Pricing

Tell us about your org.
We'll build the number.

Enter your organization's size below and every managed service configures itself automatically. Adjust anything you want. Copy the summary and email it to us, we'll respond within two business days.

Quote Builder

Build your custom quote.

Start with your organization's size, every managed service will auto-configure. Adjust any detail, then copy the email summary to send to info@bytetempest.com.

Step 1 Tell us about your organization Services below auto-configure, you can adjust everything
Managed Detection & Response (MDR)
24/7 SOC-backed endpoint monitoring & active threat response
-
Every endpoint and server monitored around the clock by ByteTempest and a 24/7 Security Operations Center. When a threat is detected, we respond. Satisfies CMMC SI.3.218 and CA.2.157 continuous monitoring requirements. Includes deployment, management, monthly evidence reports, and CMMC documentation.
Volume pricing: first 60 endpoints at $30/ep · next 90 at $25/ep · 151+ at $20/ep. No minimum, install fee covers onboarding.
Identity Threat Detection & Response (ITDR)
Continuous M365 identity monitoring & account compromise defense
-
Continuous monitoring of your Microsoft 365 environment covering email-based attacks, OAuth abuse, unauthorized app consent, and account compromise. The most common initial access vector for DIB contractors. All licensed M365 identities monitored continuously, with managed response when threats are confirmed.
Volume pricing: first 60 identities at $30/identity · next 90 at $25 · 151+ at $20. No minimum, install fee covers onboarding.
Security Awareness Training (SAT)
Managed security awareness training · quarterly phishing simulations included
-
Automated security awareness training and quarterly phishing simulations, managed entirely by ByteTempest. Training assignments, click-rate tracking, completion reporting, and compliance documentation included. Satisfies CMMC AT.2.056 and HIPAA 45 CFR §164.308(a)(5). Zero internal IT overhead.
$18/user/mo. No minimum. Includes quarterly phishing simulations at all tiers.
Virtual CISO (vCISO) Retainer
Fractional security leadership, configure your deliverables
-
Senior cybersecurity leadership on a monthly retainer, without the full-time cost. Select the deliverables you need. Pricing scales with scope. Every engagement includes a monthly strategy session and access to your vCISO by phone and email between sessions.
Base retainer $3,000/mo covers strategy session + email/phone access. Add deliverables above to build your engagement.
Incident Response Retainer
Pre-paid IR with guaranteed SLA, configure your coverage
-
Pre-paid incident response puts ByteTempest on your team before you need us. Retainer clients go to the front of the line. Unused hours roll forward quarterly. If an incident exceeds retainer hours, overages bill at the retainer rate.
Base rate depends on SLA + hours selected. Unused hours roll forward within the quarter.
CMMC Readiness Retainer
Ongoing compliance management, configure your deliverables
-
CMMC is not a one-time event. The readiness retainer keeps your posture current between C3PAO assessments, managing your POA&M, updating documentation as your environment changes, and keeping your SPRS score accurate. Select the deliverables you need.
Base retainer $2,500/mo covers POA&M management + monthly status report.
CMMC Project Work
Gap assessment, SSP, pen test, policy suite & more
-
One-time project work covering the full CMMC readiness lifecycle: initial gap assessment, documentation, architecture, and testing. All deliverables are formatted for C3PAO assessment.
Compliance Services
HIPAA · PCI DSS · NIST CSF · Virginia CDPA, project & retainer
-
ByteTempest provides compliance consulting for healthcare, payment card, and data privacy frameworks, preparing your organization for audits and ongoing regulatory obligations. Note: ByteTempest is not a QSA (PCI) or C3PAO (CMMC). We prepare you for third-party assessments but do not conduct the formal certification audits.
HIPAA, Health Insurance Portability & Accountability Act
PCI DSS, Payment Card Industry Data Security Standard
NIST CSF, Cybersecurity Framework
Virginia CDPA, Consumer Data Protection Act
Compliance Maintenance Retainer
Cloud Security Consulting
Azure, M365 GCC/GCC High, AWS GovCloud, project-based
-
Cloud security assessments and architecture for any organization moving workloads to the cloud. Deep familiarity with Azure, M365 security controls, Conditional Access, Entra ID, and the Shared Responsibility Model as it applies to CMMC, HIPAA, and PCI DSS.
TempestShield, CMMC Compliance Platform
Automated evidence collection, live SPRS scoring, M365 integrations
Coming soon

TempestShield is in development. The platform will automate CMMC evidence collection, maintain a live SPRS score, generate SSPs and POA&Ms, and integrate directly with your Microsoft 365 and Azure environment via Graph API. Early access clients receive founding member pricing locked for life.

Learn more about TempestShield →
Contract term & savings

All managed services have a 12-month minimum. Discounts apply to recurring monthly fees only.

Your estimate
Select services on the left to build your estimate.
Onboarding & deployment
Monthly recurring
-
One-time fees
-

Send to info@bytetempest.com, 2 business day response.
Why no form? No tracking?