ISO/IEC 27001
The world's reference standard for information security management systems. Required by major buyers, it's the ticket to working with financial, pharmaceutical and industrial groups.
ISO 27001, NIST CSF, Cyber-Safe — you answer once in business language, and we generate your conformity in each framework your customers require. No double entry, no technical jargon, just the right answers in the right place.
The world's reference standard for information security management systems. Required by major buyers, it's the ticket to working with financial, pharmaceutical and industrial groups.
NIST's Cybersecurity Framework, structured around six functions: Govern, Identify, Protect, Detect, Respond, Recover. Highly demanded by US groups and their European subsidiaries — particularly pharma and defence.
The Swiss label designed for SMEs. Three progressive levels (1 / 2 / 3) that allow a simple start and gradual maturity gain without redoing everything. Designed in partnership with French- and German-speaking Swiss business associations.
You answer only once, in business language. Our engine projects your answer onto the equivalent controls of each framework. When a customer requires NIST, we have the answer. When another requires ISO, we have the same answer — properly phrased.
No jargon. No acronyms. A question an SME executive can understand, with a clear scale and an evidence request at the end. Click an option to see the progress bar move.
Two-factor authentication (2FA, MFA) requires a second factor in addition to the password — a code, an app notification, a physical key. Indicate the level that matches your reality today, not your goal.
Three frameworks, six criteria. The “Recommended for” line guides you — but every SME is unique; ask us if you hesitate.
Circulars from the Swiss financial authority. For private banks, wealth managers and regulated fintechs.
European directive on network security. Mandatory for essential and important entities in the EU.
Data protection — European and Swiss. Dedicated module with a record of processing activities and DPIA.
Type I and Type II. For Swiss SaaS vendors that want to sell to American companies.
Start for free with one framework. If your customers require another tomorrow, your answers are already mapped — you start nothing over.