ciso.diy
Part of the CISO Marketplace ecosystem

Built for the work, not the optics.

ciso.diy exists because security teams spend too much time building documentation from scratch — and most of what's available is either a checklist dressed up as a deliverable or a $500/month platform for something that should cost $79 once.

What we're replacing

  • Blank spreadsheets that take 20 hours to build and look amateur when you present them
  • $15 Etsy templates with generic checklists and no formulas, no logic, no output
  • $500–$2K/client/month platforms that are overkill for a solo vCISO or a 20-client book
  • Consulting deliverables you paid $10K for once and can never update yourself

What we deliver

  • Workbooks with real logic — formulas that roll up, dashboards that update, outputs you can share
  • Practitioner-grade depth — the kind of detail that holds up in front of a board, a broker, or an auditor
  • One-time pricing — you own it, you can update it, you don't pay again next month
  • Honest documentation — user guides that tell you the limits, not just the features

How we build

Practitioner-built

Every template comes from someone who has sat in the chair — run the assessment, presented to the board, argued with the underwriter. Not designed by marketers, not generated by AI, not padded to look impressive.

Tangible outputs

The test: can you hand it to someone outside your team and have it mean something? If a template only makes sense to the person who built it, it failed. Everything here produces a deliverable.

Honest about tradeoffs

The vCISO workbook tells you at what client count it breaks down. The Shadow AI workbook tells you the weights are tunable because no two orgs are the same. We'd rather you use the tool correctly than oversell what it does.

Priced for the work, not the market

A $15 Etsy template and a $299 workbook are not the same thing. We price on depth, defensibility, and the hours it replaces — not on what competitors charge.

What's in the catalog

Currently 64 products — every one built to the same standard.

Cyber Insurance Workbook
cyber insurance v1.0

Cyber Insurance Workbook

Everything you need to prepare, apply for, and manage cyber insurance — 8 tabs, 167 live formulas, built for security teams who need to hold their own with brokers and underwriters.

$79.00

View →

Shadow AI Inventory & Risk Scoring Workbook
governance v1.0

Shadow AI Inventory & Risk Scoring Workbook

Discover, inventory, and score every unapproved AI tool in your environment — 10 tabs, 589 formulas, pre-seeded with 15 real-world shadow AI tools and a defensible 10-factor risk model.

From $299.99

View →

vCISO Client-in-a-Box
governance v1.0

vCISO Client-in-a-Box

27 tabs, 1,565 formulas — a complete client management system for solo vCISOs and small teams. NIST CSF 2.0 assessments, risk registers, roadmaps, and a portfolio dashboard for 20 clients. Includes the 584-paragraph Practitioner User Guide.

From $499.99

View →

M&A Cyber Diligence Workbook
due diligence v1.0

M&A Cyber Diligence Workbook

The active cyber diligence workbook for M&A deal teams — auto-generated deal recommendations, cost modeling, and deal-term mechanism mapping across a 10-day sprint framework.

From $199.00

View →

VC Cyber Diligence Workbook
due diligence v1.0

VC Cyber Diligence Workbook

Stage-aware VC diligence for Pre-Seed through Series B+ — founder assessment, investment thesis scoring, pipeline tracking, cap table analysis, and IC memo output. 16 tabs built around the question: what would have to go right for 10x?

From $149.00

View →

Tabletop Exercise Pack
incident response v1.0

Tabletop Exercise Pack

10 research-calibrated IR scenarios, a 13-tab program management system, and a 687-paragraph facilitator guide — plus an ecosystem map that turns every buyer into a full IR practice.

From $149.00

View →

2026 CISO Budget Workbook
governance v1.0

2026 CISO Budget Workbook

Input five values on the Assumptions tab — revenue, IT budget, headcount, industry, maturity — and the entire workbook calculates itself. Three budget-sizing methods, 50+ line items, CRQ for boards, and board talking points with your actual numbers.

From $299.00

View →

2026 Ransomware Readiness Workbook
incident response v1.0

2026 Ransomware Readiness Workbook

18 tabs of operational crisis preparedness — 80-control readiness assessment, 8 pre-built IR playbook cards with DO NOT lists, ransom decision framework with OFAC gate, and regulatory matrix covering all 2026 mandates.

From $249.00

View →

SOC 2 Readiness Accelerator
compliance v1.0

SOC 2 Readiness Accelerator

20-tab SOC 2 program covering assessment through Type 2 audit — 100+ controls, 35 required policies, 7 pre-populated operational logs, and an executive dashboard with three auto-calculated readiness metrics.

