PRICING

Transparent coverage.
Serious security outcomes.

One unified security program designed to replace tool sprawl, reduce operational risk, and scale with your business.

Layer 8 — Management (aka People) — is not a real part of the OSI model, but it should be. It's how we describe the human factors, people, identities, and business processes attackers target every day. Most compromises start with a stolen identity, a weak process, or a simple configuration mistake. Our approach focuses on strengthening the people in the business, and then the technical pieces are straightforward: harden the environment, prevent the compromise, and if something still gets through, detect and contain it before it becomes a business problem.

Free 30 Day Trial

By scheduling a meeting, you agree to the Privacy Policy.

LIMITED-SCOPE ONSITE ENGAGEMENT

Onsite Assessment + Tabletop Simulation

$2,000 to $10,000

Do you wait for a fire to figure out where the exits are?

Most companies do not know where response breaks down until the pressure is real. We come onsite, assess key risks, run a custom tabletop, and show you what needs to be fixed first.

Choose the level of coverage that fits your organization today and scale seamlessly as needs evolve. Each option is designed around clear operating-model accountability — so you always know who owns what.

Core Coverage
IT/OT Cyber Defense & Risk Management

Co-managed IT (MSSP Model)

SecureStep deploys, owns, and manages your security program. Your team retains responsibility for daily IT operations while we handle detection, investigation, and response.
Most Popular
Managed IT/OT & Cyber

End-to-End Managed IT/OT (MSP Model)

SecureStep owns IT/OT and cybersecurity operations end to end — including network changes, change control, user and access management, and Zero Trust — with coverage for all users and assets and unlimited remote Tier 2/3 support included.
Maximum Coverage
Full IT/OT Transformation

MSP + Infrastructure Modernization

Everything in Managed IT/OT & Cyber, plus SecureStep owns infrastructure transformation across all users and assets — upgrading hardware as it reaches renewal and end of life, with dedicated account and engineering capacity.

What's Included

Every capability, quantity limit, and operating-model boundary — compared across all three options.

