Crux Platform Pricing

Whether you are a bootstrapping startup or just closed a venture capital round, there is a Crux Security Platform tier that will work for you.

Complete

$500/month

✓ Unlimited users

✓ 14+ Security Policies

✓ Security Training

✓ Task Management

Complete+

$1,000/month

Everything in Complete
+

✓ Network Scans

✓ Vendor Tracker

✓ Risk Register

✓ User Audit

Assisted

$2,500/month

Everything in Startup +

✓ Network Scans

✓ Vendor Tracker

✓ Risk Register

✓ User Audit

Assisted+

$3,500/month

Everything in Startup +

✓ Network Scans

✓ Vendor Tracker

✓ Risk Register

✓ User Audit

Enterprise

$5,000/month

Everything in Startup +

✓ Network Scans

✓ Vendor Tracker

✓ Risk Register

✓ User Audit

Choosing the right plan

Startup

With Startup, you get the foundation for what you need to run a security program. Startup includes security policies, procedures, training, task management and dashboards to track your cybersecurity program’s progress.

Startup is great for companies on a budget and want to get started with a security program in a structured way that will grow with them.

Complete

The Complete tier includes everything from the startup tier, plus automated tools like network scanning, user audits, risk management, and vendor tracking.

Complete is perfect for companies that are dedicated to the on-going process of periodic security reviews with the help of automation and tools.

Virtual CISO

In addition to the three platform tiers, Crux also offers Virtual CISO Consulting Services. In this engagement, we designate a member of our team to act as your CISO.

They participate in budgeting, hiring, tool selection, executive management reporting, and every other aspect of running a security program. The Virtual CISO gives you access to experienced leaders at a fraction of the cost of a full time CISO.

Assisted

In the Assisted tier, we offer a team to work with your organization to implement a security program. Our team includes a project manager and technical experts to answer questions.

Assisted is best for companies that need to go faster, handle many customer questionnaires, expect to do an audit in the near future, or just want help!

Compare Plans

CompleteComplete PlusAssistedAssisted PlusAssisted Premium
Crux Security Platform access
Security program task tracking
Policy & process templates
Training videos (Security Awareness, Policy Overview, OWASP Top 10)
Vendor Management portal access
Vendor Management support
Risk Register tool access
Risk Register support
Quarterly external vuln scans (up to 50 domains / IPs)
Program review meetingsN/AN/AN/A
Biweekly security program review meetings
Shared Slack channel
Shared document drive
Policy Review$3,775$3,775$3,775
Annual Incident Response Table Top exercise$5,000$5,000$5,000
Customer questionnaire support (up to 6/yr)$5,000$5,000$5,000
Annual Risk Assessment$16,500$16,500$16,500$16,500
Annual internal controls review, interview-based (SOC 2, NIST, ISO; deeper scope quoted separately)$21,500+$21,500+$21,500+$21,500+
MCP Server Pen Test$8,500$8,500$8,500$8,500$8,500
Consulting Hourly Retainer$500/hr$400/hr$350/hr$350/hr$300/hr
Simulated Phishing Attacks (O365 or Google Workspace)$1/user/mo$1/user/mo$1/user/mo$1/user/mo$1/user/mo
Discount on Network and Application Pen Tests5%5%10%15%20%

Compare Plans

CompleteComplete PlusAssistedAssisted PlusAssisted Premium
Crux Security Platform access
Security program task tracking
Policy & process templates
Training videos (Security Awareness, Policy Overview, OWASP Top 10)
Vendor Management portal access
Vendor Management support
Risk Register tool access
Risk Register support
Quarterly external vuln scans (up to 50 domains / IPs)
Program review meetingsN/AN/AN/A
Biweekly security program review meetings
Shared Slack channel
Shared document drive
Policy ReviewAdd OnAdd OnAdd On
Annual Incident Response Table Top exerciseAdd OnAdd OnAdd On
Customer questionnaire support (up to 6/yr)Add OnAdd OnAdd On
Annual Risk AssessmentAdd OnAdd OnAdd OnAdd On
Annual internal controls review, interview-based (SOC 2, NIST, ISO; deeper scope quoted separately)Add OnAdd OnAdd OnAdd On
MCP Server Pen TestAdd OnAdd OnAdd OnAdd OnAdd On
Consulting Hourly RetainerAdd OnAdd OnAdd OnAdd OnAdd On
Simulated Phishing Attacks (O365 or Google Workspace)Add OnAdd OnAdd OnAdd OnAdd On
Discount on Network and Application Pen Tests5%5%10%15%20%

Ready to get started?

Build a comprehensive security program using our proven model.