Maritime compliance · coastal & inland

Stay inspection-ready without a compliance department.

VesselMark turns the rules your vessels answer to — Sub M / TSMS, USCG cyber, IMO, NIST, ISO 27001 — into plain-English controls you pick and choose, keeps your evidence tamper-proof, and emails you before anything lapses. Documentation-first — no sensor, no SOC.

USCG Sub M / TSMS · USCG MTSA Cyber · IMO MSC.428(98) · NIST CSF 2.0 · ISO 27001:2022

Fleet readiness2 deadlines in 30 days

M/V Gulf Sentinel

92%

M/V Bayou Runner

74%

Barge OH-2207 (inland)

48%

Reminder · from VesselMark
“Quarterly cyber incident drill is due in 9 days for M/V Bayou Runner.”

We keep you on track

Staying on top of controls is the hard part. So we do it.

Drills, log refreshes, patch cadence, annual reviews — VesselMark schedules them, tracks what's due, and emails your team before anything slips. You see exactly what's outstanding in plain English, and your readiness updates the moment you close a gap.

Monthly access-log review20d overdue
Patch cadence checkdue in 3d
Annual penetration teston track

The product

Compliance management, not a science project.

Documentation-first. No shipboard hardware, no network agents, no 24/7 monitoring obligation — just a clear, defensible record of where each vessel stands.

Choose the modules you need

Sub M / TSMS, USCG cyber, IMO, NIST, ISO 27001 — turn on the frameworks your vessels actually answer to, and add more as your obligations grow.

Learn more →

Do the work once

One control can satisfy several frameworks at once. Map it once; see credit everywhere it applies across the modules you run.

Plain-English controls

Every control has a plain-language title and guidance — see what's outstanding without a cybersecurity degree.

Tamper-evident evidence

Documents are content-hashed and held in write-once storage, so your evidence trail stands up to scrutiny.

One-click inspection packet

Export your posture and evidence index for a PSC, USCG, or class review — a defensible point-in-time snapshot.

Sits beside Helm CONNECT

Helm and TBS stay as daily ops, maintenance, crew, and Sub M recordkeeping. VesselMark is the documentation and evidence layer.

Learn more →

Built to be trusted

We run our own controls against ourselves.

Enforced multi-factor auth · strict tenant isolation · write-once evidence + append-only audit trail · encryption at rest · least-privilege throughout.

Pricing

Simple, per vessel, per month.

Coastal or inland, four boats or thirty — pay for what you run. No per-user tax, no “book a demo to see the price,” no renewal surprises. 14-day free trial, no card required.

Fleet

$500/vessel/mo

or $5,400/vessel/yr — save 10%

  • ✓ Maritime Cyber (USCG / IMO) or Sub M / TSMS
  • ✓ Unlimited users
  • ✓ Write-once evidence + append-only audit trail
  • ✓ Statement of Applicability + inspection packet
  • ✓ Drill, review and renewal reminders before anything lapses
  • ✓ Cancel anytime
Start free

Shoreside ISMS

$500/mo

ISO/IEC 27001:2022 for the office — billed once for your organization

  • ✓ Full ISO/IEC 27001:2022 control set
  • ✓ Risk register, internal audits, management review
  • ✓ One-click audit pack
  • ✓ Adds on to any fleet subscription
  • ✓ Cancel anytime
Talk to us about a pilot

Each framework module is priced separately — vessel-scoped modules per vessel, shoreside modules per organization. Annual billing saves 10% on every module.