From $399.00

View →

HIPAA Readiness Accelerator
compliance v1.0

HIPAA Readiness Accelerator

23-tab HIPAA compliance workbook built for the 2026 Final Rule — covers all current safeguards plus the 12 new mandatory requirements, IoMT risk, BAA management, breach notification matrix, and a dedicated 2026 gap analysis tab.

From $499.00

View →

Enterprise Questionnaire Response Kit
vendor risk v1.0

Enterprise Questionnaire Response Kit

14-tab operational efficiency toolkit for responding to security questionnaires — 400+ pre-written answers mapped to CAIQ v4, SIG, VSA, and HECVAT, AI governance supplements, deal pipeline tracking, and a trust portal content planner.

From $299.00

View →

ISO 27001:2022 Readiness Accelerator
compliance v1.0

ISO 27001:2022 Readiness Accelerator

20-tab ISMS implementation workbook for ISO 27001:2022 — all 93 Annex A controls across 4 themes, 11 new 2022 controls, Clauses 4–10 ISMS framework, transition gap analysis from 2013, and policy library.

From $449.00

View →

PCI DSS v4.0.1 Readiness Accelerator
compliance v1.0

PCI DSS v4.0.1 Readiness Accelerator

12-tab PCI DSS v4.0.1 workbook — all 12 requirement domains, SAQ type selector, 51 future-dated requirements tracker, e-commerce script security controls, and QSA-ready evidence register. Built for the March 2025 mandatory transition.

From $399.00

View →

CMMC 2.0 Readiness Accelerator
compliance v1.0

CMMC 2.0 Readiness Accelerator

12-tab CMMC 2.0 workbook — all 110 NIST 800-171 practices with DoD SPRS weights, auto-calculated SPRS score, Level determination decision tree, SSP builder, POA&M tracker, and C3PAO readiness checklist. Built for the November 2026 Phase 2 deadline.

From $449.00

View →

DORA + NIS2 EU Compliance Workbook
compliance v1.0

DORA + NIS2 EU Compliance Workbook

14-tab EU regulatory compliance workbook covering all 5 DORA pillars, NIS2 Article 21 measures, dual framework applicability decision tree, penalty calculator (2% DORA / €10M NIS2), and cross-framework mapping across 17 control domains.

From $449.00

View →

CISO Board Reporting Pack
governance v1.0

CISO Board Reporting Pack

Everything you need to brief the board on cybersecurity — editable Excel metrics workbook, 25-slide PowerPoint deck template, and a user guide covering what boards actually want to hear and how to answer the questions you will get.

From $299.00

View →

NIST CSF 2.0 Self-Assessment Workbook
compliance v1.0

NIST CSF 2.0 Self-Assessment Workbook

14-tab NIST CSF 2.0 workbook — all 106 Subcategories with verbatim NIST.CSWP.29 outcome statements, Current/Target tier dropdowns, Organizational Profile Generator, heatmap, gap analysis pre-seeded with 12 high-gap 2026 scenarios, and crosswalks to SP 800-53r5, SP 800-171r3, CIS Controls v8.1, and ISO 27001:2022.

From $149.00

View →

GDPR & DPIA Compliance Workbook
compliance v1.0

GDPR & DPIA Compliance Workbook

20-tab GDPR compliance workbook — Controller ROPA, Processor ROPA, DSR log with 30-day SLA tracking, 72-hour breach deadline calculator, TIA template, DPF certification tracker, and DPIA template with WP29 9-factor trigger test. Updated for April 2026 research baseline.

From $449.00

View →

2026 US Privacy Program Workbook
compliance v1.0

2026 US Privacy Program Workbook

17-tab US state privacy compliance workbook covering the 20-state wave — CCPA/CPRA, MODPA, VCDPA, CPA, and 16 more — with auto-generated obligation matrix, DSR tracker, consent management log, ADMT register, and enforcement reference.

From $299.00

View →

CISO 90-Day Onboarding Workbook
governance v1.0

CISO 90-Day Onboarding Workbook

The structured first-90-days playbook for new CISOs — stakeholder mapping, program gap assessment, quick-win tracker, board briefing builder, and 30/60/90-day milestone framework. For FTE CISOs, vCISOs starting new engagements, and interim security leaders.

From $299.00

View →

Incident Response Runbook Library
incident response v1.0

Incident Response Runbook Library

18 runbooks × 3 formats (54 files) — complete IR runbook library covering every major 2026 threat scenario, from ransomware multi-extortion to vishing to Magecart. ZIP delivery with Word, PDF, and Markdown versions of every runbook.

