Home / Risk Management and Compliance / Governance, Risk, and Compliance (GRC)

Governance, Risk, and Compliance (GRC)

Master governance, risk, and compliance for robust business protection and strategic advantage.

Try these 273 AI Governance, Risk, and Compliance (GRC) Tools

ControlCase
Free

ControlCase View ControlCase

ControlCase delivers comprehensive IT Governance, Risk Management, and Compliance (IT-GRC) solutions tailored to meet the evolving regulatory landscape. We offer a robust suite of services, software, hardware, and managed solutions to help organizations effectively manage IT risk and achieve compliance with global standards like PCI DSS, ISO 27001/2, SOX, HIPAA, and more. With a specialized focus on PCI compliance, ControlCase is a certified ASV vendor and PCI DSS QSA, offering expertise in PA DSS and P2PE certifications.

Comprehensive IT-GRC solutions
Managed PCI DSS, ISO 27001/2, SOX, HIPAA compliance services
Expert software, hardware, and managed solutions
Convercent
Free

Convercent View Convercent

Convercent, now part of OneTrust, delivers a unified, 360-degree view of compliance to enhance operational efficiency and safeguard your organization's financial and reputational integrity. Its integrated platform streamlines the management of diverse compliance components, including corporate risks, case management, disclosures, training, and policy administration, empowering businesses across 130+ countries to navigate complex regulatory landscapes.

Integrated Compliance Management Platform
360-Degree Compliance Dashboard
Corporate Risk Management
ConvergePoint
Free

ConvergePoint View ConvergePoint

ConvergePoint is the premier Compliance solution provider for Microsoft 365 SharePoint Online, offering a comprehensive suite of five integrated products. Seamlessly enhance your existing M365 environment with robust lifecycle management for Policies & Procedures, Contracts, Conflict of Interest Disclosures, Safety & Incident Tracking, and Investigative Case Management. Leverage out-of-the-box best practices, advanced workflow automation, version control, audit trails, and insightful reporting to streamline compliance processes and mitigate risk.

Policy & Procedure Management
Contract Lifecycle Management
Conflict of Interest Disclosure Tracking
Cool Waters Cyber
Free

Cool Waters Cyber View Cool Waters Cyber

Cool Waters Cyber is a leading UK-based cybersecurity practice dedicated to managing your governance, risk, and compliance (GRC) needs. We partner with clients globally, offering tailored solutions for cyber security program and team management. Whether you require support for specific projects or a fully outsourced security function, our expertise scales to meet your unique requirements, ensuring robust and comprehensive cyber defense.

Cyber Security Governance Management
Risk Assessment and Mitigation
Compliance Framework Implementation (e.g., ISO 27001, GDPR)
Corporater
Free

Corporater View Corporater

Corporater empowers medium to large global organizations with an integrated, single-platform solution for comprehensive Governance, Risk, and Compliance (GRC) management. Seamlessly manage critical business functions including risk, performance, and compliance, from strategic execution to operational resilience. Leverage our signature solutions, or combine them for a holistic GRC program that drives better business outcomes and ensures regulatory adherence.

Integrated Risk Management
Enterprise Risk Management
Operational Risk Management
Council of Europe Convention on Cybercrime
Free

Council of Europe Convention on Cybercrime View Council of Europe Convention on Cybercrime

The Council of Europe Convention on Cybercrime, also known as the Budapest Convention, is the world's only binding international treaty dedicated to combating cybercrime. It provides a crucial framework for nations to develop robust national legislation and foster international cooperation against digital threats. Supported by the Cybercrime Convention Committee (T-CY) and technical assistance programs, it aims to enhance global cybersecurity and protect societies from the evolving landscape of cyber threats.

Only binding international instrument against cybercrime
Framework for national cybercrime legislation
Facilitates international cooperation between State Parties
Cowbell Cyber
Free

Cowbell Cyber View Cowbell Cyber

Cowbell Cyber provides AI-powered continuous risk assessment and comprehensive cyber liability insurance, offering customized protection and actionable recommendations. By leveraging deep learning and actuarial science, Cowbell quantifies threat exposure and financial impact, enabling brokers to quote and bind policies in minutes. The integrated Tines security automation platform further empowers security teams to streamline manual tasks, enhancing overall efficiency and effectiveness in managing cyber risks.

AI-Powered Continuous Risk Assessment
Comprehensive Cyber Liability Coverage
Continuous Underwriting Process
Cranium
Free

Cranium View Cranium

Cranium provides the industry's leading AI security and trust solution, empowering organizations to confidently adopt AI across their business processes. Our comprehensive Enterprise software platform enables businesses to proactively map, continuously monitor, and effectively manage their AI/ML environments against sophisticated adversarial threats and evolving compliance requirements. Incubated within KPMG Studio and backed by SYN Ventures, Cranium delivers unparalleled visibility and control, ensuring the integrity and security of your AI revolution without disrupting existing workflows.

AI/ML Environment Mapping
Real-time Adversarial Threat Monitoring
AI Governance and Compliance Management
Credo AI
Free

Credo AI View Credo AI

Credo AI offers a pioneering Responsible AI platform designed for comprehensive, context-driven governance, oversight, and accountability. Empowering enterprises to build, adopt, and utilize AI responsibly at scale, Credo AI automates AI oversight and risk management, ensuring compliance with global standards like the EU AI Act, NIST, and ISO.

Context-driven AI governance
Comprehensive AI oversight
Continuous accountability frameworks
Cura Software Solutions
Free

Cura Software Solutions View Cura Software Solutions

Cura Software Solutions is a premier provider of enterprise Governance, Risk, and Compliance (GRC) applications, specializing in Information Security Risk Management. Their robust platform offers integrated reporting, comprehensive audit support, and a unified infrastructure to manage GRC information across your entire organization. Whether deployed as standalone modules or as part of a broader GRC implementation, Cura empowers businesses to effectively navigate complex risk landscapes and ensure regulatory adherence.

Information Security Risk Management
Enterprise GRC Platform
Integrated Reporting and Dashboards
Cyber Covered
Free

Cyber Covered View Cyber Covered

Cyber Covered offers a comprehensive solution for website and data protection, integrating market-leading cyber insurance with advanced compliance software into a single, affordable package. Our team of seasoned insurance professionals leverages cutting-edge technology to deliver exceptional protection, value, and service, ensuring your organization is fortified against evolving digital threats. We are committed to providing robust security and compliance frameworks designed for the modern business landscape.

Market-leading cyber insurance policies
Powerful, integrated compliance software
Affordable, all-in-one package
Cyber Risk Institute (CRI)
Free

Cyber Risk Institute (CRI) View Cyber Risk Institute (CRI)

The Cyber Risk Institute (CRI) is a unique not-for-profit coalition uniting financial institutions and trade associations to bolster global economic security through enhanced cybersecurity and resiliency. CRI is the steward of the Financial Services Cybersecurity Profile, a no-cost, industry-standard assessment benchmark derived from global regulations and cyber standards like ISO and NIST. By providing this dynamic and concise resource, CRI empowers organizations of all sizes to proactively strengthen their security posture and contribute to a more secure financial system.

Industry-led cybersecurity standardization initiative.
Home of the Financial Services Cybersecurity Profile.
Benchmark for cybersecurity and resiliency in financial services.
Cyber Risk Policies
Free

Cyber Risk Policies View Cyber Risk Policies

CyberRiskPolicy.com, a collaboration between Poindexter Surety Group and Gibbs Cyber Security, offers comprehensive cyber risk insurance solutions tailored for businesses of all sizes. Recognizing that modern cyber threats like hacking, malware, and data breaches pose significant financial and operational risks, we provide expert underwriting to secure appropriate coverage. Our access to both standard and non-standard markets ensures robust financial backing for your protection against these prevalent dangers.

Tailored cyber risk insurance policies
Expert underwriting and market access
Coverage for businesses of all sizes
Cyber Security for Europe (CyberSec4Europe)
Free

Cyber Security for Europe (CyberSec4Europe) View Cyber Security for Europe (CyberSec4Europe)

CyberSec4Europe is pioneering the development and validation of effective governance models for a robust European Cybersecurity Competence Network. By leveraging established best practices and partner expertise, the project aims to consolidate and advance cybersecurity capabilities crucial for safeguarding European democracy and the Digital Single Market. Through defined policy, technical, and innovation objectives, CyberSec4Europe is establishing a concrete roadmap for future cybersecurity resilience.

Designing and testing European cybersecurity governance structures.
Utilizing best practices from successful models like CERN.
Consolidating and projecting future cybersecurity capabilities.
Cyber Tzar
Free

Cyber Tzar View Cyber Tzar

Cyber Tzar revolutionizes IT risk assessment and management with a transparent, quantitative, and repeatable Cyber Security Risk Score. Our advanced platform integrates leading scanning and penetration testing technologies with intuitive analytics to offer clear reporting on discovered vulnerabilities and their remedies, empowering you to understand and manage your cybersecurity posture effectively. Benchmark your performance against industry peers using our extensive database and sector-specific scans for comprehensive cyber risk visibility.

Quantitative Cyber Security Risk Scoring
Automated Risk Assessment & Management
Integrated Scanning & Penetration Testing
CyberCube
Free

CyberCube View CyberCube

CyberCube is the global leader in cyber risk analytics, empowering the cyber insurance market with advanced data and insights. Our cloud-based platform delivers critical applications for (re)insurance placement, underwriting optimization, and portfolio management. By leveraging a multidisciplinary team of experts and curated datasets, CyberCube provides insurers with forward-looking risk perspectives and the ability to make proactive, data-driven decisions to get ahead of emerging threats.

