Shield Engagements
Specialist work, scoped and quoted on its own - never a hidden line inside a subscription.
Specialist work deserves its own scope and its own price - that's how you know what you're getting.
Some security work can't honestly be sold as a subscription bullet: it consumes senior specialist hours against a defined objective. Shield Engagements are exactly that work - scoped with you, priced as a fixed fee, and delivered as a project with named deliverables. When a provider tells you penetration testing is "included," ask how many hours of a tester's time that actually funds. We'd rather show you the scope.
Scope
Fixed fee
Deliver
Results
The engagement catalog
Every engagement below is scoped against your environment and quoted as a fixed fee. None of them is included in a Shield subscription tier, and none is funded out of a per-unit coverage rate.
External, internal, and web application testing - each scoped and priced per engagement, with a findings report and remediation guidance.
Full adversary simulation against your people, processes, and technology, measured against realistic objectives.
A structured on-site review of your security posture, from physical controls to network architecture.
Executive security leadership in fixed monthly hour blocks - strategy, board reporting, and program direction without a full-time hire.
Designated Security Officer and Privacy Officer services delivered as ongoing monthly engagements for covered entities.
Fixed-fee readiness engagements at three scoped levels, preparing defense contractors for CMMC assessment.
Retained, with a monthly retainer whose hours credit against response time, or hourly when you need us without a retainer.
Independent owner's representative during breach recovery - retained by you, accountable only to you.
Every engagement is quoted as a fixed fee against a written scope before work begins - no hourly meters running in the background, and scope changes are handled as written change orders. Engagements are always priced separately from your Shield subscription, so both numbers stay honest.
CMMC Shield Ready
- CMMC Phase 2 begins 10 November 2026.
- C3PAO certification becomes the standard route for Level 2.
- Preparation typically runs twelve months or more.
- The assessor pool is small.
- CMMC Shield Ready is scoped against the same 110 NIST SP 800-171 requirements the assessor will use.
Required CMMC status comes from your solicitation provision, not from SOClogix.
Ready for a SOC behind your business?
Contact SOClogix for a scoped Shield quotation. Every quotation is built from a scoped count of your real environment.
We will get back to you within one business day.