SOC 2 cost calculator.
Pick the inputs that match your context. The calculator returns a year-1 range, year 2 and 3 cost, three-year total, and the line-by-line breakdown. No email is captured. Print the result for a finance committee with the print stylesheet.
- Audit firm fee£24,700 – £41,800130 to 220 auditor hours at £190/hr
- Readiness£7,200 – £18,0008 to 20 consultant days at £900/day
- GRC platform (none)£0 – £0No platform in this scenario
- Internal time£18,800 – £33,800250 to 450 hours at £75/hr
How the model works
It works bottom-up. You describe the scope; the model assumes an hour or day count from it; you supply the rates; the total is the arithmetic of the two. Nothing is reverse-engineered from a headline figure, and every component shows the working that produced it.
Scope drives auditor hours: the size band sets a baseline, the audit type adjusts it (a Type 1 has no observation window and no sample testing, so it is assumed to take a fraction of the Type 2 hours), and each optional Trust Services Criterion widens it. Maturity is applied to readiness and internal time but never to the audit fee, because a mature programme does not make the auditor's testing cheaper. Year 2 repeats the audit in full, because SOC 2 has no surveillance audit.
The platform line is the exception, and it is the one part of a SOC 2 budget with real published prices behind it. The vendors list annual figures on AWS Marketplace in US dollars; this model works in pounds; so it asks you for your contract value rather than doing the exchange arithmetic and presenting the result as somebody's price. The published dollar SKUs are on the GRC platforms page.
Every hour count and factor above is this site's assumption, not an observed market figure. Audit firms publish no fees, so the output is a way to sanity-check a quote you have been given, never a market price. All the assumptions are listed, with the reasoning for each, on the methodology page.
Print and share
The calculator above prints cleanly. Use your browser's print function (Ctrl/Cmd P) to save the scenario as a PDF for a CFO conversation or a finance committee paper. The print stylesheet hides the navigation and footer.
No email gate, no signup, no exit-intent. The result is static when printed, with the input set visible at the top for reproducibility.