09 962 7549 021 524242 support@tanglinconsultancy.co.nz
Ransomware Cost Calculator

What Would a Ransomware Attack Cost You?

One morning the screens say your files are encrypted. Nobody can work, invoices can't go out, and the clock starts running on a bill most owners have never calculated. Put in your numbers to see what an attack would cost your business – and how many years of proper protection that one bill would have paid for.

Your business

Estimates are fine. Everything updates as you type.

We add 30% on top for the real cost of employing someone (KiwiSaver, ACC, overhead).

Used to estimate the income that stops while systems are locked. Leave at 0 to exclude it.

Ransomware deliberately encrypts connected backups too. Recovery time is decided long before the attack.

Endpoint protection, email security, monitored backups – enter what you pay or have been quoted.

Cost of one attack
$0

based on your recovery time

Where it comes from
  • Wages paid while staff are locked out$0
  • Income not generated (opportunity lost)$0
  • Specialist response & rebuild$0
  • Catch-up once systems return$0
Years of protection one attack pays for
0

at your security spend

See how Tanglin prevents this

One bad day vs years of protection

The same money, two ways to spend it.

This is a deliberately conservative estimate. It counts idle wages (fully-loaded salary × the share of work that stops, over your recovery period), lost income (revenue pro-rated over standard working hours), specialist response and rebuild (an indicative base cost plus a daily rate for incident response and reconstruction), and catch-up once systems return. It deliberately excludes the ransom itself (which NZ authorities advise against paying, and which averages hundreds of thousands of dollars for small businesses), reputation damage, customer loss, legal costs and Privacy Act notification obligations – so the true exposure is usually far higher. Recovery times reflect industry findings: well-prepared organisations restore in days, while those without tested, isolated backups are commonly down for weeks. Figures are indicative; talk to us for an assessment of your actual exposure.

Why Tanglin's Security Is Not Optional

The Cheapest Ransomware Attack Is the One That Never Runs.

Every Tanglin client gets the full security stack – endpoint protection that contains threats the moment they appear, email security that stops the phishing message that starts most attacks, and monitored, isolated backups that are tested before you ever need them. Not as optional extras. As standard.

That's a deliberate choice. The number above is why we don't sell security as an add-on a client can decline to save a few dollars a month – because the few dollars a month is never what's really at stake. One prevented incident pays for years of the entire stack, and the incidents we prevent are ones you never hear about.

See the security stack

The Evidence

This Isn't Scaremongering – It's Well-Documented

Ransomware is the most studied cyber threat there is, and the numbers are consistent across every credible source:

Sources: Sophos State of Ransomware surveys; Statista ransomware downtime data; Datto/Kaseya State of the Channel research; CERT NZ quarterly incident reports (2023–2026). Figures are international and shown for context; Tanglin's calculator above uses your own inputs in NZD.

Find Out Where You're Exposed – Before Someone Else Does

We'll review your current protection, backups and email security, and tell you plainly what an attacker would find – no obligation.

Request a Security Review