Pricing · Scoped to the review, not to a list

What an engagement costs depends on what the review finds.

We do not publish a rate card, and the reason is not coyness. Every engagement begins with a due diligence review of your current posture, and what that review finds decides the scope: which frameworks are in play, how many systems are in scope, whether you are preparing for a first certification or maintaining one, and how much of the work your own team will carry. A price quoted before that review would be a guess. A price quoted after it is a commitment we can hold.

Three ways to engage

Assessment
Organisations establishing where they stand

The entry point. You run a curated self-certified assessment in your portal and receive a structured report: what is in place, what is missing, and what to address first. Most organisations start here because it converts an uneasy feeling into a documented position.

  • Portal access for your organisation
  • Curated assessments across hygiene, privacy and certification readiness
  • A structured report per assessment, with a maturity view by domain
  • A prioritised remediation order, not an undifferentiated list
  • Your results retained in your portal for comparison over time
Priced per organisation, by the number of assessments in scope.
Discuss this track →
Platform
Organisations running a certification or a control programme

Access to the SecureEdge Advisory products that carry the work between assessments: evidence collection, control libraries, credit across frameworks, vendor assurance and risk registers. Products are provisioned to your organisation individually, so you take only what the programme needs.

  • Individual product provisioning to your organisation
  • A control library mapped across the frameworks in your scope
  • Evidence collected once and reused where the mapping supports it
  • An audit trail written as work happens, not reconstructed afterwards
  • Your assessment history carried forward into the programme
Priced per product, per organisation, by scope and duration.
Discuss this track →
Strategic advisory
Organisations that need the role, not another tool

The CIO and CISO roles delivered as strategic leadership, accountable to your board. This is the engagement that decides what the programme should be, then leads it. It begins with the due diligence review, and what follows is scoped to what that review finds.

  • A due diligence review of your technology and security posture
  • Board-level reporting, in the language a board actually uses
  • Ownership of the certification or compliance roadmap
  • Escalation path for incidents and regulatory deadlines
  • The Assessment and Platform tracks included within the engagement
Priced per engagement, by seniority, cadence and duration.
Discuss this track →

In every engagement

A named accountable person
You deal with a person who carries the engagement, not a queue.
Your data stays yours
You may export your assessment results and evidence at any point, and you may ask us to delete your organisation's data. The Data Processing Agreement sets out how.
Hosted in Frankfurt
Application and database are hosted in the European Union, under the terms set out in our sub-processor register.
No lock-in through obscurity
Control mappings, evidence and reports are exportable in open formats. Leaving should cost you effort, not your history.

How a price is arrived at

1
Request access
You create a company profile. We confirm who you are and what you are trying to achieve.
2
Establish the position
You run an assessment in your portal, or we run the due diligence review with you. Either way the scope stops being a guess.
3
Receive a scoped proposal
A written proposal against what the review found, with the track, the duration and the price stated.
4
Begin
Products are provisioned to your organisation and the work starts against an agreed plan.
Questions before you commit?

The questions we are asked most often, on scope, data handling, exit and what happens after an assessment, are answered in full.

Read the questions →