Everything in this plan.
- Everything in Foundation
- Reviews of new vendors and third parties as you take them on, with a yearly refresh
- A quarterly board or leadership update with the metrics and decisions that matter
- Governance for how your team adopts and uses AI, with an approved-tools inventory
- One scheduled, scoped penetration-test milestone each year, with one retest of remediated findings; additional tests are separate scope
- Cyber-insurance evidence kept ready for renewal
The outcomes that matter.
- A quarterly leadership and board narrative backed by evidence
- A handle on the risk your vendors and third parties introduce
- Clear rules for AI use before it becomes a liability
- Annual testing evidence, documented limitations, and prioritized remediation
Who it’s for.
- Companies closing larger deals that come with security scrutiny
- Teams onboarding vendors or reporting to a board or investors
- Organizations adopting AI tools and needing to govern their use
When you are pursuing a formal compliance framework and want testing and exercises on a schedule, step up to Leadership.
