Built for the work,
not the optics.
ciso.diy exists because security teams spend too much time building documentation from scratch — and most of what's available is either a checklist dressed up as a deliverable or a $500/month platform for something that should cost $79 once.
What we're replacing
- ✕ Blank spreadsheets that take 20 hours to build and look amateur when you present them
- ✕ $15 Etsy templates with generic checklists and no formulas, no logic, no output
- ✕ $500–$2K/client/month platforms that are overkill for a solo vCISO or a 20-client book
- ✕ Consulting deliverables you paid $10K for once and can never update yourself
What we deliver
- ✓ Workbooks with real logic — formulas that roll up, dashboards that update, outputs you can share
- ✓ Practitioner-grade depth — the kind of detail that holds up in front of a board, a broker, or an auditor
- ✓ One-time pricing — you own it, you can update it, you don't pay again next month
- ✓ Honest documentation — user guides that tell you the limits, not just the features
How we build
Practitioner-built
Every template comes from someone who has sat in the chair — run the assessment, presented to the board, argued with the underwriter. Not designed by marketers, not generated by AI, not padded to look impressive.
Tangible outputs
The test: can you hand it to someone outside your team and have it mean something? If a template only makes sense to the person who built it, it failed. Everything here produces a deliverable.
Honest about tradeoffs
The vCISO workbook tells you at what client count it breaks down. The Shadow AI workbook tells you the weights are tunable because no two orgs are the same. We'd rather you use the tool correctly than oversell what it does.
Priced for the work, not the market
A $15 Etsy template and a $299 workbook are not the same thing. We price on depth, defensibility, and the hours it replaces — not on what competitors charge.
What's in the catalog
Currently 64 products — every one built to the same standard.
Cyber Insurance Workbook
Everything you need to prepare, apply for, and manage cyber insurance — 8 tabs, 167 live formulas, built for security teams who need to hold their own with brokers and underwriters.
$79.00
View →
Shadow AI Inventory & Risk Scoring Workbook
Discover, inventory, and score every unapproved AI tool in your environment — 10 tabs, 589 formulas, pre-seeded with 15 real-world shadow AI tools and a defensible 10-factor risk model.
From $299.99
View →
vCISO Client-in-a-Box
27 tabs, 1,565 formulas — a complete client management system for solo vCISOs and small teams. NIST CSF 2.0 assessments, risk registers, roadmaps, and a portfolio dashboard for 20 clients. Includes the 584-paragraph Practitioner User Guide.
From $499.99
View →
M&A Cyber Diligence Workbook
The active cyber diligence workbook for M&A deal teams — auto-generated deal recommendations, cost modeling, and deal-term mechanism mapping across a 10-day sprint framework.
From $199.00
View →
VC Cyber Diligence Workbook
Stage-aware VC diligence for Pre-Seed through Series B+ — founder assessment, investment thesis scoring, pipeline tracking, cap table analysis, and IC memo output. 16 tabs built around the question: what would have to go right for 10x?
From $149.00
View →
Tabletop Exercise Pack
10 research-calibrated IR scenarios, a 13-tab program management system, and a 687-paragraph facilitator guide — plus an ecosystem map that turns every buyer into a full IR practice.
From $149.00
View →
2026 CISO Budget Workbook
Input five values on the Assumptions tab — revenue, IT budget, headcount, industry, maturity — and the entire workbook calculates itself. Three budget-sizing methods, 50+ line items, CRQ for boards, and board talking points with your actual numbers.
From $299.00
View →
2026 Ransomware Readiness Workbook
18 tabs of operational crisis preparedness — 80-control readiness assessment, 8 pre-built IR playbook cards with DO NOT lists, ransom decision framework with OFAC gate, and regulatory matrix covering all 2026 mandates.
From $249.00
View →
SOC 2 Readiness Accelerator
20-tab SOC 2 program covering assessment through Type 2 audit — 100+ controls, 35 required policies, 7 pre-populated operational logs, and an executive dashboard with three auto-calculated readiness metrics.
