OptiTech pricing

Start for free. Add frameworks and integrations as you grow.

OptiTech pricing plans

  • Start

    2,995 kr/mo

    For companies with 5–30 employees getting compliant for the first time.

    Get started

    Compliance

    • 1 framework

    • Automated gap analysis

    • 50+ Swedish policy templates

    • MSB and IMY incident reporting

    • Risk register

    Platform

    • 10 integrations

    • BankID login

    • EU data residency

  • Professional

    7,995 kr/mo

    For companies with 30–150 employees managing several frameworks at once.

    Get started

    Compliance

    • 3 frameworks

    • Everything in Start

    • Vendor risk management

    • Trust Center

    • Security awareness training

    Platform

    • All integrations

    • AI copilot

    • Auto-remediation

  • Enterprise

    From 19,995 kr/mo

    For companies with 150+ employees and regulated financial institutions.

    Contact sales

    Compliance

    • Unlimited frameworks

    • Everything in Professional

    • DORA package

    • Auditor portal

    • Dedicated customer success manager

    Platform

    • SSO and SCIM

    • API and CLI access

    • Custom onboarding

Special programs

Partner Plan

Accountants and advisors

Custom rates for managing compliance across many clients.

Learn more about Accountants and advisors
Startup Program

Early-stage startups

Get compliant early with discounted onboarding and credits.

Learn more about Early-stage startups
Open Source Program

Nonprofits and open source

Discounted plans for mission-driven organizations.

Learn more about Nonprofits and open source
    • Frameworks and scoping
    • Frameworks includedNIS2, DORA, GDPR, ISO 27001, AI Act
    • Automated gap analysis
    • Cross-framework mappingDo once, prove everywhere
    • Swedish legal textsBuilt from MSB regulations (MSBFS)
    • Evidence and integrations
    • Integrations
    • Continuous evidence collectionMFA, offboarding, backups, patching
    • Swedish integrationsFortnox, Visma, BankID, Kivra
    • Auto-remediationFix failing controls via API or ticket
    • Compliance as codeAPI, CLI, CI/CD checks
    • Documentation and incidents
    • Swedish policy templates
    • Version controlAnnual review cycles with reminders
    • Employee e-signing
    • MSB incident reporting24h early warning, 72h report, 1 month final
    • IMY breach reportingGDPR 72-hour flow
    • Risk and vendors
    • Risk register
    • Vendor risk managementRegister, questionnaires, risk classes
    • DORA ICT contract registerReady for supervisory review
    • People and training
    • Security awareness trainingIn Swedish
    • Board and management trainingRequired by NIS2
    • Phishing simulation
    • Trust and audit
    • Trust CenterPublic security page
    • Compliance score and board reports
    • Auditor portalRead-only for auditors and supervisors
    • Platform and support
    • AI copilotAsk questions in Swedish
    • BankID login
    • SSO and SCIM
    • EU data residencySwedish and EU data centers
    • Team members
    • Support
  • Start

    2,995 kr/monthGet started
    • 1
    • 10
    • 50+
    • Add-on990 kr/month
    • Unlimited
    • Email
  • Professional

    7,995 kr/monthGet started
    • 3
    • All
    • 50+
    • Add-on990 kr/month
    • Unlimited
    • Priority email
  • Enterprise

    from 19,995 kr/monthGet started
    • Unlimited
    • All
    • 50+
    • Add-on990 kr/month
    • Unlimited
    • Dedicated CSM

Included with every OptiTech plan, by default. These are core capabilities that come out of the box with OptiTech.

  • Five frameworks.

    NIS2, DORA, the EU AI Act, GDPR, and ISO 27001, mapped and kept up to date so you don't have to read the regulations yourself.

  • Continuous evidence.

    OptiTech collects evidence automatically from your systems, so your controls stay verified between audits, not just once a year.

  • AI documentation.

    Generate policies, risk assessments, and control documentation from your answers, drafted in minutes instead of weeks.

  • Live dashboards.

    Real-time visibility into your compliance posture, open gaps, and control status across every framework in one place.

  • Swedish integrations.

    Connect the systems you already use, including Fortnox, Visma, BankID, and Kivra, to pull evidence without manual work.

  • Authority reporting.

    Built-in incident reporting flows to Swedish authorities like MSB and IMY, with the 24-hour, 72-hour, and one-month steps handled for you.

  • Vendor management.

    Track your suppliers and their compliance status, and send assessments to your supply chain from inside OptiTech.

  • EU data residency.

    Your data stays in the EU, in European regions, under European ownership. Learn more on our Security page.

Your questions,
answered

  • OptiTech is priced as a flat monthly fee per plan, billed annually. No usage meters, no per-seat charges, and no hidden costs - the price you see on this page is the price you pay. Start is 2,995 kr per month, Professional is 7,995 kr per month, and Enterprise starts at 19,995 kr per month depending on your size and requirements.

    All prices are in SEK and exclude VAT.

  • A framework is a regulation or standard you need to comply with: NIS2 (the Swedish Cybersecurity Act), DORA, GDPR, ISO 27001:2022, or the EU AI Act. Your plan determines how many frameworks you can activate.

    Controls are cross-mapped between frameworks, so one control can satisfy requirements in several frameworks at once. If you've already done the work for ISO 27001, most of it counts toward NIS2 too.

  • NIS2 requires you to report significant incidents to MSB in three steps: an early warning within 24 hours, an incident report within 72 hours, and a final report within one month. OptiTech guides you through each step with pre-filled forms based on your incident data, deadline countdowns, and communication templates for customers, press, and internal teams.

    The same applies to personal data breaches under GDPR: OptiTech includes the corresponding 72-hour reporting flow to IMY.

  • Yes. Start with our free "Does NIS2 apply to us?" assessment: answer 20 questions about your industry, size, systems, and customers, and get a report showing which laws apply to you, which NIS2 category you fall into, and a prioritized list of gaps. Book your free gap analysis here.

  • Yes. You can upgrade your plan or add frameworks at any time, and the work you've already done carries over. Because controls are cross-mapped, a new framework often starts well on its way to complete, based on the controls you already have in place.

  • All customer data is stored in Swedish and EU data centers, under EU ownership. We publish our full list of subprocessors, and no customer data is sent to US-based AI providers - our AI features run on EU-hosted models. We also use our own product internally and maintain our own ISO 27001 certification.

  • Yes. The Partner plan gives IT service providers, accounting firms, and advisors a multi-tenant console to manage compliance for all their clients, with volume discounts and white-label options. Contact us for partner pricing.

  • Beyond the plans, you can add:

    • Onboarding packages: guided setup with our team, from 25,000 kr depending on scope
    • NIS2 board training: fixed price 15,000 kr, covering the governance and personal liability requirements for boards and management
    • Phishing simulation: 990 kr per month
    • vCISO hours: hands-on security expertise through our partner network
  • Because hiding prices behind sales calls wastes your time. Most compliance platforms require a demo and a negotiation before you see a number. We publish our prices so you can evaluate, budget, and buy on your own schedule. If you have questions, talk to us - but you don't have to.

ASK AI

Still have questions? Ask our AI.

It knows OptiTech inside and out.