About NGC Risk
A guide, not a shield.
The lighthouse sees what others can’t, warns before the rocks, and keeps watch from a fixed vantage point. We do that work for digital risk.

Who we are
A digital risk firm.
NGC Risk puts experienced executives into the CISO, CIO/CTO, and CRO seats that mid-market businesses can’t yet fill full-time. Then we build the risk, resilience, and governance programs underneath them.
We work across the whole of digital risk: cyber, technology, AI, and resilience. Those used to be separate conversations with separate owners. They aren’t anymore. One outage, one vendor, or one AI tool can touch all four, and splitting them up is how accountability gets lost.
Everyone on our bench has sat in the chair, answered to a board, and lived with the program afterward. Our principal has held the CIO and CISO roles at the same time, which is a fast way to learn where technology decisions turn into risk decisions.
What we hold to
Our values

The whole picture
We diagnose what’s actually broken beneath the surface findings.

On watch
Still here long after the deliverable, through renewals, audits, and whatever comes next.

No easy button
Real programs built for how you actually operate, not shortcuts built for the binder.
How we show up
At the table with your leadership.
- Embedded in how you operate, day to day
- Programs sized to your risk appetite and maturity
- Anti-theater, not anti-compliance
- Still on watch after the deliverable ships
Who you’ll work with
The principal leads every engagement.
Dan Gorecki runs every engagement himself. Senior advisors with the same operator background join when the work needs more hands.
Meet the team →Start a conversation
Let’s talk about what’s coming.
Tell us what’s prompting the call: a board question, an AI rollout, an audit finding, or an empty seat. We’ll take it from there.