From $399.00
View →
HIPAA Readiness Accelerator
23-tab HIPAA compliance workbook built for the 2026 Final Rule — covers all current safeguards plus the 12 new mandatory requirements, IoMT risk, BAA management, breach notification matrix, and a dedicated 2026 gap analysis tab.
From $499.00
View →
Enterprise Questionnaire Response Kit
14-tab operational efficiency toolkit for responding to security questionnaires — 400+ pre-written answers mapped to CAIQ v4, SIG, VSA, and HECVAT, AI governance supplements, deal pipeline tracking, and a trust portal content planner.
From $299.00
View →
ISO 27001:2022 Readiness Accelerator
20-tab ISMS implementation workbook for ISO 27001:2022 — all 93 Annex A controls across 4 themes, 11 new 2022 controls, Clauses 4–10 ISMS framework, transition gap analysis from 2013, and policy library.
From $449.00
View →
PCI DSS v4.0.1 Readiness Accelerator
12-tab PCI DSS v4.0.1 workbook — all 12 requirement domains, SAQ type selector, 51 future-dated requirements tracker, e-commerce script security controls, and QSA-ready evidence register. Built for the March 2025 mandatory transition.
From $399.00
View →
CMMC 2.0 Readiness Accelerator
12-tab CMMC 2.0 workbook — all 110 NIST 800-171 practices with DoD SPRS weights, auto-calculated SPRS score, Level determination decision tree, SSP builder, POA&M tracker, and C3PAO readiness checklist. Built for the November 2026 Phase 2 deadline.
From $449.00
View →
DORA + NIS2 EU Compliance Workbook
14-tab EU regulatory compliance workbook covering all 5 DORA pillars, NIS2 Article 21 measures, dual framework applicability decision tree, penalty calculator (2% DORA / €10M NIS2), and cross-framework mapping across 17 control domains.
From $449.00
View →
CISO Board Reporting Pack
Everything you need to brief the board on cybersecurity — editable Excel metrics workbook, 25-slide PowerPoint deck template, and a user guide covering what boards actually want to hear and how to answer the questions you will get.
From $299.00
View →
NIST CSF 2.0 Self-Assessment Workbook
14-tab NIST CSF 2.0 workbook — all 106 Subcategories with verbatim NIST.CSWP.29 outcome statements, Current/Target tier dropdowns, Organizational Profile Generator, heatmap, gap analysis pre-seeded with 12 high-gap 2026 scenarios, and crosswalks to SP 800-53r5, SP 800-171r3, CIS Controls v8.1, and ISO 27001:2022.
From $149.00
View →
GDPR & DPIA Compliance Workbook
20-tab GDPR compliance workbook — Controller ROPA, Processor ROPA, DSR log with 30-day SLA tracking, 72-hour breach deadline calculator, TIA template, DPF certification tracker, and DPIA template with WP29 9-factor trigger test. Updated for April 2026 research baseline.
From $449.00
View →
2026 US Privacy Program Workbook
17-tab US state privacy compliance workbook covering the 20-state wave — CCPA/CPRA, MODPA, VCDPA, CPA, and 16 more — with auto-generated obligation matrix, DSR tracker, consent management log, ADMT register, and enforcement reference.
From $299.00
View →
CISO 90-Day Onboarding Workbook
The structured first-90-days playbook for new CISOs — stakeholder mapping, program gap assessment, quick-win tracker, board briefing builder, and 30/60/90-day milestone framework. For FTE CISOs, vCISOs starting new engagements, and interim security leaders.
From $299.00
View →
Incident Response Runbook Library
18 runbooks × 3 formats (54 files) — complete IR runbook library covering every major 2026 threat scenario, from ransomware multi-extortion to vishing to Magecart. ZIP delivery with Word, PDF, and Markdown versions of every runbook.
