Skip to content
CipherOne

For teams that answer to an auditor, a regulator or a board

Managed security, priced in the open

See what it costs before you talk to anyone. Choose a package, tell us how big you are, sign the standard contract and start. Everything after that — cases, reports, meetings and invoices — is in one place.

The four practices

Each one puts what it produces into the same portal, under the same contract.

Managed SOC

Monitoring and triage by our analysts, with cases and escalation you can follow as they happen.

In the portal: your monitored assets and the deployment project.

Threat detection and response

Detection content written against the log sources you actually have, and retuned as they change.

In the portal: your service requests, the incident-response channel and the reports.

Penetration testing

Scoped tests with findings, retests and a report you can hand to an auditor.

In the portal: your engagements and the questions we still need answered.

Governance, risk and compliance

NCA ECC readiness, scored across all 28 subdomains, with the evidence kept current rather than rebuilt before each audit.

In the portal: your assessments and the reports they produce.

Take a whole package, one service on its own, or several together — see what is available.

What you get the day the payment clears

Every buyer gets their orders, their invoices and the status of their projects in the portal. Buy SOC Operations and you also get the case queue below: every case carries the time it is due, and a report records whether it was opened.

Cases

Example of the client case list, with four columns and three cases.
Case Severity Status Response
SOC-1042 Ransomware note found on a file server High Awaiting response Due in 3 hours
SOC-1038 Repeated sign-in failures from one address Medium Escalated Due in 2 days
SOC-1031 Unapproved software on a finance workstation Low Closed Closed

Reports

Monthly SOC report · Shared 09:14 · Viewed 14:22

Meetings

Service review · Thursday 10:00 · Open Teams

The SOC Operations part of the client portal, drawn rather than photographed, with wording taken from it. The cases and times shown are examples.

Packages

See all packages

The catalogue is being prepared

Nothing is published yet. Tell us what you need and we will put a proposal together.

What you will not be asked to do

Buying security services usually starts with a form and ends weeks later with a number. None of those steps exist here, and that is what publishing the list above is for.

Request a quote
The price is on this page, with the total after VAT.
Book a call before you see a number
Tell us your size in a form, and see the price for that size.
Wait for a contract to be drafted
The standard contract is published. Read it before you register.
Chase somebody for what you bought
It is in your portal as soon as the payment clears.

How buying works

Four steps. Nothing here needs a sales call unless you want one.

  1. Choose a package

    Every price on the catalogue is the price you pay. VAT is shown separately, not buried.

  2. Tell us your size

    How many users or endpoints it has to cover. Above the published limit we scope it with you before quoting — that part is not something to guess at.

  3. Register and sign

    A short registration, then the standard contract. Same terms for everyone buying online.

  4. Pay, and it starts

    The service is set up as soon as the payment clears. You will see it in your portal without waiting for anyone to call you back.

Bank transfer takes as long as your bank takes. We confirm receipt and provisioning follows on its own.

Tell us what you are protecting

Tell us what you are protecting and who has to be satisfied — an auditor, a regulator, a board — and we will say which of these fits, or that none of them does.