez
Principal, Cascadia Cyber Consulting
"After 15 years inside Pacific Northwest public-sector IT, I started Cascadia to help fill the security gaps I keep seeing — and to be in service of the communities I'm part of."
I've spent my career inside the kind of organizations Cascadia exists to serve — county and municipal IT shops where one or two engineers cover everything from desktop support to incident response, and where the security work has to fit between everything else.
That experience shaped how I think about security for the public sector. The threats are the same ones every organization faces, but the resources aren't. A small county IT team can't run the security program a Fortune 500 runs, and pretending otherwise just produces shelfware. What works is security that's scaled to the team, the budget, and the regulatory environment — and built so the people running it day-to-day can actually maintain it after the consultant leaves.
Cascadia is how I bring that work to organizations beyond my own. The engagements are project-shaped, scoped, and finite. The deliverables are written, practical, and aligned to the frameworks state auditors actually check against — NIST CSF 2.0, CIS Controls v8, NIST SP 800-53 R5, CJIS, HIPAA where applicable.
Background
- → 15+ years of IT experience across Pacific Northwest organizations
- → 5+ years in dedicated security engineering roles
- → Active responsibility for a 1,000+ endpoint county environment spanning law enforcement, courts, public health, and administrative departments
- → Hybrid Active Directory / Entra ID identity, EDR/XDR, vulnerability management, DNS-layer threat protection, and SIEM operations
Certifications & frameworks
- → CompTIA Security+
- → CompTIA CySA+
- → Working knowledge of NIST CSF 2.0, NIST SP 800-53 R5, NIST SP 800-171 R3, CIS Controls v8
- → Compliance: CJIS, HIPAA, CMMC 2.0, ISO/IEC 27001
Looking for the right fit for your organization?
Tell me about your environment and what you're working toward. I respond to project inquiries within 1–2 business days.