Compliance & Regulations
Risk Management & Incident Response — 14 Fixed-Price Services
Risk assessments, incident response plans, business continuity, vulnerability scanning, SIEM setup. Be prepared before an attack — and respond correctly when it happens.
Risk Analysis & Information … (€449)Risk Assessment & Treatment … (€449)DORA ICT Risk Assessment (€539)Incident Response Plan (€359)Incident Reporting Workflow … (€319)ICT Incident Reporting Workf… (€319)Incident Response Tabletop E… (€449)Business Continuity & Disast… (€449)Digital Resilience Testing S… (€449)Business Continuity & Disast… (€539)Vulnerability Management Pro… (€359)Penetration Test — Web Appli… (€539)Security Awareness Phishing … (€229)Penetration Test — External … (€699)Penetration Test — Internal … (€729)Penetration Test — REST & Gr… (€539)Penetration Test — Mobile Ap… (€729)Secure Coding Training for D… (€449)Security Monitoring Setup (S… (€539)Continuous Monitoring & Aler… (€359)
Risk Assessment
View allRisk registers, treatment plans, information security policies.
Incident Response
View allResponse plans, reporting workflows, 24-hour NIS2 alerts.
Business Continuity
View allBCP/DRP, disaster recovery, digital resilience testing.
Vulnerability Management
View allScanning, penetration testing, phishing simulation.
NIS2CR-NIS2-08
Vulnerability Management Program Setup
€359 5–7 business days
Multi-FrameworkCR-CROSS-02
Penetration Test — Web Application
€539 7–10 business days
Multi-FrameworkCR-CROSS-06
Security Awareness Phishing Simulation
€229 5–7 business days
Multi-FrameworkCR-CROSS-07
Penetration Test — External Infrastructure & Cloud
€699 8 business days
Security Monitoring (SIEM)
View allCentralized logs, anomaly detection, alerting dashboards.
Risk Management & Incident Response — Price List
Not sure which framework applies?
- • EU personal data → GDPR (any company with EU customers)
- • Critical infrastructure → NIS2 (50+ employees or €10M+ revenue in 18 sectors)
- • Enterprise B2B sales → ISO 27001 or SOC 2 (clients ask for proof)
- • Payment processing → PCI DSS (credit card data handling)
- • Financial services → DORA (banks, insurance, fintech)
Frequently Asked Questions
What is a risk assessment and how often should we do one?+
A risk assessment identifies threats to your information assets, evaluates likelihood and impact, and defines treatment plans. ISO 27001, NIS2, and DORA all require at least annual assessments.
What happens if we have a security incident without an incident response plan?+
Under NIS2, you must report significant incidents within 24 hours. Without a plan, you'll miss deadlines, make mistakes, and face larger fines. Our Incident Response Plan (€319) ensures you're prepared.
What is BCP/DRP and why do I need it?+
Business Continuity Plan (BCP) and Disaster Recovery Plan (DRP) ensure your company can operate during and after a crisis. Required by NIS2 Article 21(2)(c) and DORA Article 11.
Do we need vulnerability scanning?+
Yes, if you're under NIS2, ISO 27001, SOC 2, or PCI DSS. Our Vulnerability Scanning Setup (€359) configures automated weekly scans with severity-based alerting and remediation tracking.
What is SIEM and when do I need it?+
Security Information and Event Management (SIEM) centralizes logs and detects anomalies. Required for SOC 2 CC7.2 and NIS2 monitoring requirements. Essential once you have 50+ employees or handle sensitive data.
€5
Not Sure Where to Start?
Our IT Health Check finds every compliance gap in your infrastructure. 1 business day. You get a prioritized list of what to fix.
Need help choosing?
Start with a Multi-Framework Assessment (€639) to get a complete compliance roadmap.
