baref00t.io

// compliance assessments

Compliance Assessments

Framework-aligned automated assessments — Essential Eight, MCSB, CIS, NIST CSF, CMMC, NIS2, CPS 234, MAS TRM, Cyber Essentials. Each report maps to the framework auditors and regulators expect.

Essential Eight ML1, ML2 & ML3 Assessment

AU
$299 one-off · $149/mo

Assess your compliance with the ACSC Essential Eight Maturity Model. Mandatory for Australian Government entities under the PSPF. Know exactly where you stand before the auditors do.

Cloud Security Benchmark v2 Assessment

Global
$399 one-off · $199/mo

Assess your Azure and Microsoft 365 environment against the Microsoft Cloud Security Benchmark v2 — 14 control domains covering Identity, Network, Data, AI, and DevOps security.

CIS Microsoft 365 Benchmark Assessment

Global
$349 one-off · $179/mo

Assess your Microsoft 365 tenant against the CIS Benchmark — the industry-standard security configuration guide recognised by auditors worldwide.

CPS 234 Information Security Assessment

AU
$599 one-off · $299/mo

Automated and governance-hybrid assessment against APRA's CPS 234 standard. Built for banks, insurers, and super funds that need to demonstrate compliance.

Ransomware Resilience Score

Global
$349 one-off · $179/mo

Cross-cutting assessment of your ransomware defences. One score across identity, backup, endpoint, email, data, network, and detection readiness.

Power Platform Security Assessment

Global
$449 one-off · $229/mo

Assess your Power Platform governance posture. Environment controls, DLP policies, Power Automate security, Power Apps sharing, Power BI governance, and Copilot Studio controls.

NIST Cybersecurity Framework Assessment

US
$349 one-off · $179/mo

Assess your alignment to the NIST CSF 2.0 six functions. The de facto baseline for US federal contractors, critical infrastructure, and cyber-insurance underwriting.

CMMC Level 1 & 2 Readiness Assessment

US
$399 one-off · $199/mo

Prepare for Cybersecurity Maturity Model Certification. Required for all US Department of Defense contractors handling FCI or CUI. CMMC 2.0 final rule effective December 2024.

NIS2 Directive Compliance Assessment

EU
$349 one-off · $179/mo

Assess your compliance with EU NIS2 Directive Article 21 cybersecurity risk-management measures. Mandatory for essential and important entities across the EU since October 2024.

UK Cyber Essentials Readiness Assessment

UK
$299 one-off · $149/mo

Pre-assessment readiness check against the 5 Cyber Essentials technical controls. Required for UK government suppliers and increasingly expected by cyber insurers.

MAS Technology Risk Management Assessment

SG
$399 one-off · $229/mo

Assess your alignment to the Monetary Authority of Singapore Technology Risk Management Guidelines. Required for all MAS-regulated financial institutions.

Looking for a different angle?

Explore baref00t's full catalogue across five tiers — each tier groups assessments by audience or attack surface so you can find the report your stakeholder is actually asking about.