For investors, vCSOs & the boards they answer to
Cyber risk, priced in dollars.
Theodolite deploys a scanner inside the environment you're invited into — a portfolio company, a client — and turns verified cloud evidence into a dollar-denominated exposure estimate, a prioritized fix plan, and a board-ready report. FAIR methodology, CIS Controls v8, every finding backed by live cloud evidence.
30-minute call. No slides. Real numbers from a real scan.
Frameworks & standards we map against
Cloud Evidence
Risk Frameworks
Data Discovery
CIS v8 Compliance
Theodolite
Illustrative example
In 30 minutes, Theodolite helps you answer the most important question
“How much could we lose?”
A different approach to cyber risk.
Traditional
- ✕Siloed scans with no business context
- ✕CVSS scores that mean nothing to the board
- ✕Weeks to compile a risk report
With Theodolite
- ✓Total cyber exposure quantified in dollars
- ✓Board-ready risk reports in days, not weeks
- ✓One cyber risk balance sheet for your CFO
The Story Behind Theodolite
“I built Theodolite because no tool gave me what I needed in that boardroom: a single number, in dollars, that told the truth about our risk posture.”

Founder, Theodolite & vCSO
15 years CSO, SVB
◆Author, “Cyber War…and Peace” — on translating cyber risk for boards
Cyber Risk Balance Sheet
Every finding in dollars.
Access Intelligence
See who can reach the value at risk. Over-permissioned identities, external access, and blast radius — mapped from live cloud permissions and graded by access and data reach.
See who can reach your value at riskCompliance Automation
209 assessment questions — 153 CIS Controls v8 and 56 cyber due-diligence — auto-answered from live cloud evidence.
Run it on your own environmentData Discovery
Scan Azure, AWS, SharePoint, and Box for PII, PHI, and exposed credentials — inside the customer environment, never stored on our servers.
See what a scan surfacesHow it Works