Pricing
Start free. Scale when ready.
No credit card required. Run your first risk assessment today and see what your board has been missing.
Essentials
For teams getting started with risk quantification
Professional
For security teams at regulated enterprises
Enterprise
For large organizations with complex requirements
Common questions
Do I need technical expertise to use Kritis?
No. The assessment uses plain-language questions with context for each. Most CISOs or GRC managers complete it without consulting their teams — though the recommended responder tags help if you want to delegate specific sections.
How is this different from a maturity assessment?
Maturity assessments tell you where you are on a scale. Kritis tells you what that position costs — in probable annual financial loss. A '3 out of 5' means nothing to a board. '$4.2M annualized exposure' drives decisions.
Is the FAIR methodology accepted by regulators?
FAIR is an international standard (Open Group) used by Fortune 500 companies, recommended by NIST, and accepted by major regulatory bodies. It's the most widely adopted framework for cyber risk quantification globally.
Can I try it before committing?
Yes. The Essentials plan is free. Run a full assessment, get a quantified risk posture, and generate a board report — no credit card required.