World-leading cyber risk analytics platform
Data-driven insights for (re)insurance placement
Optimized underwriting and portfolio management
CyberFortress
Free

CyberFortress View CyberFortress

CyberFortress is revolutionizing cyber insurance for small businesses with a parametric online business interruption policy. Our innovative approach provides rapid payouts within 24 hours of a cyber incident, offering essential liquidity to navigate disruptions. By continuously analyzing technology behaviors with machine learning, we accurately model cyber risk, enabling dynamic pricing and actionable insights to reduce downtime.

Parametric business interruption policy
Payouts within 24 hours of cyber incident
Machine learning-driven cyber risk modeling
CyberGRX
Free

CyberGRX View CyberGRX

CyberGRX offers a comprehensive, cost-effective, and scalable solution for third-party cyber risk management. Leveraging the market's first third-party cyber risk Exchange, CyberGRX provides enterprises and their vendors with a dynamic stream of data and advanced analytics to efficiently identify, prioritize, and mitigate risks within their partner ecosystems. Now part of ProcessUnity, CyberGRX empowers organizations to proactively strengthen their security posture and achieve significant ROI through intelligent risk assessment-as-a-service.

Third-Party Cyber Risk Exchange
Risk Assessments-as-a-Service
Dynamic Third-Party Data Stream
CyberHeed
Free

CyberHeed View CyberHeed

CyberHeed revolutionizes cybersecurity compliance through its pioneering Agentic AI platform, designed to overcome talent scarcity and reduce costs. It empowers both regulatory bodies and enterprises to achieve compliance objectives efficiently, transforming a manual process into a dynamic, strategic capability. Demonstrate adherence to a wide array of global and regional frameworks, including ISO-27001, NIST CSF, Saudi NCA ECC, UAE DESC ISR, and Australia's Essential Eight, making compliance management smarter and more effective.

Purpose-built Agentic AI for compliance automation
Augments compliance teams with intelligence and automation
Accelerates achievement of regulatory demands and supervisory goals
Cybermate
Free

Cybermate View Cybermate

Cybermate is the premier affordable and gamified cybersecurity awareness training platform tailored for Small to Medium Enterprises (SMEs) and the Education sector. Our solution significantly reduces behavioral risk and ensures compliance with Australian cybersecurity standards through personalized, engaging learning experiences. Cybermate simplifies cybersecurity education and scam alerts based on individual user preferences, offering an intuitive, automated, and cost-effective alternative to complex and expensive traditional training methods.

Personalized training modules for each user
Gamified learning experience for increased engagement
Reduces behavioral cybersecurity risk
Cybernetic Global Intelligence (CGI)
Free

Cybernetic Global Intelligence (CGI) View Cybernetic Global Intelligence (CGI)

Cybernetic Global Intelligence (CGI) is a premier provider of advanced GRC (Governance, Risk, and Compliance) solutions, empowering organizations with intuitive and efficient strategies for navigating complex compliance landscapes. Leveraging deep expertise in information technology, data privacy, and cybersecurity law, CGI offers expert consulting services and cutting-edge technology platforms. We specialize in safeguarding critical data, ensuring seamless endpoint management, and defending against evolving threats like ransomware and insider attacks, enabling global businesses to operate with confidence and integrity.

Comprehensive GRC SaaS solutions
Expert legal and consulting services for technology transactions
Automated cloud backup and data protection
CyberPolicy
Free

CyberPolicy View CyberPolicy

CyberPolicy delivers comprehensive cyber protection specifically designed for small businesses grappling with increasing digital threats. This integrated solution streamlines risk management by uniting a guided vulnerability assessment and security planning tool ('Cyber Plan') with premier cybersecurity solutions and robust cyber insurance. We empower your business to proactively identify weaknesses, implement essential security measures, and secure tailored insurance coverage from trusted partners, ensuring a swift and resilient response to any cyber incident.

Guided Vulnerability Assessment and Security Planning
Partnerships with Leading Cybersecurity Providers
Comprehensive Cyber Insurance Coverage
CyberSaint Security
Free

CyberSaint Security View CyberSaint Security

CyberSaint Security is a leading cybersecurity platform designed to empower security teams by automating critical manual tasks, significantly enhancing both effectiveness and efficiency. Leveraging advanced technology and deep industry expertise, CyberSaint offers comprehensive solutions for security, risk management, and compliance. Organizations can streamline operations and strengthen their security posture with our integrated GRC capabilities.

Automated Security Task Management
Enhanced Security Efficiency
Comprehensive Risk Management
CyberSecureRIA
Free

CyberSecureRIA View CyberSecureRIA

CyberSecureRIA is exclusively designed to address the unique cybersecurity and regulatory compliance challenges faced by Registered Investment Advisers (RIAs). We provide specialized technology solutions that empower RIAs to navigate the complex SEC compliance landscape, mitigate evolving cyber threats, and ensure operational resilience. Our platform automates critical security tasks, enabling your firm to achieve robust protection and maintain compliance with efficiency and confidence.

Customized cybersecurity solutions for Registered Investment Advisers (RIAs)
Streamlined SEC compliance and regulatory adherence
Automated security operations to enhance efficiency