Guardian plans and add-ons

A clear core with modular expansion.

Guardian Core includes the platform foundation, University and Human Risk, Dark Web Monitoring, Risk and All Actions, and standard evidence and reporting. Add assurance, managed defence and specialist modules when required.

Bundle comparison

What is included in each Guardian bundle.

Core includes baseline website vulnerability monitoring for the approved website allowance. Assurance adds broader vulnerability and remediation. Managed Defence adds Security Operations and Aegis. Katana remains an optional add-on for deeper active website and API security testing.

CapabilityGuardian CoreGuardian AssuranceGuardian Managed Defence
Guardian customer workspaceIncludedIncludedIncluded
Guardian Security DashboardIncludedIncludedIncluded
Risk Register and All ActionsIncludedIncludedIncluded
Guardian University and Human RiskIncludedIncludedIncluded
Guardian Dark Web MonitoringIncludedIncludedIncluded
Website Vulnerability MonitoringIncludedIncludedIncluded
Standard evidence and reportingIncludedIncludedIncluded
Vulnerability and RemediationUpgrade to AssuranceIncludedIncluded
Security Operations and AegisAdd-onAdd-onIncluded
Endpoint Protection and Managed PatchingAdd-onAdd-onAdd-on
DNS ProtectionAdd-onAdd-onAdd-on
Katana Website and API Security TestingAdd-onAdd-onAdd-on
Website vulnerability monitoring and Katana are different package items

Guardian Core includes the approved baseline website vulnerability monitoring allowance. Katana is an optional add-on for deeper active website and API security testing, authenticated or custom assessment profiles, additional cadence and included rescans.

Optional and controlled add-ons

Add managed protection and specialist capabilities without changing the Guardian operating model.

Each module identifies what the Guardian platform provides, what Damocles manages operationally, and which quantities or boundaries are confirmed in the package schedule.

Optional managed add-on

Guardian Endpoint Protection and Managed Patching

Normally licensed per protected endpoint. Managed operating-system and supported third-party application patching is included for the agreed covered device scope.

  • Endpoint security agent onboarding and protection policy
  • Device protection and health visibility
  • Vulnerability and available-patch context
  • Managed operating-system patch deployment
View capability →
Optional managed add-on

Guardian DNS Protection

Protected users, devices, sites or an agreed estate, with managed policy, DNS-layer blocking, activity visibility and operational follow-up.

  • Managed DNS security policy
  • Malicious, phishing and command-and-control domain blocking
  • Agreed category and policy controls
  • Blocked, allowed and monitored event visibility
View capability →
Optional add-on

Guardian Katana Website and API Security Testing

Approved websites and APIs, active assessment cadence, authenticated or custom assessment profiles, manual-scan cooldowns, included rescans and rolling rescan allowances.

  • Approved active website and API security assessments
  • Scheduled and on-demand Katana testing subject to entitlement
  • Authenticated or custom assessment profiles where approved
  • Normalised findings and customer-safe evidence
View capability →
Optional controlled add-on

Guardian Infrastructure Assessment

Approved target scope, policies, assessment frequency and separately agreed assessment activity.

View capability →
Optional controlled add-on

Guardian Intelligence

Approved sources, monitored entities, screening scope, analyst review and reporting requirements.

View capability →
Optional add-on

Advanced Security Reporting

Bespoke report definitions, board packs, scheduled outputs, custom branding and approved data exports.

View capability →
Separately scoped Damocles services

Penetration testing, secure code review, cloud security review, incident response, engineering, custom integrations and bespoke content are professional engagements. Guardian can manage their findings, risks, actions and evidence, but the engagement itself is not implied to be included in a subscription. Engineering work outside an agreed managed-module scope is separately approved.

Guardian packages

Choose the operating model, then confirm allowances and scope.

Core
GC

Guardian Core

A governed customer workspace for understanding security posture, managing risk and completing accountable action. Included: Guardian customer workspace; Guardian Security Dashboard; Risk Register and All Actions; Guardian University and Human Risk; Guardian Dark Web Monitoring; Guardian Website Vulnerability Monitoring; Standard evidence and reporting; Capability and integration status for licensed modules.

Core + Assurance
GA

Guardian Assurance

Guardian Core plus continuous vulnerability and remediation assurance. Included: Everything in Guardian Core; Vulnerability and Remediation; Prioritised remediation workflow; Resolution and evidence tracking; Assurance-focused reporting.

Assurance + Operations
MD

Guardian Managed Defence

Guardian Assurance plus customer-safe security operations delivered through Guardian. Included: Everything in Guardian Assurance; Guardian Security Operations; Aegis managed threat detection and response; Alerts and investigations; Log-source health; Security Operations reporting.

Core inclusions

University and Dark Web Monitoring are part of Guardian Core.

Guardian University and Human Risk are included in Guardian Core. The applicable package schedule confirms included users, published content and any separately priced custom course or campaign work.

Guardian Dark Web Monitoring is included in Guardian Core. The applicable package schedule confirms the approved domains, email addresses and keywords included for the customer. Expanded monitored scope or specialist investigation may be separately priced.

Guardian Core also includes the Security Dashboard, Risk Register, All Actions and standard evidence and reporting.

Additional modules

Capabilities priced separately from the selected package.

Optional managed add-on
GE

Guardian Endpoint Protection and Managed Patching

Normally licensed per protected endpoint. Managed operating-system and supported third-party application patching is included for the agreed covered device scope.

View capability page
Optional managed add-on
GD

Guardian DNS Protection

Protected users, devices, sites or an agreed estate, with managed policy, DNS-layer blocking, activity visibility and operational follow-up.

View capability page
Optional add-on
GK

Guardian Katana Website and API Security Testing

Approved websites and APIs, active assessment cadence, authenticated or custom assessment profiles, manual-scan cooldowns, included rescans and rolling rescan allowances.

View capability page
Optional controlled add-on
GI

Guardian Infrastructure Assessment

Approved target scope, policies, assessment frequency and separately agreed assessment activity.

View capability page
Optional controlled add-on
GI

Guardian Intelligence

Approved sources, monitored entities, screening scope, analyst review and reporting requirements.

View capability page
Optional add-on
AS

Advanced Security Reporting

Bespoke report definitions, board packs, scheduled outputs, custom branding and approved data exports.

View capability page
Pricing and allowances

Commercial detail is confirmed in the package schedule.

The website identifies whether a capability is included, an optional add-on, controlled availability, usage-based, coming later or a separately scoped Damocles service.

Exact dollar pricing, user counts, monitored items, targets, schedules, ingestion, retention, investigation coverage and service commitments are confirmed in the applicable proposal, package schedule and agreement.

This avoids hiding package boundaries while preventing unsupported public pricing or service-level claims.

Separately scoped Damocles services

Professional engagements managed through Guardian, not implied as subscription inclusions.

01

Penetration testing

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

02

Secure code review

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

03

Cloud security review

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

04

Incident readiness and response

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

05

Network and firewall security engineering

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

06

Custom integrations

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

07

Remediation engineering outside a managed module's agreed scope

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

08

Bespoke training content

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

09

Specialist consulting

Scoped, authorised and priced for the specific engagement. Findings, risks, actions and evidence may be managed through Guardian.

Build the right package

Start with Core, then add the capability your operating model requires.

We will confirm inclusions, allowances, additional modules and separately scoped services without exposing internal implementation detail.