Pricing
Choose the scope you need.
The same core tools in every plan. Choose how many frameworks you need; GDPR is included.
Compare plan features ↓1 framework + GDPR
Startups
Prepare for your first audit while your team keeps building.
Get Startups quote ≥The core compliance workflow
- ✓Automated evidence and risk tracking
- ✓Policies, approvals and audit exports
- ✓A roadmap from setup to audit preparation
3 frameworks + GDPR
Growth
Meet more customer requirements using the work you already do.
Get Growth quote ≥The same tools, across more frameworks
- ✓Track requirements side by side
- ✓Reuse evidence where controls overlap
- ✓Keep owners and progress in one place
All supported frameworks
Enterprise
Coordinate a broader compliance program without a framework cap.
Get Enterprise quote ≥The full workflow, with rollout planning
- ✓All available framework catalogs
- ✓An implementation plan for your scope
- ✓Support arrangements agreed with your team
In every plan: evidence collection, policies, risk treatment, a roadmap and audit exports.
See the product →See what’s included.
One connected workflow.
Room for more requirements.
Compare features by plan.| Feature | Startups | Growth | Enterprise |
|---|
| Framework coverage |
|---|
| Framework allowance | 1 + GDPR | 3 + GDPR | All supported frameworks |
|---|
| Security operations |
|---|
| Cloud, identity and code integrations | ✓ | ✓ | ✓ |
|---|
| Asset and vendor inventory | ✓ | ✓ | ✓ |
|---|
| Risk scoring and treatment tracking | ✓ | ✓ | ✓ |
|---|
| Automated evidence collection | ✓ | ✓ | ✓ |
|---|
| Agent access over MCP | ✓ | ✓ | ✓ |
|---|
| Audit preparation |
|---|
| Control tracking and guided roadmap | ✓ | ✓ | ✓ |
|---|
| Policies, approvals and sign-off | ✓ | ✓ | ✓ |
|---|
| Cross-framework evidence reuse | Where mapped | Where mapped | Where mapped |
|---|
| Supplier reviews and evidence | ✓ | ✓ | ✓ |
|---|
| Audit packages and exports | ✓ | ✓ | ✓ |
|---|
| Trust center and document sharing | ✓ | ✓ | ✓ |
|---|
| Getting started |
|---|
| Founder-led onboarding | ✓ | ✓ | ✓ |
|---|
| Implementation and support planning | Kickoff | Kickoff | Scoped plan |
|---|
Evidence reuse depends on available control mappings. Your quote confirms connected systems, team access and support scope.
The frameworks, as published
- DORARegulation (EU) 2022/2554 (DORA), official text
- GDPRRegulation (EU) 2016/679 (GDPR), official text
- ISO 27001ISO/IEC 27001:2022, catalogue entry
- NIS2Directive (EU) 2022/2555 (NIS2), official text
- CRARegulation (EU) 2024/2847 (Cyber Resilience Act), official text
- ISO 42001ISO/IEC 42001:2023, AI management system requirements
- SOC 2AICPA SOC suite of services, official overview
- BSI C5BSI Cloud Computing Compliance Criteria Catalogue (C5)
- ISO 27701ISO/IEC 27701:2025, catalogue entry
- PCI DSSPCI DSS at the PCI Security Standards Council
- TISAXTISAX at the ENX Association
- NIST CSFNIST Cybersecurity Framework, programme home
Pricing questions.
What changes between the plans?
The number of frameworks you can run, plus implementation and support planning for Enterprise. Every plan includes the core workflow: connected inventory, risk treatment, policies, evidence, a roadmap and audit exports.
Does GDPR count toward the framework limit?
No. Choose one supported framework with Startups or three with Growth; GDPR is included separately in both. Enterprise has no cap on available frameworks. Information-only guides are not framework catalogs you can adopt.
Explore framework coverage →Can we reuse evidence across frameworks?
Yes. Where control mappings exist, Kaamos can identify evidence that also supports another adopted framework. Your team reviews suggested links. Coverage depends on the framework pair, and a shared document does not automatically satisfy every requirement.
What is included in our quote?
We agree your frameworks, connected systems, team access and onboarding needs before you start. The quote confirms the price and support scope. External auditors, certification and assessment fees are separate from the Kaamos software.
Discuss your scope →Comparing us with someone else?
Each page sets Kaamos against one platform on framework coverage, evidence, risk workflows and package scope, sourced from that vendor’s own published pages.