Pricing

Flat-fee pricing built for lean teams.

No hourly billing. No retainer contracts. No scope creep invoices two weeks after delivery. You know the number before we start, and we deliver within two weeks of scope agreement.

Starter

Single domain, light footprint
$1,950

Flat fee per engagement

The right starting point for a single-domain business or small nonprofit with a lean public presence. We review your primary domain, email authentication configuration, TLS posture, and publicly visible services.

One primary domain in scope
Email authentication review (SPF, DKIM, DMARC)
TLS and certificate posture check
Exposed services and open port review
Prioritized findings report in plain English
Live walkthrough with your team

Public Sector

Schools, districts, and municipalities
$6,500

Flat fee per engagement

Structured for K-12 districts, municipal offices, and regional utilities with multiple public-facing domains, legacy systems, and public records considerations. Covers up to six domains with extended subdomain review and public repository search.

Up to six primary domains in scope
Extended subdomain enumeration
Email authentication review across all domains
TLS, certificate, and cipher suite review
Public repository and breach-intelligence review
Findings mapped to remediation priority for IT staff
Separate summary for leadership and board
Live walkthrough with IT team and administration

Expanded

Larger footprint, custom scope
$8,500+

Starting price, scoped per engagement

For organizations with larger public footprints, multiple distinct business units, or specific compliance documentation requirements. Scope, timeline, and deliverable format are confirmed in writing before work begins.

More than six domains or complex footprint
All Standard and Public Sector deliverables
Scope and pricing confirmed in writing before work begins
Custom deliverable format available on request

Optional Add-ons

The following items can be added to any tier. All add-on pricing is confirmed in writing before work begins.

Add-on Description Starting At
Additional Domain Add a primary domain beyond the tier's included count, with subdomain and service review. $650
Executive Summary A separate one- to two-page non-technical summary written for board members, elected officials, or executive leadership. $350
Remediation Re-check A targeted follow-up review of previously identified findings after your team applies fixes, to confirm resolution. $950
Insurance Readiness Letter A plain-English letter summarizing external posture for submission to your cyber insurance underwriter or broker during renewal. $500
Rush Delivery Delivery of findings report within five business days of scope agreement, rather than the standard two-week window. $750
Annual Repeat Review Schedule a repeat review twelve months after initial delivery to check posture changes and confirm remediation has held. 10% off base tier

What is always included, regardless of tier

Every engagement includes a written scope agreement before work begins, a prioritized findings report with evidence, plain-English risk explanations, specific remediation steps for your IT staff, and a live walkthrough with your team. Findings are point-in-time and reflect external posture at the date of assessment.

We never attempt to access your systems, exploit vulnerabilities, or install software on your end. Written authorization is required before any review activity begins.

Ready to get a scoped quote? Start here