What changed
Every security budget conversation eventually arrives at the same question: why this number? The Operating Plan is live in Executive Intelligence for Business plans and above, and it’s the thing that answers it. Your risk register already prices every scenario in dollars; the Operating Plan spends against it.

Why it matters
Security budgets die as lists. Everything sounds necessary, nothing is ranked, and whatever didn’t fit just quietly doesn’t happen. The funding line ends that. Programs order themselves by the loss each dollar buys down, your budget decides where the money stops, and everything below the line stays on the table with a reason. The argument stops being “do we really need all this?” and becomes “is this the right number?”
Cuts get priced before they get made. Finance’s counter runs against the same exposure data, so a 10% cut arrives with its cost in expected loss attached. Either the cut shrinks, or the business chooses it with eyes open. You never absorb it silently.
Unfunded risk stops being quietly yours. The accept-risk path records rationale, attests the decision to the chain, and seals it when the plan becomes plan of record. When “who decided this?” gets asked, the answer is on the record.
Availability
Live today for Business plans and above. Reporting → Forecasting → Operating plan in your tenant.
The full walk-through is on the Operating Plan page. Programs are proposed from the maturity gaps and open findings already in your tenant, so the first plan opens with real line items instead of an empty table.
Known limitations
The funding line prices against scenarios already in your risk register. Scenarios that aren't priced in dollars yet don't appear on the plan until they are.
Program estimates arrive as labeled starting figures from the maturity gap or finding they close. Replace them with your own quotes before you take the plan to a CFO who will test the numbers.
The packet renders from the plan of record. When you promote a new plan, the previous packet's figures are archived to the version it was built from rather than retroactively re-rendered.