Scope of Work / Proposal SOW Reference: [SOW-YYYY-###] Date: [Proposal Date] Valid Until: [Expiry Date — 30 days]

1. Client Information

Client Company [Company Name]
ABN / ACN [Australian Business Number]
Primary Contact [Full Name, Title]
Email / Phone [[email protected] / +61 ...]
Billing Address [Street, City, State, Postcode]
Industry [Industry / Sector]

2. Executive Summary

lilMONSTER Cybersecurity proposes to deliver [brief description of engagement] to [Client Company]. This engagement follows the D.E.F.R.A.G. methodology — Detect, Evaluate, Fortify, Respond, Audit, Govern — and is designed to address the priority risks identified during the discovery phase. The total investment for this engagement is [Total AUD] (ex GST) delivered over [Duration].

3. Scope of Work

Phase 1 — Discovery & Current-Posture Assessment Weeks 1–2

Comprehensive review of existing security controls, asset inventory, network architecture, identity systems, and policy framework. Includes stakeholder interviews and documentation review.

Phase 2 — Remediation Roadmap & Quick Wins Weeks 3–4

Develop prioritised remediation plan with immediate "quick wins" that reduce risk within the first 30 days. Includes configuration changes, policy templates, and tooling recommendations.

Phase 3 — Implementation Guidance & Validation Weeks 5–8

Hands-on guidance during implementation of priority controls. Configuration validation, testing, and tuning. Includes staff awareness training and tabletop exercise.

Phase 4 — Governance & Handover Weeks 9–10

Establish ongoing governance cadence, finalise documentation, and transition to BAU. Optional: ongoing vCISO retainer arrangement.

4. Timeline & Milestones

MilestoneWeekDeliverablePayment
M1 — KickoffWeek 0Project initiation, access provisioning
M2 — Assessment CompleteWeek 2Current-Posture Report delivered30%
M3 — Roadmap ApprovedWeek 4Remediation plan signed off30%
M4 — Implementation ValidatedWeek 8Validation report, training complete30%
M5 — Project CloseWeek 10Final report, handover complete10%

5. Investment

ItemDescriptionAmount (ex GST)
Phase 1 — Discovery & Assessment[Detailed scope]AUD $[X,XXX]
Phase 2 — Roadmap & Quick Wins[Detailed scope]AUD $[X,XXX]
Phase 3 — Implementation Guidance[Detailed scope]AUD $[X,XXX]
Phase 4 — Governance & Handover[Detailed scope]AUD $[X,XXX]
Total Investment: AUD $[XX,XXX] (ex GST)

Payment Terms: As per milestone schedule above. Invoices issued on milestone completion, net 14 days. GST will be added for Australian clients. All amounts in Australian Dollars (AUD).

6. Terms & Conditions

  1. Engagement Period: This SOW covers the period [Start Date] to [End Date]. Any work outside this scope will be handled via a separate SOW or change request.
  2. Client Obligations: Client agrees to provide timely access to systems, personnel, and documentation required to complete the deliverables. Delays caused by Client may impact the timeline and are not the responsibility of lilMONSTER.
  3. Confidentiality: All information shared during this engagement is treated as confidential under our standard NDA. lilMONSTER will not disclose Client information to third parties without prior written consent, except as required by law.
  4. Intellectual Property: Deliverables produced under this SOW are licensed to Client for internal business use. lilMONSTER retains ownership of methodologies, tools, and templates used in delivery.
  5. Limitation of Liability: To the maximum extent permitted by law, lilMONSTER's total liability under this SOW is limited to the total fees paid. lilMONSTER provides consulting and advisory services; implementation decisions and outcomes remain the Client's responsibility.
  6. Termination: Either party may terminate this SOW with 14 days written notice. Client will pay for all work completed up to the termination date.
  7. Insurance: lilMONSTER maintains Professional Indemnity and Public Liability insurance. Certificates available on request.
  8. Governing Law: This SOW is governed by the laws of Victoria, Australia.

7. Agreement

This Scope of Work represents the agreement between the parties. By signing below, both parties accept the terms, scope, and investment outlined in this document.

For lilMONSTER
[Consultant Name], lilMONSTER Cybersecurity
Date: _________________
For [Client Company]
[Client Signatory Name], [Title]
Date: _________________