From $199.00

View →

Cyber Insurance Readiness Checklist
cyber insurance v1.0

Cyber Insurance Readiness Checklist

A concise checklist covering the controls underwriters check before quoting — MFA, backups, endpoint, email security, and IR — with a quick self-scoring mechanism to spot coverage red flags before you talk to a broker.

$14.99

View →

SOC 2 Readiness Checklist (Type I & II)
compliance v1.0

SOC 2 Readiness Checklist (Type I & II)

The key controls, evidence items, and policy gaps auditors check at every SOC 2 engagement — organized by Trust Service Criteria with a pre-audit readiness rating.

$14.99

View →

HIPAA Compliance Checklist 2026
compliance v1.0

HIPAA Compliance Checklist 2026

Updated for the 2026 Security Rule Final Rule — covers all 12 new mandatory requirements plus the core Administrative, Physical, and Technical safeguards in a single actionable checklist.

$14.99

View →

Ransomware Preparation Checklist
incident response v1.0

Ransomware Preparation Checklist

The pre-incident checklist for ransomware preparedness — backup validation, identity hardening, IR contacts, communication templates, and the ransom decision questions to answer before an attack hits.

$14.99

View →

College Cyber Privacy Guide
awareness v1.0

College Cyber Privacy Guide

A practical privacy and security guide for college students — accounts, devices, campus Wi-Fi, social media, AI tools, and identity protection covered in plain language.

$19.99

View →

Pre-Teen Cyber Privacy Checklist
awareness v1.0

Pre-Teen Cyber Privacy Checklist

A simple online safety and privacy checklist for pre-teens (ages 9–12) and the parents reviewing it with them — covering apps, gaming, passwords, and what to share online.

$14.99

View →

Teen Cyber Privacy Playbook
awareness v1.0

Teen Cyber Privacy Playbook

A comprehensive digital privacy and online safety guide for teenagers — social media, gaming, AI tools, relationships, identity protection, and what your data is actually worth.

$19.99

View →

Smart Home & IoT Security Checklist
awareness v1.0

Smart Home & IoT Security Checklist

Device hardening and network segmentation checklist for smart home setups — routers, cameras, smart speakers, thermostats, and everything else on your home network.

$14.99

View →

Social Media Privacy & AI Workbook
awareness v1.0

Social Media Privacy & AI Workbook

Platform-by-platform privacy settings guide for major social networks plus an AI tool awareness section — what each platform does with your data and how to tighten it.

$19.99

View →

Password Manager Migration Workbook
awareness v1.0

Password Manager Migration Workbook

A step-by-step guide to evaluating, selecting, and migrating to a password manager — comparison framework, migration checklist, and post-migration hardening steps.

$19.99

View →

Digital Legacy Workbook
awareness v1.0

Digital Legacy Workbook

Document your digital accounts, assets, subscriptions, and access wishes for estate planning — so your family can act quickly and nothing is permanently lost.

$19.99

View →

Security Awareness Training Deck
awareness v1.0

Security Awareness Training Deck

25-slide editable PowerPoint security awareness training deck — phishing, passwords, social engineering, AI threats, and incident reporting. Compatible with Google Slides, Keynote, and LibreOffice.

$39.99

View →

Home Network Security Audit Checklist
awareness v1.0

Home Network Security Audit Checklist

2-page printable audit for your home Wi-Fi — router hardening, WPA3, network segmentation (Main / Guest / IoT), DNS filtering, IoT device inventory, and a 90-day re-audit cycle. The average home has 22+ connected devices; most routers ship insecure.

$4.99

View →

Password Manager Migration Workbook
awareness v1.0

Password Manager Migration Workbook

4-page printable workbook to inventory, prioritize, and migrate all your accounts to a password manager — 30+ account types pre-listed in 4 priority tiers, 2FA migration tracker, lockout prevention checklist. Works with Bitwarden, 1Password, Proton Pass, and more.

$4.99

View →

Family Online Safety Contract
awareness v1.0

Family Online Safety Contract

4-page two-way family internet agreement updated for 2026 — AI chatbots, deepfakes, sextortion, and gaming strangers addressed in age-appropriate language. Parents promise things too (the two-column design is why teens actually sign it). Ages 8-17.

