Compliance as a Service Packaging and Pricing August 2023 Stephen Robert Lobo Lawson Intro • • • • • What is CaaS? Who needs CaaS? How do I package a CaaS solution? How do I explain CaaS? What do I charge for CaaS? What is CaaS? • Compliance as a Service is an offering where MSPs deliver a range of compliance-related functions and expertise to businesses. • One of the primary aspects of CaaS is helping businesses adhere to regulatory requirements. • Various regulations require at least a risk assessment and custom business and cyber policies. Who needs CaaS? • MSPs typically target companies with between 20 and 500 employees • That ignores 98% of SMBs • There are over 33 Million SMBs in the US. • 27 Million have no Employees • 5.4 Million have less than 20 Employees • 650,000 are between 20 and 500 Employees FTC Safeguard Rule PCI DSS 13 examples of the kinds of entities that are financial institutions If you are a merchant who accepts or processes payment cards, you must comply with the PCI DSS. • Retailer that extends credit • Automobile dealership • Personal property or real estate appraiser • Career counselor specializing in financial organizations • Business that prints and sell checks for consumers • Business that wires money to and from consumers • Check cashing business • Accountant or tax preparation service • Travel agency in connection with financial services • Real estate settlement services • Mortgage broker • Investment advisory company and a credit counseling service • Company acting as a finder for transactions How do I package a CaaS solution? • What am I trying to accomplish? • New CaaS offering complementing my existing MSP services • Can be offered as a stand-alone service • Specifically does not include IT support • Labor is administrative vs. technical How do I package a CaaS solution? How do I explain CaaS? • CaaS is a complementary service to your existing MSP business. • Managing Risk vs Maintaining an IT infrastructure • Custom Business and Cybersecurity policies • Technology components needed • Many instances will be co-managed with existing IT presence What do I charge for CaaS? • There two ways to approach CaaS. • Be the provider of a compliance portal where your clients can do the items needed to be complaint at their own pace and paired with the technology components of their choosing • White Glove approach where you will guide your clients through the aspects of their compliance requirements. This will include utilizing your existing stack of vetted MSP tools to address the risk and regulations. • What do I charge for CaaS? MSRP Client Pricing Guide Before we move along to the pricing calculator • FTC Safeguards Rule and PCI DSS One Pagers • Will be available in the portal under: Resources -> Webinars CyberGuard360 Pricing Calculator! Partner Referral Offering When someone signs up and sits for their onboarding session you get $50 Amazon Gift Card! If they stay a partner for 4 months, you get your choice of: $250 Amazon Gift Card OR Apple iPad Ask Me Anything! AMA@CyberGuard360.com