# Private Equity Portfolio Cyber Oversight Program

> Scoped per engagement · Advisory / vCISO · https://cisomarketplace.services/services/pe-portfolio-cyber-oversight-program

Sponsors carry cyber risk across every platform and add-on they own, usually with no consistent view of it. This program gives the fund a portfolio CISO: a common baseline assessment for each company, quarterly scorecards for operating partners and LPs, pre-close cyber diligence on new deals, 100-day plans after close and incident escalation support. Priced per portfolio after scoping — the number of companies, their size and the diligence cadence drive it.

## In scope

- Common cyber baseline for every portfolio company
- Quarterly portfolio scorecards and board reporting
- Pre-close cyber due diligence on new deals and add-ons
- Post-close 100-day security plans
- Incident escalation and insurer coordination

## Deliverables

- Portfolio cyber risk dashboard
- Per-company baseline reports and roadmaps
- Diligence reports per transaction
- Quarterly operating-partner and LP briefing

## Tiers

### Essential Portfolio Oversight: scoped

Up to 5 portfolio companies: annual baselines, semi-annual scorecards and diligence on demand

### Advanced Portfolio Oversight: scoped

Up to 15 companies: quarterly scorecards, 100-day plans for new acquisitions and a named portfolio CISO

### Enterprise Portfolio Oversight: scoped

Large or multi-fund portfolios: embedded team, continuous monitoring, incident response coordination and LP reporting

## Terms

Starting price shown is the lowest published tier. A written proposal fixes scope, tier and price before anything is signed. Timeline is set in the SOW.

Scope this engagement: https://cisomarketplace.services/scope?service=pe-portfolio-cyber-oversight-program