$4.99

View →

Personal Cyber Insurance Checklist
awareness v1.0

Personal Cyber Insurance Checklist

2-page before-you-buy checklist for personal cyber insurance — 10 coverage questions, 8 fine-print red flags, and a side-by-side quote comparison worksheet. Includes the #1 most-excluded coverage type that most buyers never think to ask about.

$6.50

View →

Family Incident Response Runbook
awareness v1.0

Family Incident Response Runbook

Fillable 4-page playbook for when an account gets hacked — pre-fill family contacts and fraud hotlines now, then follow the First 60 Minutes / Next 24 Hours / Cleanup Week checklists when it happens. 24 fillable fields + 30 priority-ordered checkboxes.

$9.00

View →

Cybersecurity Career Planner & Study Tracker 2026
awareness v1.0

Cybersecurity Career Planner & Study Tracker 2026

8-page fillable career planner covering 16 certifications — Cert Decision Framework (8 scenarios), 2026 cost reference (Sec+ $404, CISSP $749, OSCP $1,649+), Domain Mastery Tracker, Practice Exam Score Log with "Am I Ready?" rubric, and weekly study tracker. Updated for SY0-701 and April 2026 CISSP CBK.

$9.99

View →

Family Cyber Drill — Tabletop Pack
awareness v1.0

Family Cyber Drill — Tabletop Pack

8-page printable with 3 dinner-table scenarios (smishing, AI voice cloning, gaming scam) plus a fillable Family Safe Word Card — the #1 defense against AI voice clone scams. Each scenario is 20 minutes with discussion questions tuned for ages 8-17.

$11.99

View →

Digital Estate Planning Workbook
awareness v1.0

Digital Estate Planning Workbook

7-page printable for your executor — accounts, passwords (via manager succession), crypto wallet guidance, platform legacy settings (Apple Legacy Contact, Google Inactive Account Manager, Facebook Memorialization), and RUFADAA authorization language. Passwords never go in a will; this is what goes instead.

$14.99

View →

Identity Theft Recovery Binder
awareness v1.0

Identity Theft Recovery Binder

Fillable 8-page binder built around FCRA §605B — the 4-business-day bureau block most identity theft kits skip. Includes a §605B dispute letter, §609(e) creditor records demand, phone scripts for banks/bureaus/debt collectors, Master Dispute Tracker, and 2026-verified bureau addresses. 21 fillable fields.

$19.99

View →

Small Business Cyber Starter Kit
awareness v1.0

Small Business Cyber Starter Kit

13-page fillable kit for solo founders and 2-25 person businesses — 2026 cyber insurance pre-fill worksheet (19 carrier questions), 7 starter policies (AUP, Password, Data Handling, Privacy Notice, IR Plan, Onboarding/Offboarding, Vendor Risk), and a 90-day implementation roadmap. 67 text fields + 66 checkboxes.

$24.99

View →

Senior Cyber Safety Workbook
awareness v1.0

Senior Cyber Safety Workbook

The dignified, 2026-current guide to elder cyber fraud — romance scam 4-phase playbook, AI voice cloning defense, government impersonation field guide, and fillable Family Safe Word card. For adult children buying for aging parents.

$9.99

View →

WFH / Remote Worker Security Kit
awareness v1.0

WFH / Remote Worker Security Kit

Four-page fillable PDF for remote employees and freelancers — home office audit, 2026 VPN comparison, AI tool risk policy, signed BYOD mini-policy, and monthly self-audit grid. Updated for post-quantum VPNs and co-working space security.

$7.99

View →

Family Cyber Safety Pack
bundle v1.0

Family Cyber Safety Pack

Everything your family needs to be cyber-safe in 2026 — Home Network Audit, Family Online Safety Contract (AI/deepfake-aware), 3-scenario Cyber Drill with fillable Safe Word card, and IR Runbook for account compromise. 26% off individual.

$22.99

View →

Business & Financial Cyber Pack
bundle v1.0

Business & Financial Cyber Pack

Lock down your accounts, protect your money, recover from identity theft, and pass your cyber insurance application — Password Manager Workbook, Cyber Insurance Checklist, Identity Theft Recovery Binder (FCRA §605B), and SMB Starter Kit. 24% off individual.

$42.99

View →

Elder Fraud Recovery Pack
bundle v1.0

Elder Fraud Recovery Pack

Built for the worst week — Senior Cyber Safety Workbook, Identity Theft Recovery Binder (FCRA §605B), and Family IR Runbook, plus a 2-page triage guide that tells you which workbook to open first based on what you discovered. 36% off individual.

