We do not bundle advisory services into managed IT by default because the level of effort varies widely. The point is to make the scope clear before you buy: cadence, decision rights, deliverables, and the level of ETTE involvement.
Virtual CIO
Technology leadership
Scoped around roadmap, budget, lifecycle, vendor decisions, and senior-level guidance. This is high-level technology strategy, not hands-on AI implementation.
Typical shape: monthly or quarterly advisory cadence, with project support scoped separately.
Virtual CISO
Security leadership
Scoped around security governance, risk register ownership, policy, evidence requests, vendor-risk review, and board/security reporting beyond the managed security baseline.
Typical shape: fractional security leadership with a defined meeting cadence and evidence responsibilities.
AI Advisory
Foundations, Depth, Build
Scoped by maturity level: path-finding and governance first, broader organizational implementation second, and agentic/custom build planning only when readiness is proven.
Typical shape: Foundations as a defined first engagement; Depth as ongoing enablement; Build as discovery-first and separately estimated.