Pricing

Cybersecurity compliance,
start to finish.

Select what you need and get a quote within 24 hours.

See what is available
What is available

Pick what you need.

  • Three meetings: kickoff, information review, result delivery
  • Automated collection across your estate, read-only
  • Findings weighted against your business profile
  • Ranked gap list with recommended actions
  • Business + IT model, ranked gap list
  • Risk register and policy library
  • Framework mapping (NIS2, ISO 27001, CIS, DORA, GDPR, TISAX)
  • Evidence engine and audit-ready reports
  • Threat detection (SIEM + EDR, always-on)
  • Exposure management (cloud posture, vulnerabilities, patches)
  • Alerts to the person and channel you pick
  • Resilience (backup + BCP/DRP)
  • Start: 8 hours a month, a steady baseline with periodic reviews
  • Grow: 16 hours a month, monthly steering of an active programme
  • Mature: 32 hours a month, a full vCISO function with board reporting
  • Governance, ownership and the core policy suite
  • Risk methodology set up with your team
  • Certification scope, evidence and audit preparation

We connect to your estate read-only. Your data stays in Europe, on EU-owned infrastructure.

How pricing works

Inputs that shape your quote

No hidden multipliers and no per-seat mathematics.

  • Employee band
  • Enabled modules
  • Advisory days (if required)

Annual contracts, monthly billing.

One yearly commitment, paid month by month. You always know what you pay this month and across the year.

A written offer within 24 hours.

You hear the exact numbers on the call itself. The written offer follows within 24 hours.

Already running a tool you trust?

Keep the SIEM, EDR, IAM, backup, or training vendor you would rather not displace. We can integrate it into the evidence engine, so the work it already does counts. Custom integrations are scoped and quoted per request.

FAQ

Pricing questions.

What is in each product?

Risk and Compliance is the base: model your business, get the ranked gap list, hold the risks, policies and evidence in one place. Security Operations adds the technical tooling: threat detection and exposure management. The Security Audit is a one-off audit of your systems and posture, reviewed by a vCISO. vCISO packages and setup engagements add security leadership on top.

Can we add Security Operations later?

Yes, that is the intended path. Start with Risk and Compliance, see your gap list, and switch the tooling on when it calls for it. No deployment work on your side: the tooling is already in the platform.

How does billing work?

Annual contracts, billed monthly, sized by employee band. You pay for the modules you switch on, all on one invoice, and you hear the exact numbers on the first call with the written offer following within 24 hours.

Do you charge per seat?

No. You pay by employee band, not per user, so the price does not change every time the team does.

Not sure where to start?