$24.99

View →

Complete Cyber Library
bundle v1.0

Complete Cyber Library

The entire consumer catalog — 10 products covering family safety, financial protection, career planning, and small business documentation. 54 pages, scenario-based bundle index showing what to open first for any situation. 33% off individual.

$74.99

View →

Compliance Trifecta Bundle
bundle v1.0

Compliance Trifecta Bundle

SOC 2 + HIPAA + ISO 27001:2022 readiness in one bundle — the three certifications every enterprise buyer asks for. 17% off list.

From $1118.00

View →

Compliance Big 5 Bundle
bundle v1.0

Compliance Big 5 Bundle

SOC 2 + HIPAA + ISO 27001 + PCI DSS + CMMC 2.0 — every major compliance framework an auditor or regulator will ask about. 22% off list.

From $1712.00

View →

Federal Contractor Pack
bundle v1.0

Federal Contractor Pack

CMMC 2.0 + NIST CSF 2.0 + PCI DSS for defense and federal contractors — built for DoD, GSA, and agency RFP responses. 18% off list.

From $818.00

View →

Healthcare Security Pack
bundle v1.0

Healthcare Security Pack

HIPAA + SOC 2 + Ransomware Readiness for healthcare SaaS and digital health. Healthcare ransomware is 31% of all attacks. 17% off list.

From $952.00

View →

Global SaaS Compliance Pack
bundle v1.0

Global SaaS Compliance Pack

SOC 2 + ISO 27001 + GDPR/DPIA for B2B SaaS going international — US enterprise + EU data subjects in one bundle. 17% off list.

From $1077.00

View →

Privacy Dual Coverage Bundle
bundle v1.0

Privacy Dual Coverage Bundle

2026 US state privacy program + EU GDPR/DPIA — every SaaS selling to US and EU customers needs both. 15% off list.

From $636.00

View →

New CISO Starter Pack
bundle v1.0

New CISO Starter Pack

CISO 90-Day Onboarding + NIST CSF 2.0 Assessment + CISO Budget Workbook + Board Reporting Pack — your Day-90 board meeting in a bundle. 20% off list.

From $837.00

View →

Board Preparation Bundle
bundle v1.0

Board Preparation Bundle

CISO Budget Workbook + CISO Board Reporting Pack + NIST CSF 2.0 — everything a CISO needs for the quarterly board cycle. 17% off list.

From $620.00

View →

CISO Executive Suite
bundle v1.0

CISO Executive Suite

CISO 90-Day Onboarding + Budget + Board Pack + NIST CSF 2.0 + Tabletop Exercise Pack — the most complete CISO toolkit in the catalog. 22% off list.

From $932.00

View →

vCISO Starter Pack
bundle v1.0

vCISO Starter Pack

vCISO Client-in-a-Box + NIST CSF 2.0 Assessment + CISO Board Reporting Pack — drop-in kit for fractional CISOs running concurrent clients. 20% off list.

From $758.00

View →

vCISO Complete Practice
bundle v1.0

vCISO Complete Practice

vCISO Client-in-a-Box + CISO 90-Day Onboarding + NIST CSF 2.0 + Budget + SOC 2 + Board Pack — complete vCISO practice toolkit. 25% off list.

From $1457.00

View →

Risk & Readiness Pack
bundle v1.0

Risk & Readiness Pack

Ransomware Readiness + Tabletop Exercise Pack + Cyber Insurance Workbook + Shadow AI Inventory — show underwriters and your CEO your program maturity. 20% off list.

From $622.00

View →

Deal-Cycle Pack
bundle v1.0

Deal-Cycle Pack

M&A Cyber Diligence + VC Startup Due Diligence + Enterprise Questionnaire Response Kit — for deal advisors, corp dev, and VCs running cyber DD. 17% off list.

From $537.00

View →

IR Stack Bundle
bundle v1.0

IR Stack Bundle

Ransomware Readiness Workbook + Tabletop Exercise Pack — prepare, practice, and survive a ransomware incident. 25% off individual pricing.

From $323.00

View →

vCISO Ops Bundle
bundle v1.0

vCISO Ops Bundle

vCISO Client-in-a-Box + Shadow AI Inventory + CISO Budget Workbook — the three tools every vCISO needs to run a full program. 18% off individual pricing.

From $732.00

View →

The ecosystem

ciso.diy is one piece of a broader set of tools built for security practitioners. Each property solves a different layer of the same problem — doing more security work with less overhead.

Get in touch

Questions about a product, a bulk or team purchase, white-label licensing, or something we haven't built yet — reach out directly.

[email protected]