Praeven pricing

Know the cost. See what you get.

Start with practical policies, train your team, or build a broader security program. Choose the level of support that fits your business.

Policy kits

Policies your business can put to work.

Choose editable templates or a Praeven-reviewed package tailored to your organization.

Security Policy Starter Kit

$299one-time purchase

  • Five editable policies: acceptable use, BYOD and remote work, AI use, access management, and incident reporting
  • DOCX and PDF files, plus rollout and acknowledgment worksheets
  • Internal use by one organization; customize with your own branding

Private download after confirmed payment. Tailoring and implementation are separate.

Buy the $299 Starter Kit

Praeven-Reviewed Policy Kit

$999one-time purchase

  • Everything in the starter kit
  • Organization questionnaire and Praeven review of the five policies
  • One consolidated revision round and an implementation handoff checklist

First draft targeted within seven business days after Praeven accepts complete intake and confirms work has started. Broader security assessment and implementation are separate.

Buy the $999 Reviewed Kit

Briefings & workshops

Bring practical security skills to your team.

Standard sessions use an existing Praeven program with audience-specific examples and limited tailoring.

Everyday Cyber Defense

$750remote briefing · $1,000 local

  • Up to 60 minutes, including Q&A
  • One preparation call and an employee takeaway PDF
  • Recognize suspicious requests, verify identities, and report concerns

Advanced Security & Counterintelligence

$1,500remote briefing

  • Up to 90 minutes, including Q&A
  • Technical scenarios covering elicitation, impersonation, trust, and access
  • Practical verification and reporting checklist

Interactive Security Workshop

$1,500remote workshop

  • Up to two hours for up to 25 participants
  • Guided exercises and discussion
  • Action worksheet for applying the lessons

Incident Tabletop

$2,500per exercise

  • Preparation and a two-hour remote exercise for up to eight participants
  • Facilitated decisions around an incident scenario
  • Written findings and prioritized follow-up actions

An exercise for your team; live incident response is a separate engagement.

Dates are confirmed before payment. Travel, substantial custom content, and recording or rebroadcast rights are quoted separately. Community and educational programs can be scoped around audience and budget.

Annual security awareness training

One program for your workforce.

Annual organization pricing includes the 11-module program, new-hire onboarding access, completion records, and an annual content refresh.

Up to 25 employees

$1,500per year

Up to 50 employees

$2,500per year

Up to 100 employees

$4,000per year

Recording and LMS preparation are in progress. Enrollment and delivery dates will be confirmed before payment. Organizations with more than 100 employees receive a scoped quote.

Explore the training program →

Security advisory

Build a program. Keep it moving.

Fixed projects and monthly advisory plans are scoped around one business unit, including practical AI use governance where it fits. We confirm assets, responsibilities, and delivery before work begins.

Security Baseline

$2,500fixed project

  • Up to three stakeholder interviews and review of up to ten artifacts
  • Current-state review and focused risk register
  • Prioritized improvement roadmap

Security Foundations

$5,000fixed project

  • Everything in the Security Baseline
  • Five tailored policies and one consolidated revision round
  • Approval, employee rollout, and implementation handoff plan

Policy Development

$2,500fixed project

  • Five policies developed around your workflows
  • Policy owners, approval steps, and review dates
  • One consolidated revision round and handoff

For organizations needing deeper policy development without a baseline assessment.

Managed External Exposure Review

$750per month · $500 setup

  • Up to five authorized public assets
  • Monthly external scan, analyst review, and prioritized report
  • 45-minute review call, targeted follow-up scan, and up to one business-hours advisory hour

A recurring external review, not a penetration test or 24/7 monitoring.

Ongoing Security Advisory

$1,500per month · up to 4 advisory hours

  • Up to 10 authorized public assets with monthly external review and reporting
  • Security leadership, risk, policy, and roadmap working sessions
  • Remediation tracking and coordination with your IT team or service provider
  • AI tool, vendor, and data-use governance guidance as needed

Business-hours advisory. Hands-on implementation and incident response are scoped separately.

Expanded Security Advisory

$3,000per month · up to 10 advisory hours

  • Up to 25 authorized public assets with monthly external review and executive reporting
  • Security leadership support, coordination, and policy maintenance
  • Quarterly cloud configuration and AI governance review

Business-hours advisory. Hours and response expectations are agreed before starting.

Hourly Advisory

$225per hour

  • Focused security guidance and planning
  • Two-hour minimum for standalone engagements
  • Additional work approved before it begins

PrismVector & external exposure

Understand your exposure.

Explore PrismVector alpha access or a Public Exposure Assessment using open-source intelligence (OSINT). Assessment scope and authorization are agreed before work begins.

PrismVector Alpha Trial

$499per month

  • Paid alpha access to autonomous Active Directory exposure validation
  • Installation guidance and an agreed evaluation environment
  • Evidence review and a channel for testing feedback

Alpha software is evolving. Environment limits, trial duration, support, and any AI-provider costs are confirmed before billing.

Public Exposure Assessment (OSINT)

From $2,000per assessment

  • Review of your organization’s public domains, brand presence, and externally visible information
  • Identification of exposed business information and opportunities for impersonation or social engineering
  • Source-linked findings, prioritized recommendations, and a results walkthrough

External, publicly accessible sources only. No internal access, active vulnerability scanning, exploitation, credential testing, or contact with employees. Final price reflects the agreed number of brands, domains, and research depth.

Community Cybersecurity Readiness Review

A practical starting point for local utilities.

No cost for eligible local organizations.

Praeven offers a limited number of guided readiness reviews for small local utilities and essential community organizations. We’ll discuss your current practices and provide a short, prioritized action plan with resources your team can use. No purchase required.

We are starting with two review appointments per month. Tell us about your organization, location, and needs so we can confirm eligibility and availability.

What the review includes

  • One 45–60-minute guided discussion
  • Questions about account protection, vendor access, backups, incident contacts, and staff reporting
  • A one-page summary with three priority actions and relevant free resources

Questions draw on selected CISA Cybersecurity Performance Goals. Findings reflect reported practices; this review does not verify controls or certify compliance. It involves no scanning, system access, or operational changes.

This is an independent Praeven service, not a CISA assessment or a government-endorsed program. Drinking-water and wastewater utilities can also request a free assessment through EPA.

Before you get started.

What changes the price?

Additional environments, larger teams, custom content, travel, or work beyond the listed deliverables. Any change is priced and agreed before the work starts.

How will purchasing work?

Self-service kits will be available to download after purchase. Reviewed policies begin with a questionnaire. Live services and alpha trials require availability and scope confirmation before billing.