Professional Plan

M365 compliance with teeth — find gaps AND fix them

Everything in Starter plus a comprehensive compliance dashboard, 330+ automated remediation handlers, AI-powered insights, and basic Vault. Scan your tenant against 548 M365 controls across twelve compliance frameworks, then fix what's failing with one click.

Ideal for

  • IT managers responsible for Microsoft 365 security posture
  • Organizations working toward SOC 2, ISO 27001, or NIST compliance
  • Teams that need ongoing compliance monitoring and automated remediation

Professional

$499/mo

or $4,788/yr ($399/mo) — save 17%

One flat fee per tenant

No per-user or per-device fees — 10 users or 10,000, same price

Subscribe to Professional

548

M365 controls

330+

Auto-remediable

12

Frameworks

25

Team members

What's included

Everything in Starter, plus:

  • All Starter features (unlimited SOPs, all formats, branding, versioning)

Compliance Scanning

  • 548 M365 security controls assessed per scan
  • Twelve frameworks: CISA SCuBA, CIS Microsoft 365, NIST 800-53, NIST CSF, ISO 27001, SOC 2, HIPAA, GDPR, EIDSCA, Maester, ORCA, Veri-Tech
  • Six workloads: Identity, Intune, Exchange, Teams, SharePoint, Defender
  • Cross-framework mapping: every control traced to authoritative public sources
  • Side-by-side scan comparison for drift detection
  • 90-day job history

Automated Remediation

  • 330+ controls with one-click automated fixes
  • Just-In-Time (JIT) write permissions — granted before remediation, revoked after
  • Safety controls: report-only mode for Conditional Access, break-glass account protection
  • Disruption risk ratings for every control
  • Auto-generated runbooks for controls that require manual steps

Veri-Vault — Basic

  • Automatic config snapshots alongside every scan
  • Snapshot browser with deep content search
  • Side-by-side change detection between any two snapshots
  • CSV/JSON export for snapshots

Team Access

  • Up to 25 team members per tenant
  • Role-based access control (Owner, Admin, Viewer, Billing)
  • Invite flow with email pre-assignment, 7-day expiry, and require-invite toggle
  • User audit log — logins, invites, role changes, and removals
  • Bulk role changes with multi-select
  • Session revocation with 5-minute propagation

Dashboards & Reporting

  • Real-time compliance dashboard with pass/fail breakdown
  • Framework-level compliance scoring
  • Executive summary reports

AI Intelligence

  • AI-generated compliance insights after every scan
  • AI remediation planning with prioritized fix recommendations
  • Powered by Anthropic Claude — no tenant data stored by AI provider

Not included in Professional

  • Veri-Tune — 375 Intune endpoint security controls (Enterprise)
  • Veri-Patch — feature update intelligence + AU-scoped group sync (Enterprise)
  • Veri-Vault Full — config restore, drift alerting, Vault Activity Log, Tenant Reconnect Wizard, Emergency Accounts, git integration (Enterprise)
  • Compliance evidence packages (Enterprise)
  • Multi-tenant hub (Enterprise)
  • RBAC and 3-year data retention (Enterprise)
  • HIPAA Compliance Pack (Enterprise add-on)
Need Intune endpoint security, update management, config restore, and multi-tenant? Upgrade to Enterprise.

Frequently asked questions

How does the compliance scan work?
Veri-Tech reads your Microsoft 365 configuration via the Graph API and evaluates it against 548 controls across twelve frameworks including CISA, CIS, NIST 800-53, NIST CSF, ISO 27001, SOC 2, HIPAA, and GDPR. Scans typically complete in 1-3 minutes. Results appear on your compliance dashboard with pass/fail status, remediation options, and framework mappings.
How does automated remediation work?
Select failing controls from your dashboard and click "Remediate." Veri-Tech requests just-in-time write permissions, applies fixes (e.g., creating Conditional Access policies in report-only mode, updating security settings), and then automatically revokes write permissions. Break-glass accounts are always excluded, and every action is logged.
What is the difference between Professional and Enterprise?
Professional covers M365 compliance: 548 controls with auto-remediation across 12 frameworks, up to 25 team members, and basic Vault (snapshot browsing, change detection). Enterprise expands to the full Microsoft stack: adds 375 Intune endpoint controls (Veri-Tune with Policy Insights, modify-in-place remediation, and macOS / iOS / Android coverage), feature update management (Veri-Patch), full Vault with config restore and drift alerting, AI Compliance Copilot, unlimited team members, evidence packages, and 3-year retention.
How does team access work on Professional?
Professional includes up to 25 team members per tenant with role-based access control (Owner, Admin, Viewer, Billing). Invite colleagues by email with 7-day expiry, track their activity in the user audit log, bulk-update roles, and revoke sessions on demand (propagation within 5 minutes).
Can I use Professional for multiple tenants?
Professional covers a single Microsoft 365 tenant. For multi-tenant management, upgrade to Enterprise or contact us about MSP pricing.

Have more questions? View all FAQs or email us

Ready to get started?

Connect your Microsoft 365 tenant in under 60 seconds. No credit card required to explore.