Pricing · All tiers cover all six frameworks

One Snapshot to know where you stand. Five subscription tiers to keep you there.

Every tier covers all six frameworks — SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST CSF, GDPR. What changes across tiers is cadence (monthly to continuous), entity count (one to unlimited), and concierge level (email-only to two named contacts with a dedicated incident-response runbook). Pick the row that fits your scope and pace. Cancel anytime in your Stripe billing portal.

Monthly subscription · Annual = 10x monthly (one month free) · Fair-use terms
One-time · No subscription

Multi-Framework Readiness Snapshot™

Where do you actually stand on SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST CSF, and GDPR — today, from your live cloud telemetry? Ten-question intake plus up to five optional read-only connectors (AWS, Azure, Microsoft 365, Okta, CrowdStrike). Per-framework gap matrix PDF in your inbox within hours. $1,995 credits 100% to month-1 of any tier within 30 days.

Run my Snapshot — $1,995 →
$1,995
one-time · delivered within hours

Aegis AI™ vCISO subscription tiers

Five tiers. Same six-framework scope. Different cadence, entity coverage, and concierge level. The $1,995 Snapshot credits to month 1 of any tier within 30 days. Annual prepay is 10× monthly — one month free.

Sentinel
Single entity. Monthly cycle. Email support.
$4,500/mo
Annual $45,000 · cancel anytime
  • All six frameworks every cycle
  • Monthly validation cycle
  • One legal entity
  • Email support, business hours
  • Standard audit-defense exhibits
Subscribe Monthly → Annual $45,000 →
Guardian
Bi-weekly cycle. Email + chat. Quarterly board narrative.
$8,500/mo
Annual $85,000 · cancel anytime
  • All six frameworks every cycle
  • Bi-weekly validation cycle
  • One legal entity
  • Email + chat support
  • Quarterly board narrative
Subscribe Monthly → Annual $85,000 →
Fortress
Continuous (daily) cycle. Up to 10 entities. Concierge SLA.
$33,500/mo
Annual $335,000 · cancel anytime
  • All six frameworks continuously
  • Continuous (daily) validation
  • Up to 10 legal entities
  • Concierge SLA, 15-min P0 response
  • Named escalation contact
  • Audit-defense exhibit assembly
  • Quarterly board + audit committee narrative
Subscribe Monthly → Annual $335,000 →
Sovereign
Unlimited entities. M&A-grade. Two named contacts.
$60,000/mo
Annual $600,000 · cancel anytime
  • All six frameworks continuously
  • Continuous validation
  • Unlimited legal entities
  • Dedicated IR runbook
  • Two named contacts, highest priority queue
  • M&A-grade control mapping
  • Board + audit committee + ad-hoc
Subscribe Monthly → Annual $600,000 →

OFAC and Authorized Signatory certification required at checkout. Service is for organizations not subject to U.S. sanctions and signed by an officer authorized to bind the company. Custom MSA, regulated industry overlays (FedRAMP, IL5+, FINRA, HITRUST inheritance), or scopes beyond unlimited: [email protected].

Tier comparison matrix

Feature Sentinel Guardian Vanguard Fortress Sovereign
Price / month$4,500$8,500$17,000$33,500$60,000
Price / year$45,000$85,000$170,000$335,000$600,000
SOC 2
ISO 27001
HIPAA
PCI-DSS v4.0
NIST CSF 2.0
GDPR
Validation cycleMonthlyBi-weeklyWeeklyContinuous (daily)Continuous
Legal entities11Up to 3Up to 10Unlimited
Support channelEmailEmail + chatEmail + chat + Slack ConnectConcierge SLAHighest priority queue
P0 response SLASame business daySame business daySame business day15 minutes15 minutes, named backup
Named contactNamed CSMNamed escalationTwo named contacts
Audit-defense exhibit assemblyStandardStandardEnhanced
Board narrativeQuarterlyMonthlyQuarterly board + audit committeeBoard + audit committee + ad-hoc
M&A-grade control mapping
Dedicated IR runbook
$1,995 Snapshot credit (30 days)

How cancellation works

Subscriptions are monthly (or prepaid annual). Cancel anytime in your Stripe billing portal to stop auto-renewal at the end of the then-current paid month. Access continues through that period. Fees already billed are not refunded. Full details on the cancellation page.

What every tier includes

Aegis AI™ is not an auditor. SOC 2 attestations come from independent CPA firms; ISO 27001 certifications from accredited certification bodies; HIPAA from your designated assessor; PCI Reports on Compliance from independent QSAs. Aegis AI is the readiness software you use before they arrive. How each framework is covered →