Skip to content
CyberAutopsyCYBERSECURITY · RISK · TECHNOLOGY
SUBSCRIPTION PLANS

Simple plans. Everything you need. Nothing you don’t.

All plans include multi-factor authentication, encrypted data, unlimited framework support (NIST, CMMC, FedRAMP, ISO 27001, SOC 2, HIPAA, and custom), monthly billing, and cancellation from your account at any time. Card details are handled by Stripe — never stored on our servers.

Starter

For a single organization standing up its first cybersecurity governance program.

$299
USD / month
Clients
1
Users
5
Assessments
4
  • 1 client organization
  • Up to 5 named users
  • Cybersecurity risk assessments
  • Risk register + risk modeling
  • Security control mapping
  • POA&M and remediation tracking
  • Policy and procedure management
  • Standard reporting dashboards
  • Framework support: NIST 800-171, CMMC L1 / L2, SOC 2, HIPAA
  • Email support
MOST POPULAR

Professional

For consultancies, MSSPs, and multi-entity organizations managing several assessments in parallel.

$799
USD / month
Clients
5
Users
25
Assessments
Unlimited
  • Up to 5 client organizations
  • Up to 25 named users
  • Everything in Starter, plus:
  • Multi-client dashboards and switching
  • Assessment preparation workflows
  • Executive briefing & board-ready PDF exports
  • C3PAO assessment packet generation
  • Custom control frameworks
  • Framework support: all of Starter + FedRAMP, FISMA, NIST 800-53, ISO 27001, Zero Trust
  • Priority email + chat support

Enterprise

For federal agencies, primes, and enterprises requiring dedicated support, custom SLAs, and API-level integration.

Custom
contact sales
Clients
Unlimited
Users
Unlimited
Assessments
Unlimited
  • Unlimited client organizations
  • Unlimited users with SSO
  • Everything in Professional, plus:
  • Dedicated Compliance Surgeon on retainer
  • Custom framework onboarding
  • API access for integrations (SIEM / ticketing / IAM)
  • Custom SLA and named support contact
  • Onboarding and quarterly business reviews
  • Optional on-premise or FedRAMP Moderate deployment
FEATURE COMPARISON

Every capability, side-by-side.

CapabilityStarterProfessionalEnterprise
Cybersecurity risk assessments
GRC workflows
Risk registers + risk modeling
Security controls + framework mapping
Policy and procedure management
Evidence and document management
Compliance tracking
POA&M and remediation management
Pre-assessment readiness checklists
Reporting + executive dashboards
Multi-client dashboards
Custom control frameworks
API access
Priority support

Not seeing what you need? Talk to us about a custom Enterprise scope.