PRICING  ·  Transparent by Design

Security That Fits Your Budget, Not Ours.

We believe pricing should be transparent. Every retainer is a fixed monthly commitment, so you always know what you are paying and exactly what you are getting for it. No surprise invoices at the end of a project.

These are indicative starting prices. Your actual investment depends on the size of your business, the complexity of your environment, and the scope of services required. The free consultation gives you a precise proposal before you commit to anything.
SAR AED USD
01 Services

Individual Service Retainers

Security Leadership

vCISO

SAR 3,500 / month
Billed monthly. Starting price for businesses up to 50 employees.

Strategic security leadership on a flexible retainer. Your Virtual CISO attends key leadership meetings, manages your risk register, oversees compliance, and reports to your board.

  • Security strategy and annual roadmap
  • Risk register management and quarterly review
  • Policy framework design and maintenance
  • Monthly leadership sync and board reporting
  • Up to 20 hours of active engagement per month
Get a Proposal →
Data Privacy

vDPO

SAR 2,800 / month
Starting price for PDPL or UAE FDPL single-jurisdiction compliance.

Full Data Protection Officer function on retainer. We manage your compliance programme across PDPL, UAE FDPL, and related frameworks, and serve as your regulatory contact point.

  • Initial data mapping and gap analysis
  • Privacy notice design and review
  • Data subject rights procedure and management
  • Breach notification procedure and support
  • Up to 16 hours of active engagement per month
Get a Proposal →
Vulnerability Management

VMaaS

SAR 2,200 / month
Starting price for external attack surface up to 50 assets.

Continuous vulnerability scanning, prioritisation, and verified remediation. We identify what is exposed, tell you what matters most, and confirm it is actually fixed.

  • Continuous external attack surface scanning
  • Internal network and endpoint scanning
  • Risk-based prioritisation with threat intel
  • Verified remediation before closure
  • Monthly executive and technical report
Get a Proposal →
02 Bundles

Combined Service Packages

Most businesses benefit from combining two or more services. When you bundle, the services work together more effectively and your overall investment is lower than subscribing to each individually.

Bundle 01

Compliance Ready

vCISOvDPO

Strategic security leadership combined with full data protection compliance management. Designed for businesses facing SAMA, PDPL, UAE FDPL, or ISO 27001 requirements that need governance and privacy management running in parallel.

✦ Save up to 15% versus individual retainers
Get a Bundle Proposal →
Bundle 02

Security Operations

vCISOVMaaS

Strategic security leadership with continuous technical monitoring. Your vCISO sets direction and makes risk decisions, while VMaaS provides the ongoing technical visibility to keep vulnerability exposure genuinely under control.

✦ Save up to 15% versus individual retainers
Get a Bundle Proposal →
Bundle 03

Full Defence Programme

vCISOvDPOVMaaS

The complete Code Defence programme. Strategic leadership, regulatory compliance, and continuous technical monitoring working together as a single integrated security programme.

✦ Save up to 25% versus individual retainers
Get a Bundle Proposal →
Bundle 04

Audit Readiness Sprint

One-Time Engagement

A structured ninety-day programme for businesses facing an upcoming regulatory audit with limited preparation time. We run a full gap assessment, close critical gaps, and brief your team. Covers SAMA, NCA, ISO 27001, and PDPL examinations.

✦ Fixed-scope, fixed-price engagement
Discuss Your Audit →
03 Comparison

What Each Service Covers

Not sure which services your business needs? This table maps core deliverables to the services that include them.

DeliverablevCISOvDPOVMaaS
Security strategy and roadmap
Risk register managementData risks
Board and executive reportingOn request
PDPL / UAE FDPL complianceOversight
Data mapping and ROPA
Continuous vulnerability scanning
Verified remediation tracking
SAMA and NCA audit supportData domainsTech evidence
ISO 27001 preparationPrivacy controlsVuln controls
04 Questions

Pricing Questions Answered

These are genuine starting prices for businesses at the smaller end of the range we serve. Your actual investment depends on employee count, environment complexity, and how many regulatory frameworks apply. The free consultation gives you a specific, transparent proposal before you commit to anything. We do not use low starting prices to attract interest and then inflate the final number.

Our standard retainers run on a three-month minimum with monthly billing thereafter. We ask for three months because meaningful security work requires time to assess, build, and verify. After that, retainers continue monthly and can be adjusted or ended with thirty days notice.

Each retainer includes a defined number of active engagement hours per month. If a particular month requires significantly more, such as during an audit or a significant incident, we discuss and scope that separately with you rather than silently absorbing or overbilling it.

Yes. Many clients start with the service that addresses their most pressing need, such as vCISO or vDPO, and move into a bundle once the relationship develops.

Get a Proposal Scoped to Your Business

The first conversation is free, it is genuinely useful, and there is no obligation attached to it.