From $199.00
View →
Cyber Insurance Readiness Checklist
A concise checklist covering the controls underwriters check before quoting — MFA, backups, endpoint, email security, and IR — with a quick self-scoring mechanism to spot coverage red flags before you talk to a broker.
$14.99
View →
SOC 2 Readiness Checklist (Type I & II)
The key controls, evidence items, and policy gaps auditors check at every SOC 2 engagement — organized by Trust Service Criteria with a pre-audit readiness rating.
$14.99
View →
HIPAA Compliance Checklist 2026
Updated for the 2026 Security Rule Final Rule — covers all 12 new mandatory requirements plus the core Administrative, Physical, and Technical safeguards in a single actionable checklist.
$14.99
View →
Ransomware Preparation Checklist
The pre-incident checklist for ransomware preparedness — backup validation, identity hardening, IR contacts, communication templates, and the ransom decision questions to answer before an attack hits.
$14.99
View →
College Cyber Privacy Guide
A practical privacy and security guide for college students — accounts, devices, campus Wi-Fi, social media, AI tools, and identity protection covered in plain language.
$19.99
View →
Pre-Teen Cyber Privacy Checklist
A simple online safety and privacy checklist for pre-teens (ages 9–12) and the parents reviewing it with them — covering apps, gaming, passwords, and what to share online.
$14.99
View →
Teen Cyber Privacy Playbook
A comprehensive digital privacy and online safety guide for teenagers — social media, gaming, AI tools, relationships, identity protection, and what your data is actually worth.
$19.99
View →
Smart Home & IoT Security Checklist
Device hardening and network segmentation checklist for smart home setups — routers, cameras, smart speakers, thermostats, and everything else on your home network.
$14.99
View →
Social Media Privacy & AI Workbook
Platform-by-platform privacy settings guide for major social networks plus an AI tool awareness section — what each platform does with your data and how to tighten it.
$19.99
View →
Password Manager Migration Workbook
A step-by-step guide to evaluating, selecting, and migrating to a password manager — comparison framework, migration checklist, and post-migration hardening steps.
$19.99
View →
Digital Legacy Workbook
Document your digital accounts, assets, subscriptions, and access wishes for estate planning — so your family can act quickly and nothing is permanently lost.
$19.99
View →
Security Awareness Training Deck
25-slide editable PowerPoint security awareness training deck — phishing, passwords, social engineering, AI threats, and incident reporting. Compatible with Google Slides, Keynote, and LibreOffice.
$39.99
View →
Home Network Security Audit Checklist
2-page printable audit for your home Wi-Fi — router hardening, WPA3, network segmentation (Main / Guest / IoT), DNS filtering, IoT device inventory, and a 90-day re-audit cycle. The average home has 22+ connected devices; most routers ship insecure.
$4.99
View →
Password Manager Migration Workbook
4-page printable workbook to inventory, prioritize, and migrate all your accounts to a password manager — 30+ account types pre-listed in 4 priority tiers, 2FA migration tracker, lockout prevention checklist. Works with Bitwarden, 1Password, Proton Pass, and more.
$4.99
View →
Family Online Safety Contract
4-page two-way family internet agreement updated for 2026 — AI chatbots, deepfakes, sextortion, and gaming strangers addressed in age-appropriate language. Parents promise things too (the two-column design is why teens actually sign it). Ages 8-17.
$4.99
View →
Personal Cyber Insurance Checklist
2-page before-you-buy checklist for personal cyber insurance — 10 coverage questions, 8 fine-print red flags, and a side-by-side quote comparison worksheet. Includes the #1 most-excluded coverage type that most buyers never think to ask about.
$6.50
View →
Family Incident Response Runbook
Fillable 4-page playbook for when an account gets hacked — pre-fill family contacts and fraud hotlines now, then follow the First 60 Minutes / Next 24 Hours / Cleanup Week checklists when it happens. 24 fillable fields + 30 priority-ordered checkboxes.