CapabilityOption 1IT/OT Cyber DefenseOption 2Managed IT/OT & CyberOption 3Full IT/OT Transformation
Security Operations
24/7 security operations center
Endpoint security monitoring
Identity security monitoring
Email security monitoring
SIEM monitoring / log retention5 TB / 1 yr10 TB / 1 yr15 TB / 1 yr
Application control whitelistingUp to 25 high-risk usersAll usersAll users
Browser isolationUp to 25 high-risk usersAll usersAll users
External attack-surface monitoring
DNS filtering
Dark Web Monitoring
Vulnerability & Asset Management
Vulnerability managementUp to 500 assetsAll assetsAll assets — Tenable Nessus Enterprise
Asset discovery and exposure managementUp to 500 assetsAll assetsAll assets
Incident Response
Incident investigation and escalationWithin defined limits
Incident containmentRemote via approved toolsManaged end to endManaged end to end
Incident recovery laborHourly / separate SOWNormal ops included; major incidents separately scopedIncluded within normal ops; major DR separately scoped
Access & Zero Trust
Secure remote accessUp to 50 high-risk usersAll users — implemented & managedAll users — implemented, managed & modernized
Zero Trust infrastructureUp to 50 high-risk usersAll users — implemented & managedAll users — implemented, managed & modernized
Third-party / vendor accessAdvisorySecure access managedFully governed & managed
IT/OT segmentationAssessment & roadmapIncremental; major rebuild SOWDesigned & delivered in scope
IT Management
IT/OT ticketingSecurity tickets onlyAll IT/OT & cyberAll IT, OT, cyber & transformation
Level 2/3 help deskHourlyIncluded — normal opsIncluded — normal ops
Microsoft 365 / Entra ID administrationSecurity advisory onlyManaged, implemented & licensedManaged, implemented & licensed
Microsoft IntuneSeparate SOW / hourlyManaged, implemented & licensedManaged, implemented & licensed
Conditional AccessBaseline then hourlyManaged, implemented & licensedManaged, implemented & licensed
Onboarding / offboarding automationAdvisoryImplemented & managedImplemented & managed
Password manager
Endpoint patchingSecurity oversightManagedManaged
Endpoint lifecycle managementAdvisoryInventory & replacement planningFull planning + defined replacement package
Server administrationMonitoring & security advisoryDay-to-day includedFull operational & lifecycle ownership
Backup administrationSecurity & risk oversightAdministration & recovery coordinationFull administration & recovery coordination
Networking
Firewall managementAssessment & recommendationsDay-to-day managementFull management, replacement & modernization
Switching and wireless managementAssessment & recommendationsDay-to-day managementFull management & modernization
Network performance support
Hardware Included
Business-class laptops
Laptops for full team + spares — buy, configure, license & deploy
Firewall
Firewall per site — buy, configure, license & deploy
Network switches
Switches — buy, configure, license & deploy
Wi-Fi access points
Access points — buy, configure, license & deploy
Governance & Advisory
vCISO support5 hrs / month10 hrs / month20 hrs / month
Additional vCISO / architecturePer hour beyond allowancePer hour beyond allowancePer hour beyond allowance
Security risk registerMaintainedMaintained w/ remediation ownershipMaintained w/ transformation tracking
Security policies and standardsMaintained within advisory hoursImplemented & managedImplemented & managed across IT and OT
Change Control BoardAdvisory within vCISO hoursLed by SecureStep — IT & cyberLed by SecureStep — IT/OT transformation
Security awareness & phishing testing
Quarterly onsite tune-upHours + travel billed separately80 hrs / year (travel billed separately)160 hrs / year (travel billed separately)
IT vendor managementAdvisoryIncludedIncluded
Executive reportingMonthly security reportingIntegrated IT & cybersecurity reportingExecutive IT/OT transformation & risk reporting
One-year IT/OT transformation roadmapAdvisory roadmapOperational improvement roadmapSecureStep accountable for delivery

Build DIY or Leave it to Experts

Most organizations underestimate the cost and complexity of building effective security operations internally.

Typical DIT Tool Stack Costs
  • Security assessment$18,000 - $80,000 yearly
  • Firewall Audit$20,000 - $70,000 yearly
  • SOC 2 Type 2 Audit$40,000 - $100,000 yearly
  • Endpoint protection$9/user/mo
  • Email security$5/user/mo
  • SIEM / logging$10/user/mo
  • Identity tools$5/user/mo
  • Phishing training$4/user/mo
  • Vulnerability management$5/user/mo
  • Darkweb Monitoring$5/user/mo
  • Vulnerability scanner$5/user/mo
  • Patching software$3/user/mo
  • Zero trust broker$7/user/mo
  • Asset management license$5/user/mo
  • Browser isolation license$3/user/mo
  • Secure remote access / VPN license$5/user/mo
  • IT/OT ticketing system$6/user/mo
Operational Reality
  • Number of tools to manage
    DIY: 7+Managed: 1
  • Number of vendors
    DIY: 6+Managed: Us
  • Internal staffing required
    DIY: 2-3 FTEManaged: 0
  • Alert fatigue
    DIY: DailyManaged: Filtered
  • Time to value
    DIY: 6-18 monthsManaged: 30 days
  • Incident ownership
    DIY: YouManaged: Us
  • Pentest/Compliance
    DIY: A lot of hoursManaged: Us and tailored
  • Hardware for sensors
    DIY: ~$10K per siteManaged: Included
  • Firewall updates — architecture & planning time
    DIY: Your team's timeManaged: Planned & documented

[CRITICAL] One incident is all it takes to learn who really owns security.

DIY Simple Cost Calculator

Security that proves value before contracts.

  • See real results in the first 30 days
  • No long-term commitment required
  • Built for modern IT, cloud, and OT environments

By scheduling a meeting, you agree to the Privacy Policy.