Three tiers.
One standard:
audit-ready, always.
Transparent per-user pricing. Minimum headcounts that keep engagements senior. A one-time setup fee that covers the architectural lift. No hidden licence markups β ever.
Start with the Scale Readiness Assessment.
Evaluate whether your technology, security, compliance, and operational foundations are ready to support the next stage of growth. A structured deep-dive that surfaces what's holding you back β and what to fix first.
Scale Readiness Report & 90-Day Roadmap
A prioritized action plan showing exactly where your foundations need to strengthen β and the sequence to get there without slowing the business down.
50% credited back (β¬1,750) if you sign a management plan within 30 days of receiving your report.
Book the Assessment βThree tiers. Priced to qualify.
Minimum user floors filter out low-value engagements so every client gets senior-led delivery. All pricing is per user, per month (excl. VAT). Setup fees cover the architectural lift of onboarding your Apple fleet, Okta directory, and HRIS integrations.
Licences for third-party tools (e.g. Iru, Jamf, Okta, Huntress) are not included β these must be supplied by you (BYOL). We assist in procuring them through our network where possible.
Audit-Ready IT
Scale-ups facing ISO 27001 audits, NIS2 scrutiny, or enterprise due diligence.
Minimum 30 users Β· Min. β¬5,250/mo
+ β¬6,500 one-time setup fee
Your stack, your assets.
Skales operates on a strict Bring Your Own Licence (BYOL) framework. We don't act as a middleman for software billing, hide markups in licence costs, or hold your IT infrastructure hostage.
Direct supplier relationships
Built on 20 years of experience, trusted relationships, and short communication lines, we match your environment with the ideal tech stack. We connect you directly to authorized Dutch suppliersβincluding Apple hardware suppliers and Google Workspace resellersβat standard market rates. No reseller markups, just direct connections.
Transparent billing
You pay the technology vendors directly. Our invoice covers management only. What you see on this page is what you pay us.
Total sovereignty
If you ever outgrow Skales, simply revoke admin access. Your tenants, data and configurations remain entirely yours. No painful migrations, no lock-in.
Work outside the retainer
Complex migrations, M&A integrations, custom HRIS automation, and tenant-to-tenant moves are scoped and billed separately β protecting your monthly margin and our engineering capacity.
Typical scopes: Google Workspace β M365 migrations Β· Merging Okta directories Β· Custom HRIS webhook automation
Min. 4-hour blocks
Retainer clients get scheduling priority. Non-retaining clients are subject to engineering availability.
App Pricing Strategy
When clients require automated onboarding for tools outside the Core 5 (e.g., GitHub, HubSpot, Zoom), there are two extension pathways:
The Flexible A La Carte Add-on
Recommended for Low Volume
Best for clients adding only one or two enterprise platforms to their day-one automation flow.
The Birthright Expansion Pack
Recommended for High Growth
If a client requires 4 or more additional apps, they are automatically transitioned into a flat-rate expansion bundle. This eliminates micro-billing friction while driving significant recurring revenue growth.
Please Note: Any application that does not natively support SAML 2.0 or SCIM provisioning on the client's current license tier is strictly excluded from automated lifecycles. We will not manually create, modify, or delete accounts for unsupported software tiers. Manual remediation remains the responsibility of the client's respective department heads.
What's in each tier.
| Capability | Tier 1 | Tier 2 | Tier 3 |
|---|---|---|---|
| Apple MDM & zero-touch deployment | β | β | β |
| Google Workspace administration | β | β | β |
| * Endpoint Detection & Response (EDR) β we roll out the EDR (e.g. Huntress, Iru EDR) but we are not fulfilling SOC services | β | β | β |
| OS patch management | β | β | β |
| Application patch management | β | β | β |
| Basic IT asset management (overview of computers in use) | β | β | β |
| Named engineer Β· Slack support | β | β | β |
| Identity Provider (Okta / JumpCloud) | β | β | β |
| SSO & phishing-resistant MFA | β | β | β |
| HRIS-triggered onboarding & offboarding | β | β | β |
| Role-based access provisioning | β | β | β |
| Identity Governance (IGA) & access reviews | β | β | β |
| Shadow IT discovery & risk scoring | β | β | β |
| Least privilege & just-in-time elevation | β | β | β |
| Compliance evidence pack (NIS2 / SOC2 / ISO 27001) | β | β | β |
| SSO implementation of core apps | β | 5 | 10 |
| Regulator & auditor liaison | β | β | β |
Four steps to audit-ready.
Intro Call
60 minutes. We listen, ask the hard questions, and send a written assessment within a week.
Scale Readiness Assessment
β¬3,500 flat. Deep-dive on infrastructure, security, compliance and governance. 50% credited back if you sign.
Implementation
Phased rollout using your own licences. Production-quality from day one β no multi-month POCs.
Ongoing Management
Named engineers, monthly reviews, quarterly board updates. Continuous evidence, not an annual scramble.