Request a proposal
Managed Security
MDR EssentialsMDR CompleteSMB Security EssentialSMB Full Stack Managed SecurityContinuous Compliance (Delve)Security Compliance SuiteSMB Premium + Compliance
Programs
Grid CommandMulti-Modal Threat IntelligencePhishing + Awareness TrainingTrust Center ManagedCompliance Audit + Remediation Project
Trust Center
Cybersecurity Trust Center BuildTrust Center Care Plan
Company
Managed PlansFree AssessmentAboutBlogContactRequest a proposal

Trust Center Managed — $1,200/month

Answer the security questionnaire before it is sent

Security questionnaires are a sales tax. Every enterprise prospect sends one, each is slightly different, and each costs an engineer days. A public trust center moves that work upstream: the answers are already published, evidenced and current, so most of the questionnaire is answered before it arrives.

What you get

  • Trust center build and hosting — a public, branded trust center covering your security posture, subprocessors, data handling, availability and compliance status.
  • Content build-out — written from your actual controls and documentation, not a template with your logo dropped on it.
  • Evidence refresh — certificates, reports and policy documents tracked with expiry dates and refreshed before they lapse.
  • Access-gated documents — sensitive artefacts behind a request-and-approve gate with an NDA step, so you control who sees what.
  • Questionnaire response library — a maintained answer bank mapped to common frameworks, so repeat questions are answered once.
  • Monthly maintenance — content updates as controls change, plus a report on who requested what.

One rule we do not bend

A trust center only helps if what it publishes is accurate. Anything we cannot evidence does not get published. If a control is aspirational rather than in place, it is either stated as in-progress with a date, or left out entirely. Publishing a claim you cannot support turns a sales asset into a liability.

What is not included

  • Achieving a certification or audit outcome on your behalf. We publish and maintain what is true; we do not create compliance you do not have.
  • Acting as your auditor or issuing attestation.
  • Penetration testing, scoped separately.
  • Legal review of your published claims — strongly recommended, and yours to arrange.

Your first 30 days

  1. Day 0–3 — kickoff and documentation gather; we take stock of what actually exists.
  2. Day 4–12 — control mapping. Each claim we intend to publish is tied to an evidence artefact and an owner.
  3. Day 13–20 — draft trust center for your review, including the gated document structure. Legal review belongs here.
  4. Day 21–26 — revisions and the first pass of the questionnaire answer library.
  5. Day 27–30 — go live and handover of the request-approval workflow.

Billed monthly. No minimum term. Cancel any time before your next renewal date.