$9.00
View →
Cybersecurity Career Planner & Study Tracker 2026
8-page fillable career planner covering 16 certifications — Cert Decision Framework (8 scenarios), 2026 cost reference (Sec+ $404, CISSP $749, OSCP $1,649+), Domain Mastery Tracker, Practice Exam Score Log with "Am I Ready?" rubric, and weekly study tracker. Updated for SY0-701 and April 2026 CISSP CBK.
$9.99
View →
Family Cyber Drill — Tabletop Pack
8-page printable with 3 dinner-table scenarios (smishing, AI voice cloning, gaming scam) plus a fillable Family Safe Word Card — the #1 defense against AI voice clone scams. Each scenario is 20 minutes with discussion questions tuned for ages 8-17.
$11.99
View →
Digital Estate Planning Workbook
7-page printable for your executor — accounts, passwords (via manager succession), crypto wallet guidance, platform legacy settings (Apple Legacy Contact, Google Inactive Account Manager, Facebook Memorialization), and RUFADAA authorization language. Passwords never go in a will; this is what goes instead.
$14.99
View →
Identity Theft Recovery Binder
Fillable 8-page binder built around FCRA §605B — the 4-business-day bureau block most identity theft kits skip. Includes a §605B dispute letter, §609(e) creditor records demand, phone scripts for banks/bureaus/debt collectors, Master Dispute Tracker, and 2026-verified bureau addresses. 21 fillable fields.
$19.99
View →
Small Business Cyber Starter Kit
13-page fillable kit for solo founders and 2-25 person businesses — 2026 cyber insurance pre-fill worksheet (19 carrier questions), 7 starter policies (AUP, Password, Data Handling, Privacy Notice, IR Plan, Onboarding/Offboarding, Vendor Risk), and a 90-day implementation roadmap. 67 text fields + 66 checkboxes.
$24.99
View →
Senior Cyber Safety Workbook
The dignified, 2026-current guide to elder cyber fraud — romance scam 4-phase playbook, AI voice cloning defense, government impersonation field guide, and fillable Family Safe Word card. For adult children buying for aging parents.
$9.99
View →
WFH / Remote Worker Security Kit
Four-page fillable PDF for remote employees and freelancers — home office audit, 2026 VPN comparison, AI tool risk policy, signed BYOD mini-policy, and monthly self-audit grid. Updated for post-quantum VPNs and co-working space security.
$7.99
View →
Family Cyber Safety Pack
Everything your family needs to be cyber-safe in 2026 — Home Network Audit, Family Online Safety Contract (AI/deepfake-aware), 3-scenario Cyber Drill with fillable Safe Word card, and IR Runbook for account compromise. 26% off individual.
$22.99
View →
Business & Financial Cyber Pack
Lock down your accounts, protect your money, recover from identity theft, and pass your cyber insurance application — Password Manager Workbook, Cyber Insurance Checklist, Identity Theft Recovery Binder (FCRA §605B), and SMB Starter Kit. 24% off individual.
$42.99
View →
Elder Fraud Recovery Pack
Built for the worst week — Senior Cyber Safety Workbook, Identity Theft Recovery Binder (FCRA §605B), and Family IR Runbook, plus a 2-page triage guide that tells you which workbook to open first based on what you discovered. 36% off individual.
$24.99
View →
Complete Cyber Library
The entire consumer catalog — 10 products covering family safety, financial protection, career planning, and small business documentation. 54 pages, scenario-based bundle index showing what to open first for any situation. 33% off individual.
$74.99
View →
Compliance Trifecta Bundle
SOC 2 + HIPAA + ISO 27001:2022 readiness in one bundle — the three certifications every enterprise buyer asks for. 17% off list.
From $1118.00
View →
Compliance Big 5 Bundle
SOC 2 + HIPAA + ISO 27001 + PCI DSS + CMMC 2.0 — every major compliance framework an auditor or regulator will ask about. 22% off list.
