4TrustIt — Cybersecurity Baseline Platform for SMEs & Partners
Complete a credible cybersecurity self-assessment in 15–30 minutes. Share a professional Trust Report with insurers, banks, customers, or procurement teams — no account needed on their end.
Get started free
Partner Portal
What is 4TrustIt?
4TrustIt is a structured cybersecurity self-assessment platform designed for small and medium-sized businesses (SMEs). It helps businesses answer the growing number of cybersecurity questions from customers, insurers, banks, lenders, and procurement teams.
Unlike expensive formal audits or penetration tests, 4TrustIt provides a credible, well-structured assessment mapped to internationally recognised frameworks. It's fast, practical, and generates a shareable Trust Report — the proof you need in a format stakeholders actually understand.
For organisations managing supplier networks, banks, insurance brokers, MSPs, and IT consultants, 4TrustIt's Partner Portal provides a white-label platform to invite clients at scale, track completion, and manage portfolio security posture centrally.
The Problem We Solve
Cybersecurity questions are now routine in business. Banks ask before lending. Insurers ask before quoting. Large clients ask before onboarding. Procurement teams require vendor security assessments before signing contracts. Yet most SMEs have no structured, credible way to answer these questions. 4TrustIt fills that gap.
Who Uses 4TrustIt
- SMEs and owner-managed businesses (1–999 employees) — Companies that need to respond to cybersecurity questions from partners, clients, insurers, or lenders. Complete a free Quick Baseline in 15–30 minutes and share a Trust Report instantly.
- IT Consultants, vCISOs, and MSPs — Run structured baselines for every client. White-label the platform under your own brand. Deliver consistent, comparable assessments across your portfolio.
- Banks and Commercial Lenders — Require SME clients and suppliers to complete a structured cyber baseline as part of lending review, account onboarding, or supplier qualification. Track results centrally.
- Insurance Brokers and Underwriters — Pre-qualify clients on cyber risk before underwriting. Collect structured evidence of security posture across your book of business.
- Procurement and Vendor Management Teams — Assess supplier cyber risk at scale. Identify systemic gaps, request annual renewals, and export results for your risk register.
- Partner Ecosystems — Orchestrate your entire supplier or client network from one dashboard. White-label the whole experience — your name, your logo, your emails.
Assessment Types
- Quick Baseline — 30 questions, 15–30 minutes. Covers all 8 security domains. Free to start. Generates a scored Trust Report.
- Full Assessment — 90 questions, 45–75 minutes. Deeper coverage of each domain. Pro plan. Generates a detailed Trust Report with domain breakdown.
- Physical Services Declaration — For non-digital businesses (cleaners, trades, construction). Confirm no-IT status with a signed structured declaration.
8 Security Domains Assessed
- Governance & Risk Management
- Technical Controls & Patching
- Access Control & Identity
- Incident Detection & Response
- Supply Chain Security
- Data Protection & Backup
- Physical Security
- Security Awareness & Training
Framework Alignment
All questions are mapped to internationally recognised cybersecurity frameworks:
- CIS Controls v8 — Center for Internet Security
- NIST Cybersecurity Framework (CSF) — National Institute of Standards and Technology
- ISO 27001 — Cross-reference for common controls
CIS Controls v8
NIST CSF
ISO 27001 aligned
Developed with Swedish Telecom
The Trust Report
Once an assessment is complete, 4TrustIt generates a shareable Trust Report — a professional summary of your cybersecurity posture. The report includes:
- Overall maturity score (0–100)
- Maturity band: Initial, Developing, Defined, or Managed
- Credibility level based on evidence uploaded
- Domain-by-domain breakdown with scores
- Freshness indicator (date completed)
- Shareable public URL — no account needed for recipients to view
Recipients — insurers, banks, customers, procurement teams — can view your Trust Report without creating an account. The report URL is stable and can be included in RFPs, insurance applications, or vendor qualification forms.
View a sample Trust Report →
Key Platform Features
Fully White-Label Partner Portal
Your logo, your brand colour, your sender name. Clients see your firm throughout — not ours. Add your branding in minutes.
Bulk Supplier Invitations
Upload a CSV of contacts and invite them all at once. Automated branded emails go out with your message, deadline, and reminder sequence.
Portfolio Intelligence Dashboard
Maturity distribution, domain heatmap, sector benchmarks, risk matrix, and smart action feed — everything you need to manage your supplier portfolio.
AI-Powered Portfolio Summary
Generate a board-ready executive summary of your portfolio's security posture in one click, powered by Claude AI.
Evidence Locker
Upload supporting documents (policies, certificates, screenshots) to strengthen your credibility level and make your Trust Report more compelling.
Requirements & Compliance Tracking
Set minimum score thresholds and mandatory domains for your supplier network. Contacts are automatically flagged as compliant or non-compliant.
Professional PDF Reports
Branded, printable reports with domain breakdown, score, and framework alignment. Ready to share immediately. Pro plan removes watermark.
Automated Reminders & Renewals
Chase non-responders automatically. Request annual renewals in one click when assessments are 11+ months old.
Pricing
SME Plans
- Starter — Free forever. Quick Baseline (30 questions), scored report, watermarked PDF. 1 active assessment.
- Pro — €249/year. Full Assessment (90 questions), shareable Trust Report URL, clean PDF export, unlimited evidence uploads, multiple assessments.
Partner Portal Plans
Solo
€49/month
Up to 25 contacts. 10 completed assessments/month. Full white-label portal. Bulk CSV invite.
Practice
€129/month
Up to 100 contacts. 30 completed assessments/month. Portfolio analytics, domain heatmap, sector benchmarks.
Partner
€249/month
Up to 500 contacts. 100 completed assessments/month. Priority support. Annual billing saves 17%.
All Partner plans include a 7-day free trial. No credit card required to start.
See full pricing details →
Frequently Asked Questions
Is this a formal audit or certification?
No. 4TrustIt is a structured self-assessment — not a penetration test, formal audit, or the equivalent of ISO 27001 or Cyber Essentials certification. It is a credible, well-structured starting point that many customers, insurers, and lenders now accept as evidence of proactive cybersecurity management.
How long does it take?
The Quick Baseline takes 15–30 minutes and covers all 8 security domains with 30 questions. The Full Assessment takes 45–75 minutes and goes deeper across all domains with 90 questions.
Do recipients need an account to view my Trust Report?
No. Your Trust Report is shared via a public URL that anyone can view without signing up. It's designed to be attached to RFPs, insurance applications, lending reviews, and procurement questionnaires.
Can I use 4TrustIt to assess my suppliers?
Yes. The Partner Portal is specifically designed for this. You invite suppliers, clients, or vendors by email or CSV import. They complete the assessment on their own. You track results in a central dashboard with scores, domain breakdowns, and compliance status.
What frameworks are the questions mapped to?
All questions are mapped to CIS Controls v8 and the NIST Cybersecurity Framework (CSF), with cross-references to ISO 27001 controls. The assessment framework was developed in partnership with Swedish Telecom.
View all frequently asked questions →
Public Pages