Pricing

Simple pricing for
stress-free compliance.

ZeroRisk Vendor Management keeps your vendors monitored, certified, and audit-ready. Always cost-effective. Always Done-for-You. From $79/month.

Tier 01

Starter

Proof of compliance, simplified for lean teams.

$79per month, billed annually *
Vendor capacity
5
vendors under continuous review
GDPR / Privacy
  • Done-for-You vendor vetting & continuous monitoring
  • Compliance mapping for GDPR
  • Audit-ready records
Tier 02

Team

Confidence across frameworks, built for expansion.

$239per month, billed annually *
Vendor capacity
25
vendors under continuous review
+ ISO 27001, SOC 2
  • All Starter features
  • Expanded coverage with ISO 27001 + SOC 2
  • Priority email support
Tier 04

Enterprise

Global compliance delivered, managed, and certified for you.

$1,199per month, billed annually *
Vendor capacity
200
vendors under continuous review
+ CRA
  • All Business features
  • CRA coverage for critical infrastructure
  • Dedicated account manager

* Add-ons: $15/vendor/month. 20% discount for annual prepay. All plans include the full Done-for-You service and continuous monitoring.

What's included

What you get, by tier.

The work is identical across tiers — capacity, frameworks, and operator support scale.

Starter
Team
Business
Enterprise
Vendors under continuous review
5
25
100
200
Frameworks in scope
GDPR
+ ISO 27001, SOC 2
+ NIS2, DORA
+ CRA
Quarterly re-vet
Continuous breach & sanctions monitoring
Vendor questionnaire chase & reply
Support SLA
1 business day
4 hours
1 hour
24/7
Human-signed verdict
Sub-processor lineage
SAML SSO, SCIM, audit logs
Custom MSA & framework scope
Dedicated review team
On-premise / sovereign deployment

Need bespoke scope or sovereign deployment?

Banks, regulated infrastructure, public-sector and listed companies often need custom framework combinations or contractual structures. Tell us the scope — we'll come back with a written proposal in 5 business days.

  • Custom framework combinations (FFIEC, HIPAA, TPRM-PCI)
  • Sovereign / on-premise deployment
  • Dedicated review team
  • Fully bespoke MSA terms
Pricing FAQ

Six common questions.

What's actually included in “done for you”?

A human reviewer runs the full six-point review on every vendor: documentation pull, control mapping, evidence verification, sub-processor lineage, breach & sanctions check, and a written risk write-up. We chase the vendor, fill in the gaps, and deliver a board-ready report. You spend zero hours on it.

Can we move up tiers mid-contract?

Yes, any time. The new vendor capacity and operator coverage attach from the date of the addendum. Capacity is pro-rated for the remainder of the year. Stepping down happens at renewal.

What's the annual savings?

Annual is 20% cheaper than the equivalent monthly run-rate, paid up front. Most teams pick annual for the budget predictability and the priority on operator scheduling.

How fast is the first vendor report?

10 business days from kickoff for a standard SaaS vendor that responds to documentation requests on time. Complex vendors with a thick sub-processor chain can run 14 days. We'll tell you up front if we expect delays.

Can we trial ZeroRisk before committing annual?

Yes — we run a 30-day pilot on three vendors of your choice, monthly billing, no commitment. If you switch to annual within 60 days of the pilot, the pilot fee is credited.