From $1712.00
View →
Federal Contractor Pack
CMMC 2.0 + NIST CSF 2.0 + PCI DSS for defense and federal contractors — built for DoD, GSA, and agency RFP responses. 18% off list.
From $818.00
View →
Healthcare Security Pack
HIPAA + SOC 2 + Ransomware Readiness for healthcare SaaS and digital health. Healthcare ransomware is 31% of all attacks. 17% off list.
From $952.00
View →
Global SaaS Compliance Pack
SOC 2 + ISO 27001 + GDPR/DPIA for B2B SaaS going international — US enterprise + EU data subjects in one bundle. 17% off list.
From $1077.00
View →
Privacy Dual Coverage Bundle
2026 US state privacy program + EU GDPR/DPIA — every SaaS selling to US and EU customers needs both. 15% off list.
From $636.00
View →
New CISO Starter Pack
CISO 90-Day Onboarding + NIST CSF 2.0 Assessment + CISO Budget Workbook + Board Reporting Pack — your Day-90 board meeting in a bundle. 20% off list.
From $837.00
View →
Board Preparation Bundle
CISO Budget Workbook + CISO Board Reporting Pack + NIST CSF 2.0 — everything a CISO needs for the quarterly board cycle. 17% off list.
From $620.00
View →
CISO Executive Suite
CISO 90-Day Onboarding + Budget + Board Pack + NIST CSF 2.0 + Tabletop Exercise Pack — the most complete CISO toolkit in the catalog. 22% off list.
From $932.00
View →
vCISO Starter Pack
vCISO Client-in-a-Box + NIST CSF 2.0 Assessment + CISO Board Reporting Pack — drop-in kit for fractional CISOs running concurrent clients. 20% off list.
From $758.00
View →
vCISO Complete Practice
vCISO Client-in-a-Box + CISO 90-Day Onboarding + NIST CSF 2.0 + Budget + SOC 2 + Board Pack — complete vCISO practice toolkit. 25% off list.
From $1457.00
View →
Risk & Readiness Pack
Ransomware Readiness + Tabletop Exercise Pack + Cyber Insurance Workbook + Shadow AI Inventory — show underwriters and your CEO your program maturity. 20% off list.
From $622.00
View →
Deal-Cycle Pack
M&A Cyber Diligence + VC Startup Due Diligence + Enterprise Questionnaire Response Kit — for deal advisors, corp dev, and VCs running cyber DD. 17% off list.
From $537.00
View →
IR Stack Bundle
Ransomware Readiness Workbook + Tabletop Exercise Pack — prepare, practice, and survive a ransomware incident. 25% off individual pricing.
From $323.00
View →
vCISO Ops Bundle
vCISO Client-in-a-Box + Shadow AI Inventory + CISO Budget Workbook — the three tools every vCISO needs to run a full program. 18% off individual pricing.
From $732.00
View →
The ecosystem
ciso.diy is one piece of a broader set of tools built for security practitioners. Each property solves a different layer of the same problem — doing more security work with less overhead.
Enterprise cybersecurity services hub — vCISO advisory, program management, and security leadership for organizations that need expertise without the full-time headcount.
cisomarketplace.servicesAI-powered security services for enterprise teams — automated assessments, continuous monitoring, and AI-assisted program management.
cisomarketplace.services/ai-servicesAI-generated cybersecurity policies on demand. Information security policies, incident response plans, and compliance frameworks — generated in minutes, not weeks.
generatepolicy.comPre-built cybersecurity policy templates mapped to SOC 2, ISO 27001, HIPAA, PCI DSS, and NIST CSF. Ready to customize and deploy.
cyberpolicy.shopCybersecurity document templates — policies, procedures, runbooks, and frameworks for building and maturing security programs.
cybertemplates.com82 specialized micro cybersecurity tools. Risk calculators, compliance checkers, policy generators, and assessment tools — instant access, zero deployments.
microsec.toolsGet in touch
Questions about a product, a bulk or team purchase, white-label licensing, or something we haven't built yet — reach out directly.
[email protected]