Engagement Pricing
You pay for a compliance outcome, not a software licence. One-time implementation to build your governance programme. Annual fee to keep it current, monitored, and audit-ready.
Build Once. Stay Compliant Continuously.
Implementation fee (one-time)
Covers the initial buildout: full AI system inventory, risk classification, control implementation across your frameworks, policy drafting, impact assessments, evidence generation, and audit-ready documentation. This is the heavy lift, and it only happens once.
Annual governance fee (ongoing)
Covers 12 months of continuous compliance: scheduled review calls, drift monitoring, governance trigger responses, regulatory change updates, re-assessments, and renewed evidence packages. This is what keeps your governance programme current, and it is where the real value compounds year over year.
At renewal, you pay only the annual governance fee. No repeat implementation. The programme we built carries forward. we maintain it, improve it, and keep it audit-ready.
Essentials
For companies with 1–5 AI systems
Your first framework. Fully delivered.
Implementation (one-time)
Annual governance fee
Implementation deliverables:
- Complete AI system inventory
- Risk classification under your chosen framework (EU AI Act, ISO 42001, NIST AI RMF, SOC 2, or ISO 27001)
- Core policies (5–7) drafted and reviewed
- 1 fundamental rights impact assessment
- Published model cards
- Audit-ready evidence package
- VALID maturity assessment (Level 3 target)
- Compliance dashboard
- Handoff meeting with your team
Annual governance fee covers:
- Quarterly reviews (4 per year)
- Drift monitoring (48-hour SLA)
- Regulatory change monitoring
- Annual re-assessment
- Continuous platform access
- Dedicated governance lead
Professional
For companies with 5–15 AI systems
Multi-framework governance with agentic AI defence.
Implementation (one-time)
Annual governance fee
Everything in Essentials, plus:
- Multi-framework mapping (EU AI Act + 1 additional)
- Up to 15 AI systems
- Full impact assessments for all high-risk systems
- Full agentic defence suite
- Cross-framework mapping
- Board-ready compliance reports
- Remediation roadmap
- Incident response plans
- VALID Level 4 target
- Senior governance lead + technical delivery specialist
Annual governance fee covers:
- Monthly reviews (12 per year)
- Continuous drift monitoring (same-day)
- Governance trigger response (24-hour SLA)
- Regulatory change assessment (5 business days)
- Tabletop exercises (2 per year)
- Quarterly board reports
- Annual re-assessment across all frameworks
Enterprise
For companies with 15+ AI systems
Full-spectrum AI governance with guaranteed audit readiness.
Implementation (one-time)
Annual governance fee
Everything in Professional, plus:
- All 6 frameworks
- Unlimited AI systems
- Dedicated governance analyst
- Tool integrations
- D-05 agentic control
- Decision log hash chain
- Auditor portal
- White-labelled reporting
- Adversarial testing matrix
- VALID Level 5 target
Annual governance fee covers:
- Fortnightly reviews (26 per year)
- Real-time monitoring
- Critical trigger response (4-hour SLA)
- Standard trigger response (24-hour SLA)
- Regulatory change response (48 hours)
- Tabletop exercises (4 per year)
- Quarterly board reports
- Quarterly executive review
- Audit prep (20 hours per cycle)
Audit pass guarantee. If any delivered framework fails its corresponding audit within 12 months, Norivo remediates at no additional cost until it passes.
Year 1 vs Renewal
| Tier | AI Systems | Implementation | Annual Fee | Year 1 Total | Renewal |
|---|---|---|---|---|---|
| Essentials | 1–5 | £10K–15K | £5,000/yr | £15K–20K | £5,000/yr |
| Professional | 5–15 | £25K–40K | £10,000/yr | £35K–50K | £10,000/yr |
| Enterprise | 15+ | £from 50K | £20,000/yr | £from 70K | £20,000/yr |
Implementation is a one-time investment. At renewal, you pay only the annual governance fee.
Transparent Pricing. No Hidden Costs.
Your implementation fee covers:
- Discovery and AI system inventory
- Risk classification across your frameworks
- Control implementation (technical and procedural)
- Policy drafting and review
- Impact assessments and model cards
- Evidence generation and audit-ready documentation
- VALID maturity assessment
- Compliance dashboard setup
- Handoff to your team
Your annual governance fee covers:
- Scheduled review calls (cadence depends on tier)
- Drift and trigger monitoring
- Governance trigger response (24–48 hour SLAs)
- Regulatory change updates
- Re-assessment and renewed evidence packages
- Continuous platform access
- Audit prep support
The annual fee is deliberately affordable. Once we build your governance programme, maintaining it is largely automated through the platform.
Norivo vs the Alternatives
Most companies pick between hiring a governance lead, retaining a consultancy, or stitching together GRC software. Here is how engagement pricing compares.
| Dimension | Internal Hire | Consultancy | Norivo |
|---|---|---|---|
| Cost | £60K–£90K/year salary | £30K–£80K per framework | £15K–£70K+ year 1, £5K–£20K renewals |
| Time to compliant | 6–18 months | 3–12 months | 30–90 days |
| Team | 1 person (whoever you hire) | External team for the engagement | Full delivery team + platform, always on |
| Continuity | Governance stops if they leave | Report delivered, then they leave | 12 months of continuous governance |
| Framework coverage | 1–2 frameworks (expertise-limited) | 1 framework per engagement | Up to 6 frameworks in one engagement |
| Automation | None (manual workbooks) | None (deliverables in PDFs) | Platform-automated monitoring + evidence |
| Cost over time | Salary every year + benefits + ramp | Every new framework = new invoice | Implementation once, low fee thereafter |
Add-Ons
Optional extensions to your engagement, priced separately and scoped on your call.
Additional framework
£5,000 implementation + £2,000/year
Additional AI systems
£1,000/year per 5 systems
Agentic defence (Essentials add-on)
£5,000 implementation + £2,000/year
Custom policy drafting
£250/hour
On-site audit support
£2,000/day + travel
Staff training
£3,000/day on-site or £1,000 per 2-hour virtual session
Vendor AI assessment
£2,000 per vendor
GRC / ISMS integration
£5,000 – £15,000 (scoped)
EU AI Act Deadline: August 2, 2026
High-risk AI system provisions take full effect on August 2, 2026. Organisations deploying AI systems that serve EU citizens must comply regardless of where they are based. Penalties reach €35M or 7% of global turnover.
Book a Scoping CallFrequently Asked Questions
Book Your Scoping Call
Tell us about your AI systems. We will scope your engagement on a 30-minute call.
Ready to Be Compliant?
Book a scoping call and we will tell you exactly what your engagement looks like. 30 minutes.