& Managed Security
Continuous oversight and calm, expert support once your foundations are in place.
Compliance-in-a-Box™ gives you a defensible starting point. Ongoing Compliance keeps it alive.
SecureWeb’s ongoing service is for organisations that want someone watching the controls, tracking changes in their environment, and keeping documentation and evidence up to date. We combine monitoring, reviews, and advisory support so you stay aligned to the law without having to build a full internal security team.
Is Ongoing Compliance & Managed Security Right for You?
This service is designed for organisations that understand compliance is not a one-off project. If any of these sound familiar, Ongoing Compliance is likely a good fit.
SMEs without internal security teams
Regulated and high-risk organisations
Growing organisations with rising digital risk
What’s included in Ongoing Compliance
Ongoing Compliance is not just “monitoring”. It’s a structured service that keeps your controls, documentation, and evidence in sync with how you actually operate.
Security Monitoring
We provide round-the-clock monitoring over agreed systems and services, watching for suspicious activity, misconfigurations, and high-risk changes. Alerts are triaged and escalated according to a clear, documented process.
Access Control & Governance
We help you maintain role-based access, joiner–mover–leaver reviews, and regular checks on privileged accounts. The goal is simple: only the right people, with the right level of access, for the right amount of time.
Cloud & Data Security
Most data now lives in cloud platforms. We support you with data classification, secure configuration, cross-border awareness, and encryption-by-default where appropriate — aligned to the CDPA and other applicable regulations.
Ongoing Protection Plans
Built for African Small and Medium Enterprises that want compliance to stay current, not just “once-off”.
.
Essential – Ongoing Protection
From $500/month
flexible invoicing | qtrly/semiannual/annual
Keep your CDPA basics compliant and your documentation from going stale
- Light-touch monitoring of your key controls and risks
- Quarterly review of RoPA, policies, and consent language
- Simple updates as your systems, vendors, or processes change
- Email support for “Is this a risk?” or “Do we need to document this?” questions
- Incident support: guidance via email/remote call for basic incidents, with a clear path to escalate if it’s serious
- COMING SOON! DPO-as-a-Service: available as an optional add-on for organisations that meet CDPA DPO expectations
Core – Managed Compliance & Security
From $1,200/month
(Our most popular plan)
flexible invoicing | qtrly/semiannual/annual
Your virtual compliance and security team, on call.
- Everything in Essential, plus:
- Dedicated contact responsible for keeping RoPA, DPIAs, and key policies current
- Regular risk reviews mapped to your systems, vendors, and cross-border flows
- Leadership-friendly updates on compliance status and key risks
- Incident response support: structured triage, help deciding if a breach is notifiable, and assistance drafting DP3 submissions
- COMING SOON! Preferred DPO-as-a-Service pricing – simple monthly add-on when you need a named DPO of record
Beyond-the-Box™ – High-Risk / Regulated
Custom pricing
flexible invoicing | qtrly/semiannual/annual
For regulated, high-risk, or mission-critical environments that need deeper support.
- Everything in Core, plus:
- Senior consultant or DPO assigned as your ongoing lead for CDPA and security governance
- Tailored control framework and reporting aligned to your sector (financial, health, education, public, etc.)
- Support preparing for audits, inspections, and board/regulator briefings
- Priority incident management: hands-on guidance during major incidents, including coordination of technical teams, legal, and communications
- COMING SOON! DPO-as-a-Service typically included as part of the engagement, with clear scope and responsibilities defined up front