Financial Data Disclaimer

Last updated: April 2026

1. About Financial Estimates in Vigil

Vigil includes a Financial Risk Translator feature that presents estimated financial exposures and return on investment (ROI) calculations associated with security gaps. These estimates ARE: ✓ Based on industry averages from published research ✓ Intended for educational and planning purposes ✓ Useful for framing security conversations with executives and boards These estimates ARE NOT: ✗ Guarantees of actual financial outcomes ✗ Financial, insurance, or legal advice ✗ Specific to your organization’s circumstances ✗ Actuarial calculations or risk assessments ✗ Endorsed by the source organizations cited

2. Data Sources

Financial estimates in Vigil draw from: IBM Cost of a Data Breach Report Annual research on the average cost of data breaches across industries and geographies. Verizon Data Breach Investigations Report (DBIR) Annual analysis of confirmed data breaches and security incidents worldwide. Ponemon Institute Research Independent research on cybersecurity economics and risk quantification. Tandem Lens Cybersecurity is not affiliated with, endorsed by, or sponsored by any of these organizations. Citations are for attribution only.

3. Important Notice

The financial figures presented in Vigil represent statistical averages across many organizations and incidents. Your actual exposure may be significantly higher or lower depending on: • Your industry and regulatory environment • The size and nature of your organization • Your existing security controls • Geographic location and applicable laws • The specific nature of a potential incident Always consult qualified legal, financial, and security professionals before making significant investment or risk management decisions.

4. Not Professional Advice

Nothing in Vigil constitutes: • Legal advice • Financial advice • Insurance advice • Professional security consulting • Regulatory compliance certification Vigil is a management tool. Decisions about security investments, compliance programs, and risk management remain the responsibility of your organization and its qualified advisors.

5. Contact

Questions about this disclaimer: support@tandemlens.net Tandem Lens Cybersecurity
Vigil — Security Posture Management