Partner SPIFFtactular

Earn more on every deal with Cyber Defense Group SPIFFs

Boost your earnings and deliver stronger security outcomes with every sale.

Partners, start selling Cyber Defense Group services today!

Earn valuable SPIFF rewards! Strengthen your security offerings and provide your customers ROI through enhanced cybersecurity resilience.

Recurring revenue growth & higher margins
Increased trust & long-term customer credibility
Customer ROI through enhanced cyber resilience

Security services you can sell

Managed Security

Outcomes-Based Security® Program

Cost: $15,000-$25,000, monthly – 1 yr recurring // SPIFF: $5k + normal points

Traditional consulting models sell hours, not outcomes—often leading to misaligned incentives, unused time, or surprise fees.

Cyber Defense Group’s Outcomes-Based Security® Program flips the model. Instead of buying hours, partners and clients invest in measurable results: stronger security posture, reduced risk, and predictable costs.

  • Who: Mid-market and enterprise organizations in regulated industries (healthcare, fintech, retail, insurance, legal, telecom, pharma, energy)
  • What: Compliance and cyber insurance support, proactive risk management
  • Pain points solved: Limited in-house expertise, complex threats, regulatory pressure
  • Benefits: Scalable, cost-effective program with predictable pricing. Frees internal teams to focus on priorities while CDG secures critical assets.
  • Deliverable: Comprehensive, flexible solution without the overhead of building an internal team
  • Length: 12 months
Download Security Programs Solution Brief

Cloud Security

Cloud Security Posture Management (CSPM) Review

Cost: $20,000-$30,000 // SPIFF: $2k + normal points

Confidently leverage the benefits of cloud computing while minimizing the risk of data breaches, unauthorized access, and other security threats.

  • Who: anyone with a cloud environment
  • What: Review of cloud security dashboard for Azure, AWS, GCP. Review of the security tools and controls, data management. 
  • Pain point: anyone that is concerned about cloud security
  • Benefit: visibility and a plan to ensure cloud environment is secure and can handle future initiatives
  • Deliverable: cloud security posture report with recommendations
  • Length: 2-4 weeks for completion
contact us

Compliance Check

Policy Review and Gap Analysis

Cost: $10,000 // // SPIFF: $1k + normal points

Strengthen client’s security and privacy posture, reduce the risk of non-compliance, and foster a culture of security and privacy awareness among client’s employees.

  • Who: Companies that have not reviewed their policies in a while (9 months or more)
  • What: A comprehensive security policy review which ensure policies are comprehensive, effective, and aligned with industry best practices and relevant regulatory requirements.
  • Pain point: Unreviewed policies, concern that policies do not conform to regulatory requirements or how business is currently being conducted.
  • Benefit: All cybersecurity starts with governance, and policies are the bedrock of cybersecurity governance.  Having proper policies ensures everyone in the organization knows what is expected of them, and ensures cyber is a priority.
  • Deliverable: A report showing policy gaps and recommendations to improve current policies.
  • Length: 2-4 weeks for completion

Risk Analysis

Cybersecurity Risk Assessment

Cost: $30,000-$40,000+ // SPIFF: $2k + normal points

Cyber Defense Group’s Cybersecurity Risk Assessment is a targeted, efficient process designed to uncover and address vulnerabilities in your organization’s IT environment. We dive deep into your systems, identifying hidden risks and their potential consequences. Our service doesn’t stop at detection; we provide clear, actionable recommendations for immediate risk mitigation and long-term defense enhancement. This strategic assessment is more than a security check – it’s a crucial step towards fortifying your organization against current and future cyber threats, ensuring robust protection of your sensitive data and key assets. With Cyber Defense Group, you gain insights and a path to a stronger, more resilient cybersecurity posture.

  • Who: Any organization that has not done a review of their cybersecurity operations or protections in the last 9 months or more.  Especially those that have never had one.
  • What: A full security assessment report that includes client interviews, a technical assessment and executive presentation. 
  • Pain point: Lack of clarity or knowledge around where the cyber program is, what the defense posture is, and/or what dangers may be lurking in their environment
  • Benefit: Work closely with your stakeholders to identify, analyze, and assess the risks facing your organization’s information assets, systems, and processes.
  • Deliverable: Assessment Report with Gap against CIS-18 and another security standard, including:
    • Creation of an initial risk register, security program maturity assessment, 
    • High-Level Security Roadmap
    • Remediation & Security Improvement Recommendations
    • Security Review against relevant cloud environment(s)
    • Open Source Intelligence (OSINT) Report
  • Executive Slide Deck and Presentation
  • Length: 4-6 weeks
Download Risk Assessment Data Sheet

Crisis Management

Incident Response Capability Assessment

Cost: $25,000 // SPIFF: $2k + normal points

Cyber Defense Group’s Incident Response and Recovery Solutions provide swift and strategic management of cybersecurity incidents. This service ensures immediate threat visibility, active containment, and accelerated forensic analysis, crucial in today’s landscape of sophisticated cyber threats. Key features include real-time response and recovery, enterprise-wide remediation, and proactive threat hunting and monitoring. Designed to efficiently handle incidents such as data breaches and network intrusions, these solutions minimize impact, protect sensitive data, and uphold overall security integrity. Whether on a retainer basis or during a crisis, our solutions are vital for effective incident management, ensuring minimal downtime and adherence to regulatory compliance while restoring normal operations.

  • Who: Anyone that has not held an IR tabletop in the last 6 months, or anyone that has a templated plan that was written over 6 months ago without testing. 
  • What: A comprehensive evaluation of your ability to detect, respond to, and recover from cybersecurity incidents effectively. 
  • Pain point: Fear of what might happen in the event of a data breach or adverse data incident.
  • Benefit: Gain confidence in your ability to avoid business disruption and build trust with your customers, partners, and regulators, and reduce the potential impact of security breaches on your business.
  • Deliverable: IR Capability Assessment Report with remediation advice, Incident Response Plan Review, Incident Response Team Assessment, Incident Detection and Analysis Capabilities, Incident Containment and Recovery Processes, Reporting and Recommendations.
  • Length: 2-4 weeks

Sales tools and resources

Partners should use the following sales tools and resources to help them sell Cyber Defense Group services.

Contact us to learn more

Additional notes

The SPIFF plan is valid for all new Cyber Defense Group services sold by December 31, 2025.

SPIFF payments are cumulative. For example, if a partner sells (5) $50K assessments, they will receive a SPIFF payment of $10,000.

Partners are encouraged to use the SPIFF plan to their advantage and sell any amount of Cyber Defense Group services.

Payment Terms

  • SPIFF payments will be made within 30 days after payment of services has been received from client
  • Signed SOW must be received before December 31, 2025 to qualify
  • For NET NEW deal registrations only – existing deals do not qualify