CISOs & risk teams
Internal auditors of large groups. Assess your suppliers without sending one more questionnaire.
CyberPassport gives you a structured, time-stamped, read-only view of the cyber report of every SME you audit. Same data for everyone, same equivalences across frameworks, same auditable evidence — you save time and raise your assurance level.
Internal auditors of large groups. Assess your suppliers without sending one more questionnaire.
Big 4 and specialised cyber firms. Standard format, encrypted evidence, billable time savings.
FINMA, cantonal authorities. A read-only, immutable view, exportable in an auditable format.
Price more accurately. Underwrite with confidence. Reduce claims with standardised assessments.
Each step leaves a time-stamped trace. No information is lost, no version contradicts another. The report you read is exactly the one the SME published.
In business language, not technical. They upload their evidence to an encrypted vault. Each answer is versioned.
SME sideThe SME generates a secure auditor access link, dated and revocable. You receive an invitation by email.
SME sideRead-only view of the report, evidence and history. Multi-framework mapping to align your controls.
Auditor sideYou validate your audit conclusion, attached to the report's hash. The SME keeps the proof, you keep the trace.
Auditor sideOn the SME side, it's the editor — where they fill in, update and upload evidence. On the auditor side, it's the showcase — read-only, immutable, sealed. Toggle to see.
Four features designed with CISOs, Big 4 and insurers. No gadget features, no generative AI rewriting what the SME declared — the raw truth, just better organised.
You see exactly what the SME published — no more, no less. No edits possible, no ambiguity about which version you are reading.
Read-onlyEvery supporting document is stored in an encrypted vault and time-stamped at upload. You see the date and size — the evidence is tied to the report.
Time-stamped vaultEvery revision of the report since its creation. See what changed between two audits — and who changed what, exactly.
Time travelAn answer on ISO 27001 shows you the equivalent controls in NIST CSF and Cyber-Safe. No need to read the same thing three times.
Cross-walkInternational reference standard for information security management systems.
NIST Cybersecurity Framework, structured around the 6 functions Govern / Identify / Protect / Detect / Respond / Recover.
Swiss label tailored to SMEs. Levels 1 to 3, designed to become the reference in French-speaking Switzerland.
These frameworks will join the platform in upcoming versions, in order of customer priority.
Auditor access is billed directly to your firm or your group — not to the SME. That is what guarantees your independence.
If yours isn't listed, ask it — one of our (human) analysts will reply within the day.
/verify/[hash]: it confirms the version, the sealing date and the organisation.Request your auditor access today. Let's discuss the terms together.