Transparent Pricing in Cyber Incident Response is More Critical Than Ever

In today’s ever-changing cyber landscape, one of the most overlooked factors driving up the cost of incident response isn’t just the sophistication of the attacks — it’s the pricing models being offered by the firms hired to help.

I recently attended my first NetDiligence®Summit and I was reminded of the trends in cyber threats and incident response services. Some of the trends we’ve been tracking at Resolute Strategic Services are now widespread industry concerns, directly impacting the financial fallout of cyber incidents.

Here are some key trends we’re seeing regarding cyber incidents:

  • The Minimum Flat Fee Problem One of the most surprising developments is the rise of minimum flat fees being charged upfront by some incident response firms. This model forces carriers or the victims to pay what in some cases are significant fees regardless of the scope of the work. At Resolute, we believe this creates an unnecessary financial burden on all parties involved. That’s why we refuse to charge minimum flat fees. At Resolute we stand by transparent, fair pricing — because we see ourselves as an industry partner, not just another vendor looking to inflate costs.
  • BEC Losses Surpass Ransomware Business Email Compromise (BEC) is causing more financial damage than ransomware, thanks to increasingly sophisticated phishing techniques powered by AI. These losses can hit harder and faster than the more headline-grabbing ransomware cases, making it clear businesses need to strengthen their defense across multiple threat vectors.
  • Personalized Attacks Are on the Rise Cyber criminals are getting creative and personal. We’ve come across incidents where threat actors sent flowers to a CEO’s home in a bid to exploit emotional vulnerabilities. They’re also launching smear campaigns on social media, attacking a company’s or individual’s reputation to force a payout. No tactic seems to be off-limits.
  • Simple Hacks, Major Losses We’re seeing a disturbing trend where basic security lapses, such as like compromised credentials, are leading to some of the largest financial losses. It’s not always the most complex attacks doing the most damage.

At Resolute, we’re dedicated to being both reliable incident response partners and providing excellent customer service. Our focus is not just on addressing immediate crises but on working closely with our clients to help protect their long-term reputation and stability. By offering transparent, fair pricing and responsive support, we aim to build lasting relationships based on trust and shared goals, ensuring clients receive the confidence and guidance they strive for when it matters most.

Published in March 2025 edition of Cyber Defense magazine