About TDY IT
TDY comes from the military term Temporary Duty: stepping in with a clear mission, working alongside the people already there, and leaving the organization better prepared to move forward.
TDY IT is a veteran-owned technology consulting company led by Kevin Johnson, CISSP. Three decades of hands-on experience across technology operations, security, infrastructure, payments, compliance, and business systems shape how we approach each environment.
Our purpose is straightforward: help businesses understand what they have, what they depend on, where risk or technical debt has accumulated, and what deserves attention next.
Bring experience into the environment. Build clarity. Leave a practical path forward.
Three decades in IT provides more than technical knowledge. It shows how technology changes over time, how business needs shape decisions, and how temporary solutions can become important parts of daily operations.
That range helps TDY IT look beyond individual products or findings and consider how technology, people, vendors, security, and operations work together.
Unknown systems, dependencies, access, and risks are not signs of failure. They are reasons to ask better questions and build a clearer picture.
Systems and processes evolve under real business constraints. Technical debt becomes a concern when it is no longer visible, understood, owned, or considered in future decisions.
The goal is not to remove every risk. It is to understand the context, potential impact, and available options so the business can respond intentionally.
Internal IT, MSPs, vendors, system owners, and business stakeholders each understand different parts of the environment. TDY IT works with them to bring those perspectives together.
Findings and diagrams should help people operate, plan, communicate, and make decisions after the engagement ends.
TDY IT provides an independent perspective without replacing the people who already manage and support the environment.
We work with leadership, internal IT, MSPs, vendors, application owners, compliance teams, and operational stakeholders to:
The objective is a shared understanding of the environment, not judgment about the people or decisions that shaped it.
TDY IT uses established guidance from organizations and frameworks such as NIST, the PCI Security Standards Council, CIS, HIPAA, GDPR, and other authorities relevant to the business.
Standards provide useful direction, but every organization has different systems, obligations, risks, resources, and operational needs.
We use that guidance to help evaluate the environment and explain available options. Recommendations are shaped by the business context rather than forcing every organization into the same technical model.
Technology environments are rarely understood by one person, team, vendor, document, or tool.
TDY IT helps bring those pieces together so the business can see the environment more clearly, discuss risk in context, and determine what should happen next.