Insurance pays after the damage. The Shield prevents it.
One engagement, built from your modules, proves exactly how your company would be breached. Then the Shield stays on — watching, re-testing and alerting as your business changes. Fixed fee, tailored to your size. No surprises, in either sense.

Three moves. No surprises.
Built from modules. Each at 100%.
You pick the attack paths worth testing — that's your engagement. Whatever you activate runs in full: we never sell a partial look at a module. Add one later and it starts with its own first engagement, then joins the Shield.
One breach outspends a decade of Shield.
No scare copy — just the public numbers behind the laws you answer to and the incidents that hit companies your size every week.
Swiss data-protection law now fines the responsible person, not just the company. Criminal — and it follows you.
Invoicing frozen, staff idle, customers quietly finding alternatives. Recovery is measured in weeks — if backups held.
One EU customer is enough. The EU rulebook stacks on top of Swiss law — and it fines revenue, not profit.
One line in the budget, agreed in writing before we start. The entry figure is published below.
WHAT IT COSTS ↓Why the Shield holds.
Every finding crosses four verification gates. If it reaches you, it's real — your IT never chases ghosts.
Four weeks of crew work, delivered in one — everything active at once. You pay for judgment by the day, not a crew by the month.
Every report is PGP-signed and verifies against our published key at qsearch.ch/pgp-key.asc. If a single byte changes, verification fails. Your auditor and insurer can check it themselves.
You get risk in francs and legal duties. Your IT gets traces and fixes. Same signed document.
One subscription. Built from your modules.
Your Shield keeps permanent watch on the same modules as your First Engagement — those, no more, no less. Add, drop or swap modules mid-subscription as the business evolves (a new module starts with its own first engagement), and retune the cadence anytime. A full re-assessment is included every 4 months; step it up to monthly or weekly. The continuous check runs daily by default — tune it down to weekly sweeps or up to second-by-second.
For scale: external IT support for an 8-person Swiss firm runs CHF 50–80k a year. The Shield is built to sit well under what you already pay to keep the lights on.
Re-tests and the 4-month re-assessment run on exactly the modules you activated in your First Engagement — those, no more, no less. Add a module later and it joins after its own first engagement.
The First Engagement
NINE MODULES, PICK THE ATTACK PATHS WORTH TESTING · EVERY MODULE RUNS TO 100%, SUB-MODULES INCLUDED
Standing deep-dive on the product your customers touch. Beyond the first pass, and kept up as you ship.
Inside your AWS, Azure or GCP: permissions drift, exposed keys, forgotten services.
Phishing and pretexting, run safely. Also available standalone with awareness training.
Segmentation, VPN, wireless. The paths between your systems, and the machines nobody patches.
We start inside, and measure how far a single compromised device or account gets.
Vendors, dependencies and integrations as a way into you.
Prompt injection, data leakage, runaway agents. Tested before someone else does.
AI-generated auth, validation and dependencies, checked for inherited flaws.
Your own product, reviewed the way an attacker reads it. Code to runtime.
The Shield Watch
NINE MODULES, PICK WHAT IT WATCHES FOR · SUB-MODULES INCLUDED
Every new vulnerability and public exploit, matched to the software you actually run.
Breach dumps, stealer logs, documents and source that surfaced in the open.
New subdomains, exposed services and certificates, tested within the day.
New devices, shares and services showing up on your own network.
Mentions, access for sale, and the groups working on your sector.
Lookalike domains, phishing kits, and mail records that drift.
Recurring simulations and short sessions, built on the lures that would work.
Permission drift, new public storage, keys in the wrong place.
Breaches and exposures at the vendors who hold your data or your access.
Also available, on request
SCOPED SEPARATELY, NEVER BUNDLED INTO THE SHIELD FEE
We run the offense live while your IT tunes detection and response in real time.
Sessions built on the exact e-mails and calls that would have fooled your team.
Shield monitoring wired into a 24/7 alert pipeline.
Day-to-day IT run, or hardware bought right, through vetted partners.
Backups restored for real, segmentation checked, a playbook your team has run.
Onboarding, patch windows and pipelines wired so the routine happens without anyone remembering.
Hardened CMS, clean DNS, campaigns tracked without leaking customer data.
nFADP, GDPR, ISO 27001 or NIS2 asks, answered with the reports you already hold.
Suppliers checked before you sign, not after the breach.
Two figures, so you know the order of magnitude before you call.
Both are entry figures for the smallest sensible scope, not quotes. What you actually pay depends on the modules you activate and the size of the environment behind them — and it is fixed in writing before any testing starts. Never billed per finding.
We test, you fix, we re-test — the full loop, closed inside less than a working week rather than the four to six on-site weeks a traditional crew books. You keep the signed report either way.
Priced on the infrastructure actually under watch, agreed with you and reviewed as the perimeter moves. Quarterly exit, no lock-in.
The questions executives actually ask.
Then you get signed evidence of exactly that — what we tested, how deep, and what held. Your auditor, your insurer and your board can verify it. Either way, the Shield keeps checking as things change.
No. Every engagement runs under a written scope ruling and our reconnaissance policy — engineered to prove impact without causing it. Anything intrusive is agreed first, in writing.
Keep them — we're not a replacement. They run your systems; we independently verify them. Findings arrive as fix-ready traces your provider can act on, and we retest their fixes at no extra cost.
Attacks are automated — they don't check your headcount. Small firms get hit precisely because attackers assume nobody is watching. The Shield makes that assumption wrong.
Yes — quarterly, no lock-in. Everything we produced stays yours: reports, evidence, fixes. If you come back later, your history comes back with you.
There's no exit fee and no clawback on anything you've already fixed. We close out with a final signed report and a clean export of every finding — plus a short handover note your own IT or next provider can pick up cold.
By the scope — which modules you activate, and the size of the environment behind them. The first engagement starts at CHF 4'000.— and the Shield at CHF 1'000.— a month on a perimeter we agree with you; daily check and 4-month re-assessment come with every subscription. Add, drop or swap modules mid-subscription; a new module starts with its own first engagement. Always fixed before we start, in writing. Never per finding, never an "urgent" upsell.
We don't publish an hourly rate. Hours are our problem, not yours: what you are buying is a scope and a signed result, and a rate would only invite a negotiation about how long it took us.
White box tests with knowledge — accounts, architecture, source — so the whole budget goes into depth. Black box starts blind, like a real outsider: maximum realism, but more of the effort goes into discovery before any testing begins. Most companies mix — black-box what the internet sees, white-box what's behind the login. We settle which is which when we scope, and it is part of the fixed fee either way.
Red attacks, blue defends. The Shield is red: we prove how you'd be breached before someone else does. Blue is detection, response, training and operations — available on request with vetted partners, scoped separately. Purple is both at one table: we attack live while your IT tunes the defenses.
Swiss market, 2026: CHF 8–15k for a web-application test, CHF 10–25k for infrastructure, CHF 8–18k for mobile or APIs; a full multi-week crew assessment lands at CHF 84–126k. Our first engagement starts at CHF 4'000.—, because recon and reporting run once across everything you activate rather than once per test. Fixed in writing, and the engagement doesn't end: the Shield keeps watching and re-testing all year.
Attackers don't wait for your annual audit. After one complete engagement, continuous coverage — daily checks plus a big re-assessment every 4 months — keeps pace with every deploy, hire and new CVE. That's exactly what the Shield is.
Every shield is tailored. Every fee is fixed.
One conversation — scoped to your business, not a product catalog. If we're not the right fit, we'll tell you.
