Fixed Fees, Scoped Before You Commit
Two risk-analysis tiers by practice size, remediation quoted only where a finding points at it, and senior advisory by the hour.
HIPAA Security Rule risk analysis
Solo Practitioner
One clinician, a few staff, one location, and a Microsoft 365 or Google Workspace tenant nobody has looked at since it was set up.
Scope is fixed on the scoping call and does not change afterward. Annual Refresh: 40–50% of the initial fee for existing clients.
Start Your Risk AnalysisSmall Group
Four to fifteen people, shared systems, an EHR, and a growing list of vendors who touch patient data.
Scope is fixed on the scoping call and does not change afterward. Annual Refresh: 40–50% of the initial fee for existing clients.
Start Your Risk AnalysisAfter the baseline
Remediation & Hardening
Findings become fixes on NinjaOne, Guardz, and Microsoft 365, done by the same person who signed the report.
Quoted per project after the risk analysis, when we know what needs fixing.
Contact UsvCISO & Senior Advisory
Senior security judgment when the situation genuinely needs it, without hiring a security department.
Billed hourly. No retainer required.
Contact UsSaberGuard assesses and advises. It does not warrant or certify compliance, and nobody honest will promise you an audit outcome. What you get is a defensible analysis, a plan, and a person who answers the phone.

“You are not buying a binder. You are buying the ability to answer, on the day someone asks, exactly what you did to protect patient data — and to show your work.”
SaberGuard is deliberately small. You work directly with the person doing the assessment — there is no junior analyst running a template and no account manager between you and the findings.
Read the full background