Pricing

Pricing built around your scope

Every engagement is scoped to your size, frameworks and timeline — so we price it manually rather than with a misleading sticker number. Pick a solution, share a few details, and we’ll email tailored pricing within one business day.

How pricing works
01

Scope

Tell us your size, the frameworks in play and your timeline. Two minutes on a card, or the full Scope Questionnaire if you'd rather be precise.

02

Quote

A specialist prices the engagement by hand against that scope, and emails it to you within one business day. No sticker numbers, no configurator.

03

Decide

No payment, no obligation, no automated sales sequence. If the number works, we book a call to confirm scope before anything starts.

Application, Cloud & Supply Chain Security

Supply Chain Security

Know what is in your software and vendor chain, and manage the risk you inherit.

Application, Cloud & Supply Chain Security

AppSec

Secure your applications through the full development lifecycle.

CISO Advisory

CISO Office as a Service

Strategic security leadership without a full-time hire — a team behind the CISO, not one person.

CISO Advisory

vCISO Partner Program

White-labelled delivery behind your vCISO practice — scale without increasing headcount.

GRC & Compliance

GDPR

End-to-end GDPR compliance for EU operations — from assessment to ongoing management.

GRC & Compliance

HIPAA

HIPAA compliance to protect patient data, meet requirements and avoid costly penalties.

Application, Cloud & Supply Chain Security

VAPT

Vulnerability assessment & penetration testing for web apps, networks and cloud.

CISO Advisory

CISO-as-a-Service

A fractional CISO for strategy, board reporting and governance — without the full-time cost.

GRC & Compliance

Compliance-as-a-Service

Ongoing managed compliance — stay audit-ready year-round on a retainer.

Application, Cloud & Supply Chain Security

Cloud Security Audit

Security reviews for AWS, Azure and GCP — find misconfigurations and enforce best practices.

GRC & Compliance

ISO 27701

A privacy information management system (PIMS) extending your ISO 27001 ISMS.

AI Security & Identity

ISO 42001

Certification for the global AI management standard — govern AI responsibly and demonstrably.

GRC & Compliance

NIST CSF 2.0

Map your security program to NIST CSF 2.0 — Govern, Identify, Protect, Detect, Respond, Recover.

Application, Cloud & Supply Chain Security

ISO 27017

Cloud-specific security controls to meet enterprise cloud security requirements.

Application, Cloud & Supply Chain Security

ISO 27018

Protect PII in public cloud and prove cloud privacy compliance to enterprise customers.

GRC & Compliance

Internal Audit

Independent internal audits for risk management, control effectiveness and governance.

GRC & Compliance

Security Policy

Custom security policies and procedures, professionally crafted to pass audits.

AI Security & Identity

AI Agents & Agentic Workflows

Custom AI agents that automate repetitive security work inside your policies and guardrails.

Not sure of your scope yet?

Complete our Scope Questionnaire — processing purposes, data inventory, processors, cross-border transfers and SDF status. We review it and book a call to confirm scope before quoting.

Open the Scope Questionnaire →