Penetration Testing and Security Assessment Agreement (Company Side)
A company-favorable Penetration Testing and Security Assessment Agreement that authorizes security testing with a scope, safe harbor, and disclosure terms that protect both sides.
Includes the fallback language to use when the counterparty objects, so you are not redrafting under pressure. A full custom draft prepared from your transaction, your counterparty, and the risks that are actually in front of you.
Frequently asked questions
The fee covers the finished document, filing-ready or send-ready as applicable, the supporting exhibits or attachments described in the scope, and a short cover memorandum explaining the choices made. It is fixed at this scope: one engagement. 2 rounds of revisions are included. If your matter falls outside that scope we tell you before starting and quote the difference — we do not bill past a flat fee without agreeing it first.
1 to 2 weeks from a complete set of instructions, plus time for the 2 rounds of revisions included in the fee. If you are working to a court deadline or a closing date, tell us when you order and we will confirm in writing whether we can meet it before you commit.
$2,450 is $325/hour × 7.5 hours — the time this deliverable takes in an ordinary security matter, at the firm's standard rate. Because it is a flat fee, the risk of the work running long sits with the firm: you pay $2,450 whether it takes us the estimate or twice it.
Third-party costs are never inside a flat fee and are passed through at cost, never marked up: court and agency filing fees, court reporter and transcript charges, expert witness fees, search vendor and e-discovery hosting charges, process server fees, and travel.
The business terms you have agreed so far, the counterparty and which side of the deal you are on, any existing draft, term sheet, or prior agreement, and your risk tolerance on the provisions that matter most to you. Send what you have — if something is missing we will tell you what else we need before the turnaround clock starts.
Clients also order
Other Security work MC Law prepares on a flat fee.
Penetration Testing and Security Assessment Agreement (Counterparty Side)
A Penetration Testing and Security Assessment Agreement, drafted from the counterparty position, that authorizes security testing with a scope, safe harbor, and disclosure terms that protect both sides.
Information Security Addendum and Vendor Security Requirements
An Information Security Addendum and Vendor Security Requirements that attaches concrete security controls to a contract instead of a vague promise of industry standards.
Penetration Testing and Security Assessment Agreement
A Penetration Testing and Security Assessment Agreement, drafted for your facts, that authorizes security testing with a scope, safe harbor, and disclosure terms that protect both sides.
Vulnerability Disclosure and Bug Bounty Program Terms
A custom-drafted Vulnerability Disclosure and Bug Bounty Program Terms that invites researchers to report flaws with a safe harbor clear enough that they will actually use it.
Security Questionnaire Response and Certification Support (Company Side)
A Security Questionnaire Response and Certification Support written to favor the company, covering the document that answers customer security questionnaires accurately, because a wrong answer becomes a misrepresentation claim.