

Virtual CISO
subscription plans
Our fractional CISO service will ensure your company's security
Scroll down to explore subscription plans

Basic
Dedicated personal security expert
Security status overview, assessments (DORA, MiCA, NIS2, HIPAA, etc.), and reporting
Security awareness training and testing
Development of custom policies and governance
Cybersecurity tools and solutions monitoring (MSSP)
For companies with
basic cybersecurity needs
Dedicated personal security expert
A dedicated person and team of cybersecurity experts — not AI and not just computer software.
Security status overview, assessments, and reporting
We conduct compliance audits, review and evaluate security controls, gather evidence of what is currently in place, identify what is fully implemented, partially implemented, or missing, and create a detailed implementation and recommendations plan. The security status is reported to management regularly.
Security awareness training and testing
We deliver cybersecurity awareness training to employees via video conference. Sessions include Q&A, and a test is given afterwards to measure understanding. We also provide training PDF material.
Development of custom policies and governance
We prepare all security-related policies, procedures, incident response plans, etc. These can be provided in Lithuanian or English. We also assist with the implementation and integration of the processes.
Cybersecurity tools and solutions monitoring (MSSP)
We monitor your existing security tools daily (e.g., antivirus software) and provide reports to your internal teams, open tickets, and take over monitoring tasks. If you do not yet have security tools in place, we partner with many well-known security solution providers and can help you select and deploy the right tools for your needs.

Standard
Everything in the Basic plan
Security incident and vulnerability response
Security incident, disaster recovery, and business continuity plan testing
Security risk management, tracking and reporting
Third-party and supply chain security management
For companies with
regulatory compliance needs
Everything in the Basic plan
All services and responsibilities from the Basic plan.
Security incident and vulnerability response
In the event of a security incident or discovered vulnerabilities, we support your internal teams and employees in resolving and containing them. When required, we cooperate with regulatory authorities and provide official reports.
Security incident, disaster recovery, and business continuity plan testing
We regularly test your security incident response, disaster recovery, and business continuity plans to ensure they are effective. Our experts simulate realistic scenarios, evaluate response times and decision-making, identify gaps, and provide clear recommendations for improvement.
Security risk management, tracking, and reporting
We create a cybersecurity risk register based on comprehensive risk assessment methodologies, evaluate and track risks, define mitigation measures, assess residual risks, and help reduce and manage the overall risk level.
Third-party and supply chain security management
We maintain a register of third parties, evaluate their risks, and review third-party agreements to assess security posture. We also define and provide security requirements to your vendors and partners.

Premium
Everything in the Basic and Standard plans
Company representation in external events and for authorities
24/7 direct access to CISO and security experts
On-site presence and global traveling on demand
All other custom inquiries and services that your business needs
For companies that want
executive security management
Everything in the Basic plan
All services and responsibilities from the Basic plan.
Security incident and vulnerability response
In the event of a security incident or discovered vulnerabilities, we support your internal teams and employees in resolving and containing them. When required, we cooperate with regulatory authorities and provide official reports.
Security incident, disaster recovery, and business continuity plan testing
We regularly test your security incident response, disaster recovery, and business continuity plans to ensure they are effective. Our experts simulate realistic scenarios, evaluate response times and decision-making, identify gaps, and provide clear recommendations for improvement.
Security risk management, tracking, and reporting
We create a cybersecurity risk register based on comprehensive risk assessment methodologies, evaluate and track risks, define mitigation measures, assess residual risks, and help reduce and manage the overall risk level.
Third-party and supply chain security management
We maintain a register of third parties, evaluate their risks, and review third-party agreements to assess security posture. We also define and provide security requirements to your vendors and partners.
Frequently asked questions
What is included in ACyber’s Virtual CISO plans? Plans cover security assessments, policy development, incident response, awareness training, compliance with NIS2, DORA, and ISO 27001, and much more.
Which Virtual CISO plan should I choose? If your company only needs regular cybersecurity assessments and policy support, the Basic plan is ideal. For organizations with regulatory or compliance needs like NIS2, DORA, or ISO 27001, choose the Standard plan — it adds risk management, incident response, and supply-chain security. The Premium plan provides full executive-level leadership, 24/7 support, and on-site CISO representation for enterprises.
How much does a Virtual CISO service cost? Our pricing is flexible and based on company size and regulatory complexity; however, prices start from a few thousand euros per month, on a monthly subscription.





.jpg)

