Our blog

Resources and Insights

What changed in European compliance, what it requires, and what to do about it.

Risk Management

What Is a Risk Matrix? Scoring Explained

How likelihood and impact combine into a score, with a 5x5 example.

Maurice Müller

Maurice Müller

09.09.26

Risk Management

What is supplier risk management? A practical guide

How to assess, score, and monitor supplier risk, step by step.

Maurice Müller

Maurice Müller

04.09.26

Platform

Formalize Marketplace: How Blueprints Work

Partners co-build ready-to-deploy blueprints, so you skip the blank page.

Maurice Müller

Maurice Müller

02.09.26

Risk Management

Risk Management Frameworks: Types, Steps & Examples

NIST, ISO 31000, or COSO: compare the frameworks and pick one that fits.

Maurice Müller

Maurice Müller

01.09.26

NIS2

NIS2 Requirements: Key Pillars & Checklist

What NIS2 actually requires, and how to check where your organization stands.

Maurice Müller

Maurice Müller

25.08.26

Platform

Your Controls Were Right. Are They Still?

AI that reads the actual ISO 27001 standard, not just summaries about it.

Maurice Müller

Maurice Müller

24.08.26

Platform

Stop Digging for Answers. Start Asking.

Your compliance records can finally answer questions, not just sit there.

Maurice Müller

Maurice Müller

24.08.26

Person typing on a laptop, with an overlay showing the three pillars of information security: confidentiality, integrity, and availability.
ISO 27001

What is ISO 27001? ISMS Standard & Compliance Explained

ISO 27001 is the international standard for managing information security risk.

Maurice Müller

Maurice Müller

20.08.26

EU AI Act

EU AI Act: What the Digital Omnibus changed, and what it means for your organisation

The EU AI Act's Digital Omnibus has extended key compliance deadlines for high-risk AI systems. The headline is easy to misread: this is not a pause. The obligations remain. The timeline shifted.

Maurice Müller

Maurice Müller

18.08.2026

Professional reviewing a GRC dashboard showing governance, risk, and compliance metrics.
GRC

What is GRC? Governance, Risk, and Compliance Explained

GRC stands for Governance, Risk, and Compliance. The GRC meaning goes beyond the acronym: it describes how organisations structure their internal rules, manage uncertainty, and meet external regulatory requirements, not as three separate workstreams, but as one connected approach.

Maurice Müller

Maurice Müller

31.07.2026

Team working in a meeting room, with a colleague holding a laptop in the foreground.
NIS2

What is NIS2? The EU cybersecurity directive, and what it means for your organization

NIS2 is the EU's updated directive on network and information security. It sets binding cybersecurity requirements for organizations across critical sectors in Europe, and since October 2024, it is in force.

Maurice Müller

Maurice Müller

31.07.26

Book a demo