Essentials
Know your score before carriers scan you
or $1,490/yr (save ~$298)
- External 100-tool scanner
- Monthly Cyber Defense Score™
- Public trust page
- NIST CSF 2.0 mapping
- Cyber insurance readiness report
- Read-only MCP access
Pro
Pass underwriting on the first try
or $3,490/yr (save ~$698)
- Everything in Essentials
- Internal network scanner
- Weekly external scans
- Monthly internal scans
- SOC 2 readiness
- Custom framework mapping
- NIST 800-171, CMMC, FTC, state privacy
- Full MCP toolset (36 tools)
- Questionnaire autoresponder
- Evidence intake & packaging
- Dedicated Cyber Defense Agent assigned to you
MSP Partner: $79/business/mo (25-business minimum). Learn more →
Per-use API: $30/score, $150/scan, $500/SRA. Developer docs →
All plans billed monthly. Annual discounts available. 30-day money-back guarantee.
What Underwriters Scan
The 6 categories that determine approval or denial
Carriers run their own external scan during underwriting. These are the exact controls they check — and what your Cyber Defense Score™ covers.
Email Authentication
SPF, DKIM, DMARC — #1 requirement for BEC prevention. 96% of carriers check this.
MFA Enforcement
Multi-factor authentication is required by virtually every carrier for policy issuance.
Endpoint Protection
EDR/MDR deployment verification — carriers want proof of active endpoint security.
External Attack Surface
Open ports, outdated services, and misconfigurations that carriers flag during underwriting.
Encryption
TLS/SSL, data-at-rest encryption — basic controls that prevent automatic denials.
Vulnerability Exposure
Known CVEs and outdated software that underwriters identify as unacceptable risk.
The Problem
Why businesses get denied
41%
of applications denied on first submission
96%
of carriers require enforced MFA evidence
3/4
carriers run their own external scan before quoting
60%
of denied applicants had fixable issues they didn’t know about
The Cyber Defense Agent approach
Scan before you apply
Run the same 100-tool external scan carriers use. 60 seconds. No installation.
Fix the gaps
Get a prioritized remediation report. Most issues take days to fix, not months.
Apply with evidence
Share your trust page with brokers. Apply from a position of strength, not hope.
Plan Comparison
Which plan is right for your insurance application?
| Feature | Essentials | Pro |
|---|---|---|
| External 100-tool scan | ||
| Cyber Defense Score™ | ||
| Public trust page | ||
| Cyber insurance readiness report | ||
| NIST CSF 2.0 mapping | ||
| Internal network scanner | — | |
| Weekly scans | — | |
| SOC 2 readiness | — | |
| Custom framework mapping | — | |
| Questionnaire autoresponder | — | |
| Evidence intake & packaging | — | |
| Dedicated Cyber Defense Agent assigned to you | — |
FAQ
Frequently asked questions
How does this help me get cyber insurance?
3 of 4 carriers run their own external scan during underwriting. Cyber Defense Agent runs the same scan first, identifies gaps, and gives you a remediation roadmap — so you apply from a position of strength instead of getting denied.
What is the Cyber Defense Score™?
An A–F letter grade plus 0–100 numerical score based on a 100-tool external scan. It maps to the exact controls cyber insurers verify: email authentication, encryption, open ports, security headers, DNS security, and known vulnerabilities.
Can I share my score with my insurance broker?
Yes. Every plan includes a public trust page you can share with brokers, underwriters, and clients. It shows your current score, framework compliance, and last scan date — verifiable evidence, not self-attestation.
What if I fail the scan?
That’s the point — you find out before the carrier does. Your report includes specific remediation steps for every finding. Fix the gaps, rescan, and apply with confidence. Most issues can be resolved in days, not months.
Do you offer refunds?
We offer a 30-day money-back guarantee. If you don’t find value in the scan results and recommendations, we’ll refund your first month.
Is the scan safe? Will it disrupt my systems?
Our scan is external-only and non-intrusive. We check publicly available data — the same view carriers and attackers have. We never access, probe, or log into your systems.
How is this different from a pentest?
A pentest actively exploits vulnerabilities ($10K–$50K+, takes weeks). We passively scan your external attack surface in 60 seconds for a fraction of the cost. Think pre-flight check vs. full aircraft inspection.
What frameworks do you map to?
Essentials maps to NIST CSF 2.0. Pro adds SOC 2, NIST 800-171, CMMC 2.0, FTC Safeguards Rule, CIS Controls, and state privacy frameworks. Custom framework mapping is available on Pro.
Stop getting denied. Start getting covered.
60 seconds. 100 tools. See exactly what carriers see — and fix